Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 13:59:09.265 00:00:00.000 UDP 28.104.0.1:36144 -> 198.28.0.2:53 1 64 1 2025-11-25 13:59:09.265 00:00:00.000 UDP 28.104.0.1:60675 -> 198.28.0.2:53 1 64 1 2025-11-25 13:59:09.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60675 1 109 1 2025-11-25 13:59:09.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36144 1 80 1 2025-11-25 14:00:09.560 00:00:00.000 UDP 28.104.0.1:39306 -> 198.28.0.2:53 1 64 1 2025-11-25 14:00:09.560 00:00:00.000 UDP 28.104.0.1:42669 -> 198.28.0.2:53 1 64 1 2025-11-25 14:00:09.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42669 1 109 1 2025-11-25 14:00:09.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39306 1 80 1 2025-11-25 14:01:09.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56283 1 80 1 2025-11-25 14:01:09.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38178 1 109 1 2025-11-25 14:01:09.858 00:00:00.000 UDP 28.104.0.1:56283 -> 198.28.0.2:53 1 64 1 2025-11-25 14:01:09.858 00:00:00.000 UDP 28.104.0.1:38178 -> 198.28.0.2:53 1 64 1 2025-11-25 13:57:03.678 00:05:08.637 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 13:57:12.397 00:05:51.333 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:02:10.174 00:00:00.000 UDP 28.104.0.1:52267 -> 198.28.0.2:53 1 64 1 2025-11-25 14:02:10.173 00:00:00.000 UDP 28.104.0.1:46402 -> 198.28.0.2:53 1 64 1 2025-11-25 14:02:10.184 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46402 1 80 1 2025-11-25 14:02:10.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52267 1 109 1 2025-11-25 13:58:03.678 00:05:08.731 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 13:58:03.688 00:05:08.618 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:02:44.951 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:03:10.472 00:00:00.000 UDP 28.104.0.1:40297 -> 198.28.0.2:53 1 64 1 2025-11-25 14:03:10.472 00:00:00.000 UDP 28.104.0.1:55260 -> 198.28.0.2:53 1 64 1 2025-11-25 14:03:10.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40297 1 109 1 2025-11-25 14:03:10.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55260 1 80 1 2025-11-25 13:58:12.304 00:06:00.344 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 13:58:12.304 00:06:00.172 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 13:59:48.546 00:05:10.434 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2508 1 2025-11-25 14:04:10.771 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56222 1 109 1 2025-11-25 14:04:10.771 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36954 1 80 1 2025-11-25 14:04:10.760 00:00:00.000 UDP 28.104.0.1:36954 -> 198.28.0.2:53 1 64 1 2025-11-25 14:04:10.760 00:00:00.000 UDP 28.104.0.1:56222 -> 198.28.0.2:53 1 64 1 2025-11-25 14:05:11.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52896 1 80 1 2025-11-25 14:05:11.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42170 1 109 1 2025-11-25 14:05:11.044 00:00:00.000 UDP 28.104.0.1:52896 -> 198.28.0.2:53 1 64 1 2025-11-25 14:05:11.044 00:00:00.000 UDP 28.104.0.1:42170 -> 198.28.0.2:53 1 64 1 2025-11-25 14:06:11.346 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51011 1 109 1 2025-11-25 14:06:11.346 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58261 1 80 1 2025-11-25 14:06:11.335 00:00:00.000 UDP 28.104.0.1:51011 -> 198.28.0.2:53 1 64 1 2025-11-25 14:06:11.335 00:00:00.000 UDP 28.104.0.1:58261 -> 198.28.0.2:53 1 64 1 2025-11-25 14:07:11.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59843 1 80 1 2025-11-25 14:07:11.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56458 1 109 1 2025-11-25 14:07:11.849 00:00:00.000 UDP 28.104.0.1:59843 -> 198.28.0.2:53 1 64 1 2025-11-25 14:07:11.849 00:00:00.000 UDP 28.104.0.1:56458 -> 198.28.0.2:53 1 64 1 2025-11-25 14:03:03.680 00:05:08.637 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 14:07:44.941 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:03:12.400 00:05:51.332 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:08:12.100 00:00:00.000 UDP 28.104.0.1:60745 -> 198.28.0.2:53 1 64 1 2025-11-25 14:04:03.691 00:05:08.617 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:08:12.099 00:00:00.000 UDP 28.104.0.1:35754 -> 198.28.0.2:53 1 64 1 2025-11-25 14:08:12.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35754 1 109 1 2025-11-25 14:04:03.681 00:05:08.730 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 14:08:12.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60745 1 80 1 2025-11-25 14:09:12.405 00:00:00.000 UDP 28.104.0.1:55337 -> 198.28.0.2:53 1 64 1 2025-11-25 14:09:12.405 00:00:00.000 UDP 28.104.0.1:49795 -> 198.28.0.2:53 1 64 1 2025-11-25 14:09:12.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55337 1 80 1 2025-11-25 14:09:12.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49795 1 109 1 2025-11-25 14:05:08.560 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3064 1 2025-11-25 14:10:12.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48918 1 80 1 2025-11-25 14:10:12.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37384 1 109 1 2025-11-25 14:10:12.697 00:00:00.000 UDP 28.104.0.1:37384 -> 198.28.0.2:53 1 64 1 2025-11-25 14:05:12.308 00:06:00.343 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 14:05:12.308 00:06:00.171 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 14:10:12.697 00:00:00.000 UDP 28.104.0.1:48918 -> 198.28.0.2:53 1 64 1 2025-11-25 14:11:12.942 00:00:00.000 UDP 28.104.0.1:53615 -> 198.28.0.2:53 1 64 1 2025-11-25 14:11:12.942 00:00:00.000 UDP 28.104.0.1:40364 -> 198.28.0.2:53 1 64 1 2025-11-25 14:11:12.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53615 1 109 1 2025-11-25 14:11:12.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40364 1 80 1 2025-11-25 14:12:13.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51550 1 109 1 2025-11-25 14:12:13.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53364 1 80 1 2025-11-25 14:12:13.245 00:00:00.000 UDP 28.104.0.1:51550 -> 198.28.0.2:53 1 64 1 2025-11-25 14:12:13.245 00:00:00.000 UDP 28.104.0.1:53364 -> 198.28.0.2:53 1 64 1 2025-11-25 14:12:45.046 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:09:03.681 00:05:08.638 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 14:13:13.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51641 1 109 1 2025-11-25 14:13:13.555 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48947 1 80 1 2025-11-25 14:13:13.544 00:00:00.000 UDP 28.104.0.1:48947 -> 198.28.0.2:53 1 64 1 2025-11-25 14:13:13.545 00:00:00.000 UDP 28.104.0.1:51641 -> 198.28.0.2:53 1 64 1 2025-11-25 14:09:12.400 00:05:51.333 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:10:03.681 00:05:08.729 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 14:14:13.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56893 1 109 1 2025-11-25 14:14:13.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53168 1 80 1 2025-11-25 14:14:13.849 00:00:00.000 UDP 28.104.0.1:53168 -> 198.28.0.2:53 1 64 1 2025-11-25 14:10:03.691 00:05:08.619 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:14:13.849 00:00:00.000 UDP 28.104.0.1:56893 -> 198.28.0.2:53 1 64 1 2025-11-25 14:10:28.568 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3144 1 2025-11-25 14:15:14.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40846 1 109 1 2025-11-25 14:15:14.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33276 1 80 1 2025-11-25 14:15:14.165 00:00:00.000 UDP 28.104.0.1:33276 -> 198.28.0.2:53 1 64 1 2025-11-25 14:15:14.165 00:00:00.000 UDP 28.104.0.1:40846 -> 198.28.0.2:53 1 64 1 2025-11-25 14:16:14.455 00:00:00.000 UDP 28.104.0.1:53090 -> 198.28.0.2:53 1 64 1 2025-11-25 14:16:14.455 00:00:00.000 UDP 28.104.0.1:54513 -> 198.28.0.2:53 1 64 1 2025-11-25 14:16:14.463 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53090 1 80 1 2025-11-25 14:16:14.463 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54513 1 109 1 2025-11-25 14:17:14.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54164 1 109 1 2025-11-25 14:17:14.724 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60765 1 80 1 2025-11-25 14:17:14.710 00:00:00.000 UDP 28.104.0.1:54164 -> 198.28.0.2:53 1 64 1 2025-11-25 14:12:12.309 00:06:00.343 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 14:17:14.711 00:00:00.000 UDP 28.104.0.1:60765 -> 198.28.0.2:53 1 64 1 2025-11-25 14:12:12.308 00:06:00.175 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 14:17:45.320 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:18:15.041 00:00:00.000 UDP 28.104.0.1:55440 -> 198.28.0.2:53 1 64 1 2025-11-25 14:18:15.041 00:00:00.000 UDP 28.104.0.1:39760 -> 198.28.0.2:53 1 64 1 2025-11-25 14:18:15.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55440 1 109 1 2025-11-25 14:18:15.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39760 1 80 1 2025-11-25 14:15:03.682 00:05:08.637 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 14:19:15.346 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52475 1 80 1 2025-11-25 14:19:15.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46693 1 109 1 2025-11-25 14:19:15.337 00:00:00.000 UDP 28.104.0.1:46693 -> 198.28.0.2:53 1 64 1 2025-11-25 14:19:15.336 00:00:00.000 UDP 28.104.0.1:52475 -> 198.28.0.2:53 1 64 1 2025-11-25 14:15:48.571 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2464 1 2025-11-25 14:15:12.400 00:05:51.333 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:16:03.682 00:05:08.729 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 14:20:15.639 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58247 1 80 1 2025-11-25 14:20:15.639 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60412 1 109 1 2025-11-25 14:16:03.693 00:05:08.617 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:20:15.629 00:00:00.000 UDP 28.104.0.1:58247 -> 198.28.0.2:53 1 64 1 2025-11-25 14:20:15.629 00:00:00.000 UDP 28.104.0.1:60412 -> 198.28.0.2:53 1 64 1 2025-11-25 14:21:15.902 00:00:00.000 UDP 28.104.0.1:50669 -> 198.28.0.2:53 1 64 1 2025-11-25 14:21:15.901 00:00:00.000 UDP 28.104.0.1:56557 -> 198.28.0.2:53 1 64 1 2025-11-25 14:21:15.913 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50669 1 109 1 2025-11-25 14:21:15.913 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56557 1 80 1 2025-11-25 14:22:16.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55755 1 109 1 2025-11-25 14:22:16.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41313 1 80 1 2025-11-25 14:22:16.202 00:00:00.000 UDP 28.104.0.1:55755 -> 198.28.0.2:53 1 64 1 2025-11-25 14:22:16.202 00:00:00.000 UDP 28.104.0.1:41313 -> 198.28.0.2:53 1 64 1 2025-11-25 14:22:45.461 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:23:16.491 00:00:00.000 UDP 28.104.0.1:58847 -> 198.28.0.2:53 1 64 1 2025-11-25 14:23:16.491 00:00:00.000 UDP 28.104.0.1:50813 -> 198.28.0.2:53 1 64 1 2025-11-25 14:23:16.502 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50813 1 80 1 2025-11-25 14:23:16.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58847 1 109 1 2025-11-25 14:24:16.794 00:00:00.000 UDP 28.104.0.1:43029 -> 198.28.0.2:53 1 64 1 2025-11-25 14:19:12.309 00:06:00.344 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 14:19:12.309 00:06:00.175 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 14:24:16.794 00:00:00.000 UDP 28.104.0.1:54591 -> 198.28.0.2:53 1 64 1 2025-11-25 14:24:16.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54591 1 109 1 2025-11-25 14:24:16.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43029 1 80 1 2025-11-25 14:21:03.683 00:05:08.638 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 14:25:17.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45590 1 109 1 2025-11-25 14:21:08.578 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2724 1 2025-11-25 14:25:17.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53651 1 80 1 2025-11-25 14:25:17.098 00:00:00.000 UDP 28.104.0.1:45590 -> 198.28.0.2:53 1 64 1 2025-11-25 14:25:17.098 00:00:00.000 UDP 28.104.0.1:53651 -> 198.28.0.2:53 1 64 1 2025-11-25 14:21:12.400 00:05:51.334 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:22:03.683 00:05:08.741 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 14:26:17.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39143 1 80 1 2025-11-25 14:26:17.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35001 1 109 1 2025-11-25 14:22:03.693 00:05:08.618 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:26:17.396 00:00:00.000 UDP 28.104.0.1:39143 -> 198.28.0.2:53 1 64 1 2025-11-25 14:26:17.396 00:00:00.000 UDP 28.104.0.1:35001 -> 198.28.0.2:53 1 64 1 2025-11-25 14:27:17.734 00:00:00.000 UDP 28.104.0.1:60174 -> 198.28.0.2:53 1 64 1 2025-11-25 14:27:17.734 00:00:00.000 UDP 28.104.0.1:59252 -> 198.28.0.2:53 1 64 1 2025-11-25 14:27:17.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60174 1 80 1 2025-11-25 14:27:17.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59252 1 109 1 2025-11-25 14:27:45.437 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:28:18.144 00:00:00.000 UDP 28.104.0.1:36953 -> 198.28.0.2:53 1 64 1 2025-11-25 14:28:18.144 00:00:00.000 UDP 28.104.0.1:60517 -> 198.28.0.2:53 1 64 1 2025-11-25 14:28:18.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36953 1 80 1 2025-11-25 14:28:18.154 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60517 1 109 1 2025-11-25 14:29:18.405 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60516 1 109 1 2025-11-25 14:29:18.405 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35028 1 80 1 2025-11-25 14:29:18.396 00:00:00.000 UDP 28.104.0.1:60516 -> 198.28.0.2:53 1 64 1 2025-11-25 14:29:18.395 00:00:00.000 UDP 28.104.0.1:35028 -> 198.28.0.2:53 1 64 1 2025-11-25 14:30:18.689 00:00:00.000 UDP 28.104.0.1:57039 -> 198.28.0.2:53 1 64 1 2025-11-25 14:30:18.689 00:00:00.000 UDP 28.104.0.1:37854 -> 198.28.0.2:53 1 64 1 2025-11-25 14:30:18.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37854 1 80 1 2025-11-25 14:30:18.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57039 1 109 1 2025-11-25 14:26:28.580 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2444 1 2025-11-25 14:27:03.684 00:05:08.638 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 14:26:12.311 00:06:00.343 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 14:26:12.311 00:06:00.182 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 14:31:18.954 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57361 1 80 1 2025-11-25 14:31:18.954 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49782 1 109 1 2025-11-25 14:31:18.944 00:00:00.000 UDP 28.104.0.1:57361 -> 198.28.0.2:53 1 64 1 2025-11-25 14:31:18.943 00:00:00.000 UDP 28.104.0.1:49782 -> 198.28.0.2:53 1 64 1 2025-11-25 14:27:12.413 00:05:51.322 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:28:03.695 00:05:08.617 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:32:19.243 00:00:00.000 UDP 28.104.0.1:48267 -> 198.28.0.2:53 1 64 1 2025-11-25 14:32:19.243 00:00:00.000 UDP 28.104.0.1:57384 -> 198.28.0.2:53 1 64 1 2025-11-25 14:28:03.684 00:05:08.737 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 14:32:19.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57384 1 80 1 2025-11-25 14:32:19.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48267 1 109 1 2025-11-25 14:32:45.580 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:33:19.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39190 1 80 1 2025-11-25 14:33:19.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45930 1 109 1 2025-11-25 14:33:19.535 00:00:00.000 UDP 28.104.0.1:45930 -> 198.28.0.2:53 1 64 1 2025-11-25 14:33:19.535 00:00:00.000 UDP 28.104.0.1:39190 -> 198.28.0.2:53 1 64 1 2025-11-25 14:34:19.829 00:00:00.000 UDP 28.104.0.1:43497 -> 198.28.0.2:53 1 64 1 2025-11-25 14:34:19.829 00:00:00.000 UDP 28.104.0.1:53685 -> 198.28.0.2:53 1 64 1 2025-11-25 14:34:19.841 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53685 1 80 1 2025-11-25 14:34:19.841 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43497 1 109 1 2025-11-25 14:35:20.136 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47291 1 109 1 2025-11-25 14:35:20.136 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56366 1 80 1 2025-11-25 14:35:20.125 00:00:00.000 UDP 28.104.0.1:56366 -> 198.28.0.2:53 1 64 1 2025-11-25 14:35:20.126 00:00:00.000 UDP 28.104.0.1:47291 -> 198.28.0.2:53 1 64 1 2025-11-25 14:31:48.589 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2940 1 2025-11-25 14:36:20.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38430 1 109 1 2025-11-25 14:36:20.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57019 1 80 1 2025-11-25 14:36:20.378 00:00:00.000 UDP 28.104.0.1:57019 -> 198.28.0.2:53 1 64 1 2025-11-25 14:36:20.378 00:00:00.000 UDP 28.104.0.1:38430 -> 198.28.0.2:53 1 64 1 2025-11-25 14:37:21.052 00:00:00.000 UDP 28.104.0.1:60200 -> 198.28.0.2:53 1 64 1 2025-11-25 14:37:21.052 00:00:00.000 UDP 28.104.0.1:56187 -> 198.28.0.2:53 1 64 1 2025-11-25 14:33:03.685 00:05:08.639 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 14:37:21.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56187 1 80 1 2025-11-25 14:37:21.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60200 1 109 1 2025-11-25 14:37:45.788 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:33:12.411 00:05:51.343 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:34:03.686 00:05:08.737 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 14:33:12.312 00:06:00.343 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 14:34:03.696 00:05:08.618 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:33:12.312 00:06:00.182 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 14:38:21.347 00:00:00.000 UDP 28.104.0.1:57733 -> 198.28.0.2:53 1 64 1 2025-11-25 14:38:21.347 00:00:00.000 UDP 28.104.0.1:46583 -> 198.28.0.2:53 1 64 1 2025-11-25 14:38:21.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57733 1 80 1 2025-11-25 14:38:21.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46583 1 109 1 2025-11-25 14:39:22.149 00:00:00.000 UDP 28.104.0.1:56667 -> 198.28.0.2:53 1 64 1 2025-11-25 14:39:22.149 00:00:00.000 UDP 28.104.0.1:39143 -> 198.28.0.2:53 1 64 1 2025-11-25 14:39:22.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56667 1 80 1 2025-11-25 14:39:22.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39143 1 109 1 2025-11-25 14:40:22.400 00:00:00.000 UDP 28.104.0.1:53545 -> 198.28.0.2:53 1 64 1 2025-11-25 14:40:22.400 00:00:00.000 UDP 28.104.0.1:47959 -> 198.28.0.2:53 1 64 1 2025-11-25 14:40:22.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53545 1 109 1 2025-11-25 14:40:22.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47959 1 80 1 2025-11-25 14:37:08.595 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2880 1 2025-11-25 14:41:22.714 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33136 1 109 1 2025-11-25 14:41:22.714 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55999 1 80 1 2025-11-25 14:41:22.703 00:00:00.000 UDP 28.104.0.1:55999 -> 198.28.0.2:53 1 64 1 2025-11-25 14:41:22.703 00:00:00.000 UDP 28.104.0.1:33136 -> 198.28.0.2:53 1 64 1 2025-11-25 14:42:22.995 00:00:00.000 UDP 28.104.0.1:49330 -> 198.28.0.2:53 1 64 1 2025-11-25 14:42:22.995 00:00:00.000 UDP 28.104.0.1:51127 -> 198.28.0.2:53 1 64 1 2025-11-25 14:42:23.007 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51127 1 80 1 2025-11-25 14:42:23.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49330 1 109 1 2025-11-25 14:42:45.758 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:39:03.704 00:05:08.621 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 14:43:23.308 00:00:00.000 UDP 28.104.0.1:40140 -> 198.28.0.2:53 1 64 1 2025-11-25 14:43:23.308 00:00:00.000 UDP 28.104.0.1:56103 -> 198.28.0.2:53 1 64 1 2025-11-25 14:43:23.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56103 1 80 1 2025-11-25 14:43:23.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40140 1 109 1 2025-11-25 14:39:12.412 00:05:51.357 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:40:03.715 00:05:08.600 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:40:03.704 00:05:08.720 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 14:44:23.599 00:00:00.000 UDP 28.104.0.1:60054 -> 198.28.0.2:53 1 64 1 2025-11-25 14:44:23.599 00:00:00.000 UDP 28.104.0.1:51971 -> 198.28.0.2:53 1 64 1 2025-11-25 14:44:23.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60054 1 80 1 2025-11-25 14:44:23.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51971 1 109 1 2025-11-25 14:40:12.313 00:06:00.347 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 14:40:12.313 00:06:00.184 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 14:45:23.896 00:00:00.000 UDP 28.104.0.1:42473 -> 198.28.0.2:53 1 64 1 2025-11-25 14:45:23.896 00:00:00.000 UDP 28.104.0.1:53395 -> 198.28.0.2:53 1 64 1 2025-11-25 14:45:23.906 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42473 1 109 1 2025-11-25 14:45:23.906 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53395 1 80 1 2025-11-25 14:46:24.215 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35105 1 109 1 2025-11-25 14:46:24.215 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37821 1 80 1 2025-11-25 14:46:24.205 00:00:00.000 UDP 28.104.0.1:35105 -> 198.28.0.2:53 1 64 1 2025-11-25 14:46:24.205 00:00:00.000 UDP 28.104.0.1:37821 -> 198.28.0.2:53 1 64 1 2025-11-25 14:42:28.600 00:05:00.955 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2788 1 2025-11-25 14:47:24.505 00:00:00.000 UDP 28.104.0.1:54800 -> 198.28.0.2:53 1 64 1 2025-11-25 14:47:24.505 00:00:00.000 UDP 28.104.0.1:57740 -> 198.28.0.2:53 1 64 1 2025-11-25 14:47:24.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57740 1 80 1 2025-11-25 14:47:24.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54800 1 109 1 2025-11-25 14:47:45.747 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:48:24.756 00:00:00.000 UDP 28.104.0.1:51258 -> 198.28.0.2:53 1 64 1 2025-11-25 14:48:24.756 00:00:00.000 UDP 28.104.0.1:48842 -> 198.28.0.2:53 1 64 1 2025-11-25 14:48:24.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48842 1 109 1 2025-11-25 14:48:24.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51258 1 80 1 2025-11-25 14:45:03.719 00:05:08.607 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 14:49:25.052 00:00:00.000 UDP 28.104.0.1:60641 -> 198.28.0.2:53 1 64 1 2025-11-25 14:49:25.052 00:00:00.000 UDP 28.104.0.1:38728 -> 198.28.0.2:53 1 64 1 2025-11-25 14:49:25.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38728 1 109 1 2025-11-25 14:49:25.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60641 1 80 1 2025-11-25 14:45:12.414 00:05:51.359 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:46:03.729 00:05:08.587 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:46:03.719 00:05:08.706 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 14:50:25.345 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34084 1 80 1 2025-11-25 14:50:25.345 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54344 1 109 1 2025-11-25 14:50:25.335 00:00:00.000 UDP 28.104.0.1:34084 -> 198.28.0.2:53 1 64 1 2025-11-25 14:50:25.334 00:00:00.000 UDP 28.104.0.1:54344 -> 198.28.0.2:53 1 64 1 2025-11-25 14:51:25.631 00:00:00.000 UDP 28.104.0.1:38981 -> 198.28.0.2:53 1 64 1 2025-11-25 14:51:25.631 00:00:00.000 UDP 28.104.0.1:45389 -> 198.28.0.2:53 1 64 1 2025-11-25 14:51:25.641 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45389 1 80 1 2025-11-25 14:51:25.641 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38981 1 109 1 2025-11-25 14:47:38.611 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2748 1 2025-11-25 14:47:12.315 00:06:00.344 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 14:47:12.315 00:06:00.197 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 14:52:25.892 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52525 1 109 1 2025-11-25 14:52:25.892 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38584 1 80 1 2025-11-25 14:52:25.883 00:00:00.000 UDP 28.104.0.1:38584 -> 198.28.0.2:53 1 64 1 2025-11-25 14:52:25.883 00:00:00.000 UDP 28.104.0.1:52525 -> 198.28.0.2:53 1 64 1 2025-11-25 14:52:45.766 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:53:26.143 00:00:00.000 UDP 28.104.0.1:50499 -> 198.28.0.2:53 1 64 1 2025-11-25 14:53:26.142 00:00:00.000 UDP 28.104.0.1:34156 -> 198.28.0.2:53 1 64 1 2025-11-25 14:53:26.152 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50499 1 80 1 2025-11-25 14:53:26.152 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34156 1 109 1 2025-11-25 14:54:26.444 00:00:00.000 UDP 28.104.0.1:45624 -> 198.28.0.2:53 1 64 1 2025-11-25 14:54:26.444 00:00:00.000 UDP 28.104.0.1:38687 -> 198.28.0.2:53 1 64 1 2025-11-25 14:54:26.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38687 1 109 1 2025-11-25 14:54:26.454 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45624 1 80 1 2025-11-25 14:51:03.723 00:05:08.604 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 14:55:26.709 00:00:00.000 UDP 28.104.0.1:48054 -> 198.28.0.2:53 1 64 1 2025-11-25 14:55:26.710 00:00:00.000 UDP 28.104.0.1:40145 -> 198.28.0.2:53 1 64 1 2025-11-25 14:55:26.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40145 1 80 1 2025-11-25 14:55:26.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48054 1 109 1 2025-11-25 14:51:12.416 00:05:51.360 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:52:03.734 00:05:08.584 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:52:03.724 00:05:08.702 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 14:56:27.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57129 1 109 1 2025-11-25 14:56:27.019 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57105 1 80 1 2025-11-25 14:56:27.006 00:00:00.000 UDP 28.104.0.1:57129 -> 198.28.0.2:53 1 64 1 2025-11-25 14:56:27.006 00:00:00.000 UDP 28.104.0.1:57105 -> 198.28.0.2:53 1 64 1 2025-11-25 14:52:58.623 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-25 14:57:27.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37825 1 109 1 2025-11-25 14:57:27.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33189 1 80 1 2025-11-25 14:57:27.303 00:00:00.000 UDP 28.104.0.1:37825 -> 198.28.0.2:53 1 64 1 2025-11-25 14:57:27.303 00:00:00.000 UDP 28.104.0.1:33189 -> 198.28.0.2:53 1 64 1 2025-11-25 14:57:45.938 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 14:58:27.600 00:00:00.000 UDP 28.104.0.1:47310 -> 198.28.0.2:53 1 64 1 2025-11-25 14:58:27.600 00:00:00.000 UDP 28.104.0.1:39710 -> 198.28.0.2:53 1 64 1 2025-11-25 14:58:27.610 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47310 1 109 1 2025-11-25 14:58:27.610 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39710 1 80 1 Summary: total flows: 319, total bytes: 95424, total packets: 1404, avg bps: 207, avg pps: 0, avg bpp: 67 Time window: 2025-11-25 13:57:03 - 2025-11-25 14:58:27 Total flows processed: 319, passed: 319, Blocks skipped: 0, Bytes read: 33240 Sys: 0.0044s User: 0.0022s Wall: 0.0038s flows/second: 83859.8 Runtime: 0.0038s