Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 07:54:12.144 00:06:00.383 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 07:54:12.144 00:06:00.173 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 07:59:17.710 00:00:00.000 UDP 28.104.0.1:49582 -> 198.28.0.2:53 1 64 1 2025-11-25 07:59:17.710 00:00:00.000 UDP 28.104.0.1:35042 -> 198.28.0.2:53 1 64 1 2025-11-25 07:59:17.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49582 1 109 1 2025-11-25 07:59:17.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35042 1 80 1 2025-11-25 08:00:18.005 00:00:00.000 UDP 28.104.0.1:42426 -> 198.28.0.2:53 1 64 1 2025-11-25 08:00:18.005 00:00:00.000 UDP 28.104.0.1:57590 -> 198.28.0.2:53 1 64 1 2025-11-25 08:00:18.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57590 1 80 1 2025-11-25 08:00:18.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42426 1 109 1 2025-11-25 07:57:03.556 00:05:08.600 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:01:18.322 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41364 1 109 1 2025-11-25 08:01:18.322 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39219 1 80 1 2025-11-25 08:01:18.313 00:00:00.000 UDP 28.104.0.1:41364 -> 198.28.0.2:53 1 64 1 2025-11-25 08:01:18.313 00:00:00.000 UDP 28.104.0.1:39219 -> 198.28.0.2:53 1 64 1 2025-11-25 07:57:38.047 00:05:10.025 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3016 1 2025-11-25 07:57:12.263 00:05:51.344 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 07:58:03.556 00:05:08.719 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 07:58:03.565 00:05:08.580 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:02:18.611 00:00:00.000 UDP 28.104.0.1:49908 -> 198.28.0.2:53 1 64 1 2025-11-25 08:02:18.611 00:00:00.000 UDP 28.104.0.1:43693 -> 198.28.0.2:53 1 64 1 2025-11-25 08:02:18.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49908 1 109 1 2025-11-25 08:02:18.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43693 1 80 1 2025-11-25 08:02:37.759 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:03:18.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38250 1 109 1 2025-11-25 08:03:18.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37623 1 80 1 2025-11-25 08:03:18.907 00:00:00.000 UDP 28.104.0.1:38250 -> 198.28.0.2:53 1 64 1 2025-11-25 08:03:18.907 00:00:00.000 UDP 28.104.0.1:37623 -> 198.28.0.2:53 1 64 1 2025-11-25 08:04:19.220 00:00:00.000 UDP 28.104.0.1:49178 -> 198.28.0.2:53 1 64 1 2025-11-25 08:04:19.220 00:00:00.000 UDP 28.104.0.1:60458 -> 198.28.0.2:53 1 64 1 2025-11-25 08:04:19.231 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60458 1 80 1 2025-11-25 08:04:19.231 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49178 1 109 1 2025-11-25 08:05:19.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44642 1 109 1 2025-11-25 08:05:19.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56976 1 80 1 2025-11-25 08:05:19.478 00:00:00.000 UDP 28.104.0.1:56976 -> 198.28.0.2:53 1 64 1 2025-11-25 08:05:19.478 00:00:00.000 UDP 28.104.0.1:44642 -> 198.28.0.2:53 1 64 1 2025-11-25 08:01:12.145 00:06:00.384 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 08:01:12.145 00:06:00.175 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 08:06:19.726 00:00:00.000 UDP 28.104.0.1:34857 -> 198.28.0.2:53 1 64 1 2025-11-25 08:06:19.726 00:00:00.000 UDP 28.104.0.1:53568 -> 198.28.0.2:53 1 64 1 2025-11-25 08:06:19.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53568 1 109 1 2025-11-25 08:06:19.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34857 1 80 1 2025-11-25 08:02:58.056 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2592 1 2025-11-25 08:03:03.556 00:05:08.602 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:07:20.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48139 1 109 1 2025-11-25 08:07:20.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57252 1 80 1 2025-11-25 08:07:20.045 00:00:00.000 UDP 28.104.0.1:48139 -> 198.28.0.2:53 1 64 1 2025-11-25 08:07:20.045 00:00:00.000 UDP 28.104.0.1:57252 -> 198.28.0.2:53 1 64 1 2025-11-25 08:07:38.181 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:03:12.264 00:05:51.344 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:04:03.557 00:05:08.721 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 08:04:03.566 00:05:08.582 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:08:20.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40468 1 109 1 2025-11-25 08:08:20.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36592 1 80 1 2025-11-25 08:08:20.340 00:00:00.000 UDP 28.104.0.1:40468 -> 198.28.0.2:53 1 64 1 2025-11-25 08:08:20.339 00:00:00.000 UDP 28.104.0.1:36592 -> 198.28.0.2:53 1 64 1 2025-11-25 08:09:20.589 00:00:00.000 UDP 28.104.0.1:51405 -> 198.28.0.2:53 1 64 1 2025-11-25 08:09:20.589 00:00:00.000 UDP 28.104.0.1:47128 -> 198.28.0.2:53 1 64 1 2025-11-25 08:09:20.601 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47128 1 80 1 2025-11-25 08:09:20.601 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51405 1 109 1 2025-11-25 08:10:20.842 00:00:00.000 UDP 28.104.0.1:52849 -> 198.28.0.2:53 1 64 1 2025-11-25 08:10:20.842 00:00:00.000 UDP 28.104.0.1:56984 -> 198.28.0.2:53 1 64 1 2025-11-25 08:10:20.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56984 1 80 1 2025-11-25 08:10:20.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52849 1 109 1 2025-11-25 08:11:21.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42559 1 109 1 2025-11-25 08:11:21.146 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58141 1 80 1 2025-11-25 08:11:21.135 00:00:00.000 UDP 28.104.0.1:42559 -> 198.28.0.2:53 1 64 1 2025-11-25 08:11:21.135 00:00:00.000 UDP 28.104.0.1:58141 -> 198.28.0.2:53 1 64 1 2025-11-25 08:12:21.478 00:00:00.000 UDP 28.104.0.1:47067 -> 198.28.0.2:53 1 64 1 2025-11-25 08:12:21.478 00:00:00.000 UDP 28.104.0.1:37582 -> 198.28.0.2:53 1 64 1 2025-11-25 08:12:21.490 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47067 1 80 1 2025-11-25 08:12:21.490 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37582 1 109 1 2025-11-25 08:08:18.067 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2748 1 2025-11-25 08:12:37.976 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:09:03.557 00:05:08.613 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:13:21.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56151 1 109 1 2025-11-25 08:13:21.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43057 1 80 1 2025-11-25 08:08:12.149 00:06:00.382 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 08:08:12.149 00:06:00.174 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 08:13:21.779 00:00:00.000 UDP 28.104.0.1:56151 -> 198.28.0.2:53 1 64 1 2025-11-25 08:13:21.779 00:00:00.000 UDP 28.104.0.1:43057 -> 198.28.0.2:53 1 64 1 2025-11-25 08:09:12.267 00:05:51.342 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:10:03.559 00:05:08.722 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 08:10:03.569 00:05:08.592 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:14:22.071 00:00:00.000 UDP 28.104.0.1:35291 -> 198.28.0.2:53 1 64 1 2025-11-25 08:14:22.071 00:00:00.000 UDP 28.104.0.1:34645 -> 198.28.0.2:53 1 64 1 2025-11-25 08:14:22.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35291 1 80 1 2025-11-25 08:14:22.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34645 1 109 1 2025-11-25 08:15:22.371 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40535 1 80 1 2025-11-25 08:15:22.371 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41114 1 109 1 2025-11-25 08:15:22.361 00:00:00.000 UDP 28.104.0.1:41114 -> 198.28.0.2:53 1 64 1 2025-11-25 08:15:22.361 00:00:00.000 UDP 28.104.0.1:40535 -> 198.28.0.2:53 1 64 1 2025-11-25 08:16:22.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47367 1 109 1 2025-11-25 08:16:22.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46291 1 80 1 2025-11-25 08:16:22.660 00:00:00.000 UDP 28.104.0.1:47367 -> 198.28.0.2:53 1 64 1 2025-11-25 08:16:22.660 00:00:00.000 UDP 28.104.0.1:46291 -> 198.28.0.2:53 1 64 1 2025-11-25 08:17:22.951 00:00:00.000 UDP 28.104.0.1:60088 -> 198.28.0.2:53 1 64 1 2025-11-25 08:17:22.951 00:00:00.000 UDP 28.104.0.1:39585 -> 198.28.0.2:53 1 64 1 2025-11-25 08:17:22.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39585 1 80 1 2025-11-25 08:17:22.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60088 1 109 1 2025-11-25 08:17:38.027 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:13:38.071 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-25 08:18:23.270 00:00:00.000 UDP 28.104.0.1:56935 -> 198.28.0.2:53 1 64 1 2025-11-25 08:18:23.270 00:00:00.000 UDP 28.104.0.1:55406 -> 198.28.0.2:53 1 64 1 2025-11-25 08:18:23.280 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56935 1 80 1 2025-11-25 08:18:23.280 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55406 1 109 1 2025-11-25 08:15:03.559 00:05:08.613 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:19:23.563 00:00:00.000 UDP 28.104.0.1:59975 -> 198.28.0.2:53 1 64 1 2025-11-25 08:19:23.563 00:00:00.000 UDP 28.104.0.1:56169 -> 198.28.0.2:53 1 64 1 2025-11-25 08:19:23.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56169 1 80 1 2025-11-25 08:19:23.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59975 1 109 1 2025-11-25 08:15:12.271 00:05:51.341 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:15:12.161 00:06:00.374 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 08:16:03.570 00:05:08.592 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:15:12.161 00:06:00.172 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 08:16:03.560 00:05:08.721 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 08:20:23.857 00:00:00.000 UDP 28.104.0.1:39675 -> 198.28.0.2:53 1 64 1 2025-11-25 08:20:23.857 00:00:00.000 UDP 28.104.0.1:38993 -> 198.28.0.2:53 1 64 1 2025-11-25 08:20:23.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38993 1 109 1 2025-11-25 08:20:23.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39675 1 80 1 2025-11-25 08:21:24.178 00:00:00.000 UDP 28.104.0.1:32996 -> 198.28.0.2:53 1 64 1 2025-11-25 08:21:24.178 00:00:00.000 UDP 28.104.0.1:40631 -> 198.28.0.2:53 1 64 1 2025-11-25 08:21:24.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40631 1 109 1 2025-11-25 08:21:24.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32996 1 80 1 2025-11-25 08:22:24.472 00:00:00.000 UDP 28.104.0.1:47530 -> 198.28.0.2:53 1 64 1 2025-11-25 08:22:24.472 00:00:00.000 UDP 28.104.0.1:48692 -> 198.28.0.2:53 1 64 1 2025-11-25 08:22:24.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48692 1 109 1 2025-11-25 08:22:24.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47530 1 80 1 2025-11-25 08:22:38.150 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:18:58.079 00:05:10.256 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2864 1 2025-11-25 08:23:24.774 00:00:00.000 UDP 28.104.0.1:51699 -> 198.28.0.2:53 1 64 1 2025-11-25 08:23:24.775 00:00:00.000 UDP 28.104.0.1:37997 -> 198.28.0.2:53 1 64 1 2025-11-25 08:23:24.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51699 1 109 1 2025-11-25 08:23:24.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37997 1 80 1 2025-11-25 08:24:25.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51904 1 109 1 2025-11-25 08:24:25.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49165 1 80 1 2025-11-25 08:24:25.071 00:00:00.000 UDP 28.104.0.1:49165 -> 198.28.0.2:53 1 64 1 2025-11-25 08:24:25.071 00:00:00.000 UDP 28.104.0.1:51904 -> 198.28.0.2:53 1 64 1 2025-11-25 08:21:03.561 00:05:08.611 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:25:25.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42422 1 80 1 2025-11-25 08:25:25.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44635 1 109 1 2025-11-25 08:25:25.327 00:00:00.000 UDP 28.104.0.1:44635 -> 198.28.0.2:53 1 64 1 2025-11-25 08:25:25.327 00:00:00.000 UDP 28.104.0.1:42422 -> 198.28.0.2:53 1 64 1 2025-11-25 08:21:12.271 00:05:51.343 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:22:03.562 00:05:08.722 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 08:22:03.572 00:05:08.597 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:26:25.618 00:00:00.000 UDP 28.104.0.1:40032 -> 198.28.0.2:53 1 64 1 2025-11-25 08:26:25.618 00:00:00.000 UDP 28.104.0.1:55191 -> 198.28.0.2:53 1 64 1 2025-11-25 08:26:25.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40032 1 109 1 2025-11-25 08:26:25.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55191 1 80 1 2025-11-25 08:22:12.162 00:06:00.173 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 08:22:12.162 00:06:00.375 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 08:27:25.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60702 1 109 1 2025-11-25 08:27:25.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58130 1 80 1 2025-11-25 08:27:25.908 00:00:00.000 UDP 28.104.0.1:60702 -> 198.28.0.2:53 1 64 1 2025-11-25 08:27:25.909 00:00:00.000 UDP 28.104.0.1:58130 -> 198.28.0.2:53 1 64 1 2025-11-25 08:27:38.796 00:00:00.029 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:28:26.164 00:00:00.000 UDP 28.104.0.1:33077 -> 198.28.0.2:53 1 64 1 2025-11-25 08:28:26.164 00:00:00.000 UDP 28.104.0.1:43594 -> 198.28.0.2:53 1 64 1 2025-11-25 08:28:26.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43594 1 109 1 2025-11-25 08:28:26.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33077 1 80 1 2025-11-25 08:24:18.083 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2648 1 2025-11-25 08:29:27.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51194 1 109 1 2025-11-25 08:29:27.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38052 1 80 1 2025-11-25 08:29:27.001 00:00:00.000 UDP 28.104.0.1:51194 -> 198.28.0.2:53 1 64 1 2025-11-25 08:29:27.001 00:00:00.000 UDP 28.104.0.1:38052 -> 198.28.0.2:53 1 64 1 2025-11-25 08:30:27.301 00:00:00.000 UDP 28.104.0.1:56713 -> 198.28.0.2:53 1 64 1 2025-11-25 08:30:27.301 00:00:00.000 UDP 28.104.0.1:36392 -> 198.28.0.2:53 1 64 1 2025-11-25 08:30:27.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36392 1 109 1 2025-11-25 08:30:27.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56713 1 80 1 2025-11-25 08:27:03.563 00:05:08.626 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:31:28.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57464 1 80 1 2025-11-25 08:31:28.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48651 1 109 1 2025-11-25 08:31:28.304 00:00:00.000 UDP 28.104.0.1:48651 -> 198.28.0.2:53 1 64 1 2025-11-25 08:31:28.304 00:00:00.000 UDP 28.104.0.1:57464 -> 198.28.0.2:53 1 64 1 2025-11-25 08:27:12.273 00:05:51.342 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:28:03.573 00:05:08.597 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:28:03.564 00:05:08.724 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 08:32:28.600 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52098 1 80 1 2025-11-25 08:32:28.600 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35037 1 109 1 2025-11-25 08:32:28.590 00:00:00.000 UDP 28.104.0.1:52098 -> 198.28.0.2:53 1 64 1 2025-11-25 08:32:28.589 00:00:00.000 UDP 28.104.0.1:35037 -> 198.28.0.2:53 1 64 1 2025-11-25 08:32:38.422 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:33:28.886 00:00:00.000 UDP 28.104.0.1:43742 -> 198.28.0.2:53 1 64 1 2025-11-25 08:33:28.886 00:00:00.000 UDP 28.104.0.1:45154 -> 198.28.0.2:53 1 64 1 2025-11-25 08:33:28.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43742 1 109 1 2025-11-25 08:33:28.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45154 1 80 1 2025-11-25 08:29:38.105 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3208 1 2025-11-25 08:29:12.169 00:06:00.368 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 08:29:12.169 00:06:00.175 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 08:34:29.206 00:00:00.000 UDP 28.104.0.1:56039 -> 198.28.0.2:53 1 64 1 2025-11-25 08:34:29.206 00:00:00.000 UDP 28.104.0.1:55791 -> 198.28.0.2:53 1 64 1 2025-11-25 08:34:29.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56039 1 109 1 2025-11-25 08:34:29.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55791 1 80 1 2025-11-25 08:35:29.509 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40697 1 109 1 2025-11-25 08:35:29.509 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59996 1 80 1 2025-11-25 08:35:29.500 00:00:00.000 UDP 28.104.0.1:59996 -> 198.28.0.2:53 1 64 1 2025-11-25 08:35:29.500 00:00:00.000 UDP 28.104.0.1:40697 -> 198.28.0.2:53 1 64 1 2025-11-25 08:36:29.746 00:00:00.000 UDP 28.104.0.1:59185 -> 198.28.0.2:53 1 64 1 2025-11-25 08:36:29.746 00:00:00.000 UDP 28.104.0.1:60129 -> 198.28.0.2:53 1 64 1 2025-11-25 08:36:29.756 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60129 1 80 1 2025-11-25 08:36:29.756 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59185 1 109 1 2025-11-25 08:33:03.565 00:05:08.620 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:37:29.997 00:00:00.000 UDP 28.104.0.1:48891 -> 198.28.0.2:53 1 64 1 2025-11-25 08:37:29.997 00:00:00.000 UDP 28.104.0.1:33972 -> 198.28.0.2:53 1 64 1 2025-11-25 08:37:30.009 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48891 1 109 1 2025-11-25 08:37:30.009 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33972 1 80 1 2025-11-25 08:37:38.329 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:33:12.277 00:05:51.339 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:34:03.565 00:05:08.723 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 08:34:03.577 00:05:08.599 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:38:30.261 00:00:00.000 UDP 28.104.0.1:59237 -> 198.28.0.2:53 1 64 1 2025-11-25 08:38:30.261 00:00:00.000 UDP 28.104.0.1:58327 -> 198.28.0.2:53 1 64 1 2025-11-25 08:38:30.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58327 1 80 1 2025-11-25 08:38:30.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59237 1 109 1 2025-11-25 08:34:58.110 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2748 1 2025-11-25 08:39:30.573 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44391 1 109 1 2025-11-25 08:39:30.573 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34509 1 80 1 2025-11-25 08:39:30.564 00:00:00.000 UDP 28.104.0.1:34509 -> 198.28.0.2:53 1 64 1 2025-11-25 08:39:30.564 00:00:00.000 UDP 28.104.0.1:44391 -> 198.28.0.2:53 1 64 1 2025-11-25 08:40:30.851 00:00:00.000 UDP 28.104.0.1:45191 -> 198.28.0.2:53 1 64 1 2025-11-25 08:40:30.851 00:00:00.000 UDP 28.104.0.1:50325 -> 198.28.0.2:53 1 64 1 2025-11-25 08:40:30.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50325 1 109 1 2025-11-25 08:40:30.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45191 1 80 1 2025-11-25 08:36:12.173 00:06:00.366 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 08:36:12.173 00:06:00.173 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 08:41:31.192 00:00:00.000 UDP 28.104.0.1:39516 -> 198.28.0.2:53 1 64 1 2025-11-25 08:41:31.192 00:00:00.000 UDP 28.104.0.1:58454 -> 198.28.0.2:53 1 64 1 2025-11-25 08:41:31.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39516 1 80 1 2025-11-25 08:41:31.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58454 1 109 1 2025-11-25 08:42:31.457 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40960 1 109 1 2025-11-25 08:42:31.457 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45746 1 80 1 2025-11-25 08:42:31.447 00:00:00.000 UDP 28.104.0.1:40960 -> 198.28.0.2:53 1 64 1 2025-11-25 08:42:31.447 00:00:00.000 UDP 28.104.0.1:45746 -> 198.28.0.2:53 1 64 1 2025-11-25 08:42:38.433 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:39:03.565 00:05:08.624 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:43:31.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52064 1 109 1 2025-11-25 08:43:31.753 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57349 1 80 1 2025-11-25 08:43:31.741 00:00:00.000 UDP 28.104.0.1:52064 -> 198.28.0.2:53 1 64 1 2025-11-25 08:43:31.741 00:00:00.000 UDP 28.104.0.1:57349 -> 198.28.0.2:53 1 64 1 2025-11-25 08:39:12.278 00:05:51.338 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:40:03.566 00:05:08.726 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 08:40:03.577 00:05:08.604 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:40:18.118 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-25 08:44:32.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40621 1 109 1 2025-11-25 08:44:32.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47829 1 80 1 2025-11-25 08:44:32.057 00:00:00.000 UDP 28.104.0.1:47829 -> 198.28.0.2:53 1 64 1 2025-11-25 08:44:32.056 00:00:00.000 UDP 28.104.0.1:40621 -> 198.28.0.2:53 1 64 1 2025-11-25 08:45:32.365 00:00:00.000 UDP 28.104.0.1:57333 -> 198.28.0.2:53 1 64 1 2025-11-25 08:45:32.365 00:00:00.000 UDP 28.104.0.1:40946 -> 198.28.0.2:53 1 64 1 2025-11-25 08:45:32.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40946 1 109 1 2025-11-25 08:45:32.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57333 1 80 1 2025-11-25 08:46:32.656 00:00:00.000 UDP 28.104.0.1:49461 -> 198.28.0.2:53 1 64 1 2025-11-25 08:46:32.656 00:00:00.000 UDP 28.104.0.1:33661 -> 198.28.0.2:53 1 64 1 2025-11-25 08:46:32.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33661 1 109 1 2025-11-25 08:46:32.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49461 1 80 1 2025-11-25 08:47:32.956 00:00:00.000 UDP 28.104.0.1:56052 -> 198.28.0.2:53 1 64 1 2025-11-25 08:47:32.957 00:00:00.000 UDP 28.104.0.1:46086 -> 198.28.0.2:53 1 64 1 2025-11-25 08:47:32.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56052 1 109 1 2025-11-25 08:47:32.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46086 1 80 1 2025-11-25 08:47:38.608 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:43:12.180 00:06:00.362 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 08:43:12.180 00:06:00.169 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 08:48:33.247 00:00:00.000 UDP 28.104.0.1:59731 -> 198.28.0.2:53 1 64 1 2025-11-25 08:48:33.247 00:00:00.000 UDP 28.104.0.1:35803 -> 198.28.0.2:53 1 64 1 2025-11-25 08:48:33.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59731 1 80 1 2025-11-25 08:48:33.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35803 1 109 1 2025-11-25 08:45:03.566 00:05:08.625 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:49:33.497 00:00:00.000 UDP 28.104.0.1:57650 -> 198.28.0.2:53 1 64 1 2025-11-25 08:49:33.497 00:00:00.000 UDP 28.104.0.1:59849 -> 198.28.0.2:53 1 64 1 2025-11-25 08:49:33.508 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57650 1 109 1 2025-11-25 08:49:33.508 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59849 1 80 1 2025-11-25 08:45:38.132 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2848 1 2025-11-25 08:45:12.282 00:05:51.335 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:46:03.576 00:05:08.604 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:46:03.568 00:05:08.726 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 08:50:33.754 00:00:00.000 UDP 28.104.0.1:36337 -> 198.28.0.2:53 1 64 1 2025-11-25 08:50:33.754 00:00:00.000 UDP 28.104.0.1:49672 -> 198.28.0.2:53 1 64 1 2025-11-25 08:50:33.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36337 1 109 1 2025-11-25 08:50:33.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49672 1 80 1 2025-11-25 08:51:34.059 00:00:00.000 UDP 28.104.0.1:42712 -> 198.28.0.2:53 1 64 1 2025-11-25 08:51:34.059 00:00:00.000 UDP 28.104.0.1:44336 -> 198.28.0.2:53 1 64 1 2025-11-25 08:51:34.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42712 1 109 1 2025-11-25 08:51:34.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44336 1 80 1 2025-11-25 08:52:34.353 00:00:00.000 UDP 28.104.0.1:34276 -> 198.28.0.2:53 1 64 1 2025-11-25 08:52:34.353 00:00:00.000 UDP 28.104.0.1:45472 -> 198.28.0.2:53 1 64 1 2025-11-25 08:52:34.363 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45472 1 80 1 2025-11-25 08:52:34.363 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34276 1 109 1 2025-11-25 08:52:38.768 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:53:34.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36213 1 109 1 2025-11-25 08:53:34.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33086 1 80 1 2025-11-25 08:53:34.605 00:00:00.000 UDP 28.104.0.1:33086 -> 198.28.0.2:53 1 64 1 2025-11-25 08:53:34.606 00:00:00.000 UDP 28.104.0.1:36213 -> 198.28.0.2:53 1 64 1 2025-11-25 08:54:34.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38460 1 109 1 2025-11-25 08:54:34.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54269 1 80 1 2025-11-25 08:54:34.898 00:00:00.000 UDP 28.104.0.1:38460 -> 198.28.0.2:53 1 64 1 2025-11-25 08:54:34.898 00:00:00.000 UDP 28.104.0.1:54269 -> 198.28.0.2:53 1 64 1 2025-11-25 08:50:58.134 00:05:10.635 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2856 1 2025-11-25 08:50:12.180 00:06:00.366 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 08:50:12.180 00:06:00.179 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 08:51:03.566 00:05:08.625 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:55:35.202 00:00:00.000 UDP 28.104.0.1:51547 -> 198.28.0.2:53 1 64 1 2025-11-25 08:55:35.202 00:00:00.000 UDP 28.104.0.1:58190 -> 198.28.0.2:53 1 64 1 2025-11-25 08:55:35.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58190 1 109 1 2025-11-25 08:55:35.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51547 1 80 1 2025-11-25 08:51:12.282 00:05:51.339 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:52:03.567 00:05:08.727 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 08:52:03.578 00:05:08.604 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:56:35.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55872 1 80 1 2025-11-25 08:56:35.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56943 1 109 1 2025-11-25 08:56:35.493 00:00:00.000 UDP 28.104.0.1:55872 -> 198.28.0.2:53 1 64 1 2025-11-25 08:56:35.493 00:00:00.000 UDP 28.104.0.1:56943 -> 198.28.0.2:53 1 64 1 2025-11-25 08:57:35.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37732 1 109 1 2025-11-25 08:57:35.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40772 1 80 1 2025-11-25 08:57:35.747 00:00:00.000 UDP 28.104.0.1:40772 -> 198.28.0.2:53 1 64 1 2025-11-25 08:57:35.747 00:00:00.000 UDP 28.104.0.1:37732 -> 198.28.0.2:53 1 64 1 2025-11-25 08:57:38.925 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 08:58:36.060 00:00:00.000 UDP 28.104.0.1:53228 -> 198.28.0.2:53 1 64 1 2025-11-25 08:58:36.060 00:00:00.000 UDP 28.104.0.1:57631 -> 198.28.0.2:53 1 64 1 2025-11-25 08:58:36.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57631 1 80 1 2025-11-25 08:58:36.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53228 1 109 1 Summary: total flows: 321, total bytes: 97146, total packets: 1434, avg bps: 201, avg pps: 0, avg bpp: 67 Time window: 2025-11-25 07:54:12 - 2025-11-25 08:58:36 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0044s User: 0.0022s Wall: 0.0035s flows/second: 92483.3 Runtime: 0.0035s