Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 09:58:53.263 00:00:00.000 UDP 28.104.0.1:57455 -> 198.28.0.2:53 1 64 1 2025-11-25 09:58:53.263 00:00:00.000 UDP 28.104.0.1:54217 -> 198.28.0.2:53 1 64 1 2025-11-25 09:58:53.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57455 1 80 1 2025-11-25 09:58:53.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54217 1 109 1 2025-11-25 09:54:48.205 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3100 1 2025-11-25 09:59:53.557 00:00:00.000 UDP 28.104.0.1:48200 -> 198.28.0.2:53 1 64 1 2025-11-25 09:59:53.557 00:00:00.000 UDP 28.104.0.1:42130 -> 198.28.0.2:53 1 64 1 2025-11-25 09:59:53.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42130 1 80 1 2025-11-25 09:59:53.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48200 1 109 1 2025-11-25 10:00:53.861 00:00:00.000 UDP 28.104.0.1:48285 -> 198.28.0.2:53 1 64 1 2025-11-25 10:00:53.861 00:00:00.000 UDP 28.104.0.1:34842 -> 198.28.0.2:53 1 64 1 2025-11-25 10:00:53.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34842 1 80 1 2025-11-25 10:00:53.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48285 1 109 1 2025-11-25 09:57:03.591 00:05:08.617 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:01:54.179 00:00:00.000 UDP 28.104.0.1:38831 -> 198.28.0.2:53 1 64 1 2025-11-25 10:01:54.179 00:00:00.000 UDP 28.104.0.1:49234 -> 198.28.0.2:53 1 64 1 2025-11-25 10:01:54.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49234 1 80 1 2025-11-25 10:01:54.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38831 1 109 1 2025-11-25 09:57:12.311 00:05:51.331 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:58:03.592 00:05:08.735 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:58:03.602 00:05:08.596 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:02:40.154 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:02:54.475 00:00:00.000 UDP 28.104.0.1:52608 -> 198.28.0.2:53 1 64 1 2025-11-25 10:02:54.474 00:00:00.000 UDP 28.104.0.1:32830 -> 198.28.0.2:53 1 64 1 2025-11-25 10:02:54.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32830 1 109 1 2025-11-25 10:02:54.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52608 1 80 1 2025-11-25 10:03:54.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52804 1 109 1 2025-11-25 10:03:54.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51988 1 80 1 2025-11-25 10:03:54.729 00:00:00.000 UDP 28.104.0.1:52804 -> 198.28.0.2:53 1 64 1 2025-11-25 10:03:54.729 00:00:00.000 UDP 28.104.0.1:51988 -> 198.28.0.2:53 1 64 1 2025-11-25 10:00:08.210 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2768 1 2025-11-25 10:04:55.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48430 1 109 1 2025-11-25 10:04:55.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43865 1 80 1 2025-11-25 10:04:55.055 00:00:00.000 UDP 28.104.0.1:48430 -> 198.28.0.2:53 1 64 1 2025-11-25 10:04:55.055 00:00:00.000 UDP 28.104.0.1:43865 -> 198.28.0.2:53 1 64 1 2025-11-25 10:00:12.197 00:06:00.367 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 10:00:12.197 00:06:00.189 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 10:05:55.304 00:00:00.000 UDP 28.104.0.1:41459 -> 198.28.0.2:53 1 64 1 2025-11-25 10:05:55.304 00:00:00.000 UDP 28.104.0.1:40746 -> 198.28.0.2:53 1 64 1 2025-11-25 10:05:55.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41459 1 109 1 2025-11-25 10:05:55.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40746 1 80 1 2025-11-25 10:06:55.598 00:00:00.000 UDP 28.104.0.1:39638 -> 198.28.0.2:53 1 64 1 2025-11-25 10:06:55.598 00:00:00.000 UDP 28.104.0.1:47953 -> 198.28.0.2:53 1 64 1 2025-11-25 10:06:55.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39638 1 80 1 2025-11-25 10:06:55.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47953 1 109 1 2025-11-25 10:03:03.592 00:05:08.618 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:07:40.125 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:07:55.892 00:00:00.000 UDP 28.104.0.1:52021 -> 198.28.0.2:53 1 64 1 2025-11-25 10:07:55.892 00:00:00.000 UDP 28.104.0.1:38812 -> 198.28.0.2:53 1 64 1 2025-11-25 10:07:55.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52021 1 80 1 2025-11-25 10:07:55.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38812 1 109 1 2025-11-25 10:03:12.317 00:05:51.325 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 10:04:03.602 00:05:08.597 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:04:03.592 00:05:08.737 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 10:08:56.198 00:00:00.000 UDP 28.104.0.1:48916 -> 198.28.0.2:53 1 64 1 2025-11-25 10:08:56.198 00:00:00.000 UDP 28.104.0.1:45015 -> 198.28.0.2:53 1 64 1 2025-11-25 10:08:56.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48916 1 109 1 2025-11-25 10:08:56.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45015 1 80 1 2025-11-25 10:05:28.221 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-25 10:09:56.508 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46845 1 80 1 2025-11-25 10:09:56.508 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55907 1 109 1 2025-11-25 10:09:56.499 00:00:00.000 UDP 28.104.0.1:55907 -> 198.28.0.2:53 1 64 1 2025-11-25 10:09:56.498 00:00:00.000 UDP 28.104.0.1:46845 -> 198.28.0.2:53 1 64 1 2025-11-25 10:10:56.808 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55491 1 109 1 2025-11-25 10:10:56.808 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47498 1 80 1 2025-11-25 10:10:56.798 00:00:00.000 UDP 28.104.0.1:55491 -> 198.28.0.2:53 1 64 1 2025-11-25 10:10:56.798 00:00:00.000 UDP 28.104.0.1:47498 -> 198.28.0.2:53 1 64 1 2025-11-25 10:11:57.104 00:00:00.000 UDP 28.104.0.1:33299 -> 198.28.0.2:53 1 64 1 2025-11-25 10:11:57.104 00:00:00.000 UDP 28.104.0.1:38039 -> 198.28.0.2:53 1 64 1 2025-11-25 10:11:57.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33299 1 109 1 2025-11-25 10:11:57.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38039 1 80 1 2025-11-25 10:07:12.199 00:06:00.367 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 10:07:12.199 00:06:00.189 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 10:12:40.585 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:12:57.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36744 1 80 1 2025-11-25 10:12:57.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43365 1 109 1 2025-11-25 10:12:57.355 00:00:00.000 UDP 28.104.0.1:43365 -> 198.28.0.2:53 1 64 1 2025-11-25 10:12:57.355 00:00:00.000 UDP 28.104.0.1:36744 -> 198.28.0.2:53 1 64 1 2025-11-25 10:09:03.592 00:05:08.618 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:13:57.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42007 1 80 1 2025-11-25 10:13:57.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55746 1 109 1 2025-11-25 10:13:57.646 00:00:00.000 UDP 28.104.0.1:55746 -> 198.28.0.2:53 1 64 1 2025-11-25 10:13:57.646 00:00:00.000 UDP 28.104.0.1:42007 -> 198.28.0.2:53 1 64 1 2025-11-25 10:09:12.318 00:05:51.325 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 10:10:03.593 00:05:08.737 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 10:10:03.602 00:05:08.599 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:14:57.905 00:00:00.000 UDP 28.104.0.1:53003 -> 198.28.0.2:53 1 64 1 2025-11-25 10:14:57.905 00:00:00.000 UDP 28.104.0.1:60970 -> 198.28.0.2:53 1 64 1 2025-11-25 10:14:57.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60970 1 109 1 2025-11-25 10:10:48.226 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2508 1 2025-11-25 10:14:57.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53003 1 80 1 2025-11-25 10:15:58.205 00:00:00.000 UDP 28.104.0.1:58646 -> 198.28.0.2:53 1 64 1 2025-11-25 10:15:58.205 00:00:00.000 UDP 28.104.0.1:41314 -> 198.28.0.2:53 1 64 1 2025-11-25 10:15:58.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41314 1 109 1 2025-11-25 10:15:58.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58646 1 80 1 2025-11-25 10:16:58.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59010 1 80 1 2025-11-25 10:16:58.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34548 1 109 1 2025-11-25 10:16:58.550 00:00:00.000 UDP 28.104.0.1:59010 -> 198.28.0.2:53 1 64 1 2025-11-25 10:16:58.551 00:00:00.000 UDP 28.104.0.1:34548 -> 198.28.0.2:53 1 64 1 2025-11-25 10:17:40.363 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:17:58.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45571 1 109 1 2025-11-25 10:17:58.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51326 1 80 1 2025-11-25 10:17:58.869 00:00:00.000 UDP 28.104.0.1:45571 -> 198.28.0.2:53 1 64 1 2025-11-25 10:17:58.869 00:00:00.000 UDP 28.104.0.1:51326 -> 198.28.0.2:53 1 64 1 2025-11-25 10:18:59.133 00:00:00.000 UDP 28.104.0.1:43257 -> 198.28.0.2:53 1 64 1 2025-11-25 10:18:59.133 00:00:00.000 UDP 28.104.0.1:52037 -> 198.28.0.2:53 1 64 1 2025-11-25 10:18:59.143 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43257 1 80 1 2025-11-25 10:18:59.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52037 1 109 1 2025-11-25 10:15:03.594 00:05:08.619 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:14:12.201 00:06:00.369 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 10:14:12.201 00:06:00.189 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 10:19:59.387 00:00:00.000 UDP 28.104.0.1:54458 -> 198.28.0.2:53 1 64 1 2025-11-25 10:19:59.386 00:00:00.000 UDP 28.104.0.1:40027 -> 198.28.0.2:53 1 64 1 2025-11-25 10:19:59.397 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54458 1 80 1 2025-11-25 10:19:59.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40027 1 109 1 2025-11-25 10:15:12.320 00:05:51.328 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 10:16:03.595 00:05:08.736 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 10:16:03.605 00:05:08.599 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:16:08.234 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2920 1 2025-11-25 10:20:59.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54782 1 80 1 2025-11-25 10:20:59.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45213 1 109 1 2025-11-25 10:20:59.679 00:00:00.000 UDP 28.104.0.1:45213 -> 198.28.0.2:53 1 64 1 2025-11-25 10:20:59.679 00:00:00.000 UDP 28.104.0.1:54782 -> 198.28.0.2:53 1 64 1 2025-11-25 10:21:59.987 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48741 1 80 1 2025-11-25 10:21:59.987 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55377 1 109 1 2025-11-25 10:21:59.977 00:00:00.000 UDP 28.104.0.1:48741 -> 198.28.0.2:53 1 64 1 2025-11-25 10:21:59.977 00:00:00.000 UDP 28.104.0.1:55377 -> 198.28.0.2:53 1 64 1 2025-11-25 10:22:40.574 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:23:00.290 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40382 1 109 1 2025-11-25 10:23:00.290 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47217 1 80 1 2025-11-25 10:23:00.280 00:00:00.000 UDP 28.104.0.1:40382 -> 198.28.0.2:53 1 64 1 2025-11-25 10:23:00.280 00:00:00.000 UDP 28.104.0.1:47217 -> 198.28.0.2:53 1 64 1 2025-11-25 10:24:00.588 00:00:00.000 UDP 28.104.0.1:57446 -> 198.28.0.2:53 1 64 1 2025-11-25 10:24:00.588 00:00:00.000 UDP 28.104.0.1:56620 -> 198.28.0.2:53 1 64 1 2025-11-25 10:24:00.597 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57446 1 80 1 2025-11-25 10:24:00.598 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56620 1 109 1 2025-11-25 10:25:00.888 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57134 1 80 1 2025-11-25 10:25:00.888 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37086 1 109 1 2025-11-25 10:25:00.879 00:00:00.000 UDP 28.104.0.1:57134 -> 198.28.0.2:53 1 64 1 2025-11-25 10:25:00.879 00:00:00.000 UDP 28.104.0.1:37086 -> 198.28.0.2:53 1 64 1 2025-11-25 10:21:03.598 00:05:08.618 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:21:28.240 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3032 1 2025-11-25 10:26:01.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35440 1 80 1 2025-11-25 10:26:01.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33532 1 109 1 2025-11-25 10:26:01.181 00:00:00.000 UDP 28.104.0.1:33532 -> 198.28.0.2:53 1 64 1 2025-11-25 10:26:01.181 00:00:00.000 UDP 28.104.0.1:35440 -> 198.28.0.2:53 1 64 1 2025-11-25 10:21:12.321 00:05:51.327 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 10:22:03.597 00:05:08.741 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 10:21:12.203 00:06:00.369 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 10:22:03.607 00:05:08.598 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:21:12.203 00:06:00.189 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 10:27:01.476 00:00:00.000 UDP 28.104.0.1:49216 -> 198.28.0.2:53 1 64 1 2025-11-25 10:27:01.476 00:00:00.000 UDP 28.104.0.1:55361 -> 198.28.0.2:53 1 64 1 2025-11-25 10:27:01.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49216 1 109 1 2025-11-25 10:27:01.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55361 1 80 1 2025-11-25 10:27:40.652 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:28:02.202 00:00:00.000 UDP 28.104.0.1:52149 -> 198.28.0.2:53 1 64 1 2025-11-25 10:28:02.202 00:00:00.000 UDP 28.104.0.1:51050 -> 198.28.0.2:53 1 64 1 2025-11-25 10:28:02.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52149 1 109 1 2025-11-25 10:28:02.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51050 1 80 1 2025-11-25 10:29:02.453 00:00:00.000 UDP 28.104.0.1:54863 -> 198.28.0.2:53 1 64 1 2025-11-25 10:29:02.453 00:00:00.000 UDP 28.104.0.1:43078 -> 198.28.0.2:53 1 64 1 2025-11-25 10:29:02.463 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43078 1 109 1 2025-11-25 10:29:02.463 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54863 1 80 1 2025-11-25 10:30:02.756 00:00:00.000 UDP 28.104.0.1:33764 -> 198.28.0.2:53 1 64 1 2025-11-25 10:30:02.756 00:00:00.000 UDP 28.104.0.1:47641 -> 198.28.0.2:53 1 64 1 2025-11-25 10:30:02.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33764 1 80 1 2025-11-25 10:30:02.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47641 1 109 1 2025-11-25 10:26:48.245 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-11-25 10:31:03.094 00:00:00.000 UDP 28.104.0.1:45324 -> 198.28.0.2:53 1 64 1 2025-11-25 10:31:03.095 00:00:00.000 UDP 28.104.0.1:41065 -> 198.28.0.2:53 1 64 1 2025-11-25 10:31:03.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41065 1 80 1 2025-11-25 10:31:03.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45324 1 109 1 2025-11-25 10:27:03.599 00:05:08.618 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:32:03.404 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42477 1 109 1 2025-11-25 10:32:03.404 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55711 1 80 1 2025-11-25 10:27:12.328 00:05:51.322 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 10:32:03.394 00:00:00.000 UDP 28.104.0.1:42477 -> 198.28.0.2:53 1 64 1 2025-11-25 10:32:03.394 00:00:00.000 UDP 28.104.0.1:55711 -> 198.28.0.2:53 1 64 1 2025-11-25 10:28:03.604 00:05:08.737 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 10:28:03.629 00:05:08.579 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:32:40.681 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:33:03.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46043 1 109 1 2025-11-25 10:33:03.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35672 1 80 1 2025-11-25 10:33:03.687 00:00:00.000 UDP 28.104.0.1:46043 -> 198.28.0.2:53 1 64 1 2025-11-25 10:33:03.686 00:00:00.000 UDP 28.104.0.1:35672 -> 198.28.0.2:53 1 64 1 2025-11-25 10:28:12.206 00:06:00.369 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 10:28:12.206 00:06:00.193 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 10:34:03.982 00:00:00.000 UDP 28.104.0.1:40800 -> 198.28.0.2:53 1 64 1 2025-11-25 10:34:03.982 00:00:00.000 UDP 28.104.0.1:41472 -> 198.28.0.2:53 1 64 1 2025-11-25 10:34:03.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40800 1 109 1 2025-11-25 10:34:03.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41472 1 80 1 2025-11-25 10:35:04.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52921 1 80 1 2025-11-25 10:35:04.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34402 1 109 1 2025-11-25 10:35:04.274 00:00:00.000 UDP 28.104.0.1:34402 -> 198.28.0.2:53 1 64 1 2025-11-25 10:35:04.274 00:00:00.000 UDP 28.104.0.1:52921 -> 198.28.0.2:53 1 64 1 2025-11-25 10:36:04.530 00:00:00.000 UDP 28.104.0.1:42126 -> 198.28.0.2:53 1 64 1 2025-11-25 10:36:04.530 00:00:00.000 UDP 28.104.0.1:40997 -> 198.28.0.2:53 1 64 1 2025-11-25 10:36:04.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40997 1 109 1 2025-11-25 10:36:04.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42126 1 80 1 2025-11-25 10:32:08.247 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2704 1 2025-11-25 10:37:04.781 00:00:00.000 UDP 28.104.0.1:55875 -> 198.28.0.2:53 1 64 1 2025-11-25 10:37:04.781 00:00:00.000 UDP 28.104.0.1:46310 -> 198.28.0.2:53 1 64 1 2025-11-25 10:37:04.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46310 1 80 1 2025-11-25 10:37:04.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55875 1 109 1 2025-11-25 10:33:03.601 00:05:08.621 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:37:40.764 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:38:05.101 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57283 1 80 1 2025-11-25 10:38:05.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35301 1 109 1 2025-11-25 10:33:12.332 00:05:51.322 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 10:38:05.091 00:00:00.000 UDP 28.104.0.1:57283 -> 198.28.0.2:53 1 64 1 2025-11-25 10:38:05.091 00:00:00.000 UDP 28.104.0.1:35301 -> 198.28.0.2:53 1 64 1 2025-11-25 10:34:03.601 00:05:08.746 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 10:34:03.611 00:05:08.600 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:39:05.354 00:00:00.000 UDP 28.104.0.1:45055 -> 198.28.0.2:53 1 64 1 2025-11-25 10:39:05.355 00:00:00.000 UDP 28.104.0.1:60212 -> 198.28.0.2:53 1 64 1 2025-11-25 10:39:05.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60212 1 109 1 2025-11-25 10:39:05.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45055 1 80 1 2025-11-25 10:40:05.655 00:00:00.000 UDP 28.104.0.1:40751 -> 198.28.0.2:53 1 64 1 2025-11-25 10:40:05.655 00:00:00.000 UDP 28.104.0.1:59910 -> 198.28.0.2:53 1 64 1 2025-11-25 10:40:05.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40751 1 109 1 2025-11-25 10:40:05.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59910 1 80 1 2025-11-25 10:35:12.209 00:06:00.373 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 10:35:12.209 00:06:00.193 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 10:41:05.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40628 1 109 1 2025-11-25 10:41:05.921 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40564 1 80 1 2025-11-25 10:41:05.913 00:00:00.000 UDP 28.104.0.1:40628 -> 198.28.0.2:53 1 64 1 2025-11-25 10:41:05.913 00:00:00.000 UDP 28.104.0.1:40564 -> 198.28.0.2:53 1 64 1 2025-11-25 10:37:28.253 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-25 10:42:06.231 00:00:00.000 UDP 28.104.0.1:60270 -> 198.28.0.2:53 1 64 1 2025-11-25 10:42:06.231 00:00:00.000 UDP 28.104.0.1:48506 -> 198.28.0.2:53 1 64 1 2025-11-25 10:42:06.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48506 1 80 1 2025-11-25 10:42:06.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60270 1 109 1 2025-11-25 10:42:40.866 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:43:06.486 00:00:00.000 UDP 28.104.0.1:48329 -> 198.28.0.2:53 1 64 1 2025-11-25 10:43:06.486 00:00:00.000 UDP 28.104.0.1:52843 -> 198.28.0.2:53 1 64 1 2025-11-25 10:43:06.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48329 1 109 1 2025-11-25 10:43:06.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52843 1 80 1 2025-11-25 10:39:03.603 00:05:08.620 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:39:12.336 00:05:51.319 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 10:44:06.776 00:00:00.000 UDP 28.104.0.1:45123 -> 198.28.0.2:53 1 64 1 2025-11-25 10:44:06.776 00:00:00.000 UDP 28.104.0.1:58497 -> 198.28.0.2:53 1 64 1 2025-11-25 10:44:06.787 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45123 1 109 1 2025-11-25 10:44:06.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58497 1 80 1 2025-11-25 10:40:03.613 00:05:08.604 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:40:03.604 00:05:08.750 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 10:45:07.729 00:00:00.000 UDP 28.104.0.1:33869 -> 198.28.0.2:53 1 64 1 2025-11-25 10:45:07.729 00:00:00.000 UDP 28.104.0.1:48860 -> 198.28.0.2:53 1 64 1 2025-11-25 10:45:07.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33869 1 80 1 2025-11-25 10:45:07.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48860 1 109 1 2025-11-25 10:46:08.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59708 1 109 1 2025-11-25 10:46:08.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43135 1 80 1 2025-11-25 10:46:08.045 00:00:00.000 UDP 28.104.0.1:59708 -> 198.28.0.2:53 1 64 1 2025-11-25 10:46:08.046 00:00:00.000 UDP 28.104.0.1:43135 -> 198.28.0.2:53 1 64 1 2025-11-25 10:42:48.255 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3048 1 2025-11-25 10:47:08.309 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57058 1 109 1 2025-11-25 10:47:08.309 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58356 1 80 1 2025-11-25 10:47:08.299 00:00:00.000 UDP 28.104.0.1:58356 -> 198.28.0.2:53 1 64 1 2025-11-25 10:47:08.299 00:00:00.000 UDP 28.104.0.1:57058 -> 198.28.0.2:53 1 64 1 2025-11-25 10:42:12.213 00:06:00.372 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 10:42:12.213 00:06:00.191 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 10:47:40.935 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:48:08.595 00:00:00.000 UDP 28.104.0.1:42089 -> 198.28.0.2:53 1 64 1 2025-11-25 10:48:08.595 00:00:00.000 UDP 28.104.0.1:33118 -> 198.28.0.2:53 1 64 1 2025-11-25 10:48:08.605 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33118 1 80 1 2025-11-25 10:48:08.605 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42089 1 109 1 2025-11-25 10:49:08.888 00:00:00.000 UDP 28.104.0.1:45565 -> 198.28.0.2:53 1 64 1 2025-11-25 10:49:08.888 00:00:00.000 UDP 28.104.0.1:59566 -> 198.28.0.2:53 1 64 1 2025-11-25 10:49:08.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59566 1 80 1 2025-11-25 10:49:08.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45565 1 109 1 2025-11-25 10:45:03.605 00:05:08.624 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:45:12.345 00:05:51.313 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 10:50:09.170 00:00:00.000 UDP 28.104.0.1:45388 -> 198.28.0.2:53 1 64 1 2025-11-25 10:50:09.170 00:00:00.000 UDP 28.104.0.1:51077 -> 198.28.0.2:53 1 64 1 2025-11-25 10:46:03.616 00:05:08.604 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:50:09.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51077 1 109 1 2025-11-25 10:50:09.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45388 1 80 1 2025-11-25 10:46:03.605 00:05:08.751 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 10:51:09.463 00:00:00.000 UDP 28.104.0.1:44155 -> 198.28.0.2:53 1 64 1 2025-11-25 10:51:09.463 00:00:00.000 UDP 28.104.0.1:50107 -> 198.28.0.2:53 1 64 1 2025-11-25 10:51:09.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44155 1 109 1 2025-11-25 10:51:09.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50107 1 80 1 2025-11-25 10:52:09.755 00:00:00.000 UDP 28.104.0.1:47247 -> 198.28.0.2:53 1 64 1 2025-11-25 10:52:09.755 00:00:00.000 UDP 28.104.0.1:33303 -> 198.28.0.2:53 1 64 1 2025-11-25 10:52:09.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33303 1 109 1 2025-11-25 10:52:09.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47247 1 80 1 2025-11-25 10:48:08.259 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2816 1 2025-11-25 10:52:40.964 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:53:10.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42416 1 80 1 2025-11-25 10:53:10.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48481 1 109 1 2025-11-25 10:53:10.055 00:00:00.000 UDP 28.104.0.1:48481 -> 198.28.0.2:53 1 64 1 2025-11-25 10:53:10.055 00:00:00.000 UDP 28.104.0.1:42416 -> 198.28.0.2:53 1 64 1 2025-11-25 10:54:10.891 00:00:00.000 UDP 28.104.0.1:43927 -> 198.28.0.2:53 1 64 1 2025-11-25 10:54:10.890 00:00:00.000 UDP 28.104.0.1:52523 -> 198.28.0.2:53 1 64 1 2025-11-25 10:54:10.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52523 1 109 1 2025-11-25 10:54:10.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43927 1 80 1 2025-11-25 10:49:12.218 00:06:00.367 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 10:49:12.218 00:06:00.188 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 10:55:11.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45221 1 80 1 2025-11-25 10:55:11.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35205 1 109 1 2025-11-25 10:55:11.191 00:00:00.000 UDP 28.104.0.1:45221 -> 198.28.0.2:53 1 64 1 2025-11-25 10:55:11.191 00:00:00.000 UDP 28.104.0.1:35205 -> 198.28.0.2:53 1 64 1 2025-11-25 10:51:03.607 00:05:08.624 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 10:51:12.346 00:05:51.312 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 10:56:11.486 00:00:00.000 UDP 28.104.0.1:57177 -> 198.28.0.2:53 1 64 1 2025-11-25 10:56:11.486 00:00:00.000 UDP 28.104.0.1:45101 -> 198.28.0.2:53 1 64 1 2025-11-25 10:56:11.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57177 1 109 1 2025-11-25 10:56:11.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45101 1 80 1 2025-11-25 10:52:03.617 00:05:08.605 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 10:52:03.607 00:05:08.751 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 10:57:11.737 00:00:00.000 UDP 28.104.0.1:48631 -> 198.28.0.2:53 1 64 1 2025-11-25 10:57:11.736 00:00:00.000 UDP 28.104.0.1:36338 -> 198.28.0.2:53 1 64 1 2025-11-25 10:57:11.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48631 1 80 1 2025-11-25 10:57:11.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36338 1 109 1 2025-11-25 10:57:41.306 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 10:53:28.265 00:05:10.016 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2812 1 2025-11-25 10:58:12.056 00:00:00.000 UDP 28.104.0.1:57282 -> 198.28.0.2:53 1 64 1 2025-11-25 10:58:12.055 00:00:00.000 UDP 28.104.0.1:40350 -> 198.28.0.2:53 1 64 1 2025-11-25 10:58:12.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40350 1 109 1 2025-11-25 10:58:12.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57282 1 80 1 Summary: total flows: 320, total bytes: 98132, total packets: 1444, avg bps: 204, avg pps: 0, avg bpp: 67 Time window: 2025-11-25 09:54:48 - 2025-11-25 10:58:38 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0047s User: 0.0031s Wall: 0.0042s flows/second: 76999.4 Runtime: 0.0042s