Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 14:54:12.318 00:06:00.343 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 14:54:12.318 00:06:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 14:59:27.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39316 1 109 1 2025-11-25 14:59:27.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52926 1 80 1 2025-11-25 14:59:27.848 00:00:00.000 UDP 28.104.0.1:39316 -> 198.28.0.2:53 1 64 1 2025-11-25 14:59:27.849 00:00:00.000 UDP 28.104.0.1:52926 -> 198.28.0.2:53 1 64 1 2025-11-25 15:00:28.178 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60771 1 109 1 2025-11-25 15:00:28.178 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32793 1 80 1 2025-11-25 15:00:28.168 00:00:00.000 UDP 28.104.0.1:60771 -> 198.28.0.2:53 1 64 1 2025-11-25 15:00:28.168 00:00:00.000 UDP 28.104.0.1:32793 -> 198.28.0.2:53 1 64 1 2025-11-25 14:57:03.725 00:05:08.606 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:01:28.414 00:00:00.000 UDP 28.104.0.1:41601 -> 198.28.0.2:53 1 64 1 2025-11-25 15:01:28.414 00:00:00.000 UDP 28.104.0.1:34623 -> 198.28.0.2:53 1 64 1 2025-11-25 15:01:28.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41601 1 109 1 2025-11-25 15:01:28.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34623 1 80 1 2025-11-25 14:57:12.417 00:05:51.360 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 14:58:03.736 00:05:08.586 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 14:58:03.725 00:05:08.701 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:02:28.675 00:00:00.000 UDP 28.104.0.1:41496 -> 198.28.0.2:53 1 64 1 2025-11-25 15:02:28.675 00:00:00.000 UDP 28.104.0.1:36278 -> 198.28.0.2:53 1 64 1 2025-11-25 15:02:28.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36278 1 80 1 2025-11-25 15:02:28.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41496 1 109 1 2025-11-25 14:58:18.636 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2512 1 2025-11-25 15:02:46.194 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:03:28.976 00:00:00.000 UDP 28.104.0.1:43219 -> 198.28.0.2:53 1 64 1 2025-11-25 15:03:28.976 00:00:00.000 UDP 28.104.0.1:39449 -> 198.28.0.2:53 1 64 1 2025-11-25 15:03:28.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43219 1 80 1 2025-11-25 15:03:28.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39449 1 109 1 2025-11-25 15:04:29.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41302 1 109 1 2025-11-25 15:04:29.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39640 1 80 1 2025-11-25 15:04:29.231 00:00:00.000 UDP 28.104.0.1:39640 -> 198.28.0.2:53 1 64 1 2025-11-25 15:04:29.232 00:00:00.000 UDP 28.104.0.1:41302 -> 198.28.0.2:53 1 64 1 2025-11-25 15:05:29.528 00:00:00.000 UDP 28.104.0.1:48428 -> 198.28.0.2:53 1 64 1 2025-11-25 15:05:29.528 00:00:00.000 UDP 28.104.0.1:43457 -> 198.28.0.2:53 1 64 1 2025-11-25 15:05:29.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43457 1 80 1 2025-11-25 15:05:29.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48428 1 109 1 2025-11-25 15:01:12.321 00:06:00.342 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 15:01:12.321 00:06:00.193 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 15:06:29.818 00:00:00.000 UDP 28.104.0.1:41217 -> 198.28.0.2:53 1 64 1 2025-11-25 15:06:29.819 00:00:00.000 UDP 28.104.0.1:58199 -> 198.28.0.2:53 1 64 1 2025-11-25 15:06:29.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58199 1 109 1 2025-11-25 15:06:29.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41217 1 80 1 2025-11-25 15:03:03.727 00:05:08.607 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:07:30.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45077 1 80 1 2025-11-25 15:07:30.125 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41051 1 109 1 2025-11-25 15:07:30.114 00:00:00.000 UDP 28.104.0.1:41051 -> 198.28.0.2:53 1 64 1 2025-11-25 15:07:30.114 00:00:00.000 UDP 28.104.0.1:45077 -> 198.28.0.2:53 1 64 1 2025-11-25 15:07:46.367 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:03:38.645 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3000 1 2025-11-25 15:03:12.417 00:05:51.361 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 15:04:03.726 00:05:08.704 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:04:03.736 00:05:08.588 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 15:08:30.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58379 1 109 1 2025-11-25 15:08:30.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52440 1 80 1 2025-11-25 15:08:30.424 00:00:00.000 UDP 28.104.0.1:58379 -> 198.28.0.2:53 1 64 1 2025-11-25 15:08:30.424 00:00:00.000 UDP 28.104.0.1:52440 -> 198.28.0.2:53 1 64 1 2025-11-25 15:09:30.681 00:00:00.000 UDP 28.104.0.1:44950 -> 198.28.0.2:53 1 64 1 2025-11-25 15:09:30.681 00:00:00.000 UDP 28.104.0.1:37446 -> 198.28.0.2:53 1 64 1 2025-11-25 15:09:30.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44950 1 109 1 2025-11-25 15:09:30.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37446 1 80 1 2025-11-25 15:10:30.978 00:00:00.000 UDP 28.104.0.1:43309 -> 198.28.0.2:53 1 64 1 2025-11-25 15:10:30.978 00:00:00.000 UDP 28.104.0.1:37027 -> 198.28.0.2:53 1 64 1 2025-11-25 15:10:30.989 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43309 1 80 1 2025-11-25 15:10:30.989 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37027 1 109 1 2025-11-25 15:11:31.287 00:00:00.000 UDP 28.104.0.1:37422 -> 198.28.0.2:53 1 64 1 2025-11-25 15:11:31.286 00:00:00.000 UDP 28.104.0.1:40950 -> 198.28.0.2:53 1 64 1 2025-11-25 15:11:31.298 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37422 1 80 1 2025-11-25 15:11:31.298 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40950 1 109 1 2025-11-25 15:12:31.628 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49692 1 109 1 2025-11-25 15:12:31.628 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44453 1 80 1 2025-11-25 15:12:31.619 00:00:00.000 UDP 28.104.0.1:44453 -> 198.28.0.2:53 1 64 1 2025-11-25 15:12:31.619 00:00:00.000 UDP 28.104.0.1:49692 -> 198.28.0.2:53 1 64 1 2025-11-25 15:12:46.426 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:08:58.652 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2992 1 2025-11-25 15:08:12.323 00:06:00.340 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 15:08:12.323 00:06:00.193 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 15:09:03.728 00:05:08.608 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:13:31.925 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33389 1 109 1 2025-11-25 15:13:31.925 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41431 1 80 1 2025-11-25 15:13:31.915 00:00:00.000 UDP 28.104.0.1:41431 -> 198.28.0.2:53 1 64 1 2025-11-25 15:13:31.916 00:00:00.000 UDP 28.104.0.1:33389 -> 198.28.0.2:53 1 64 1 2025-11-25 15:09:12.420 00:05:51.360 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 15:10:03.737 00:05:08.588 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 15:10:03.727 00:05:08.704 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:14:32.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34968 1 109 1 2025-11-25 15:14:32.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48931 1 80 1 2025-11-25 15:14:32.230 00:00:00.000 UDP 28.104.0.1:34968 -> 198.28.0.2:53 1 64 1 2025-11-25 15:14:32.229 00:00:00.000 UDP 28.104.0.1:48931 -> 198.28.0.2:53 1 64 1 2025-11-25 15:15:32.535 00:00:00.000 UDP 28.104.0.1:35518 -> 198.28.0.2:53 1 64 1 2025-11-25 15:15:32.535 00:00:00.000 UDP 28.104.0.1:41512 -> 198.28.0.2:53 1 64 1 2025-11-25 15:15:32.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41512 1 109 1 2025-11-25 15:15:32.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35518 1 80 1 2025-11-25 15:16:32.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45042 1 80 1 2025-11-25 15:16:32.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47831 1 109 1 2025-11-25 15:16:32.826 00:00:00.000 UDP 28.104.0.1:47831 -> 198.28.0.2:53 1 64 1 2025-11-25 15:16:32.826 00:00:00.000 UDP 28.104.0.1:45042 -> 198.28.0.2:53 1 64 1 2025-11-25 15:17:33.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32785 1 80 1 2025-11-25 15:17:33.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45132 1 109 1 2025-11-25 15:17:33.708 00:00:00.000 UDP 28.104.0.1:45132 -> 198.28.0.2:53 1 64 1 2025-11-25 15:17:33.708 00:00:00.000 UDP 28.104.0.1:32785 -> 198.28.0.2:53 1 64 1 2025-11-25 15:17:46.571 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:14:18.660 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2320 1 2025-11-25 15:18:34.005 00:00:00.000 UDP 28.104.0.1:59071 -> 198.28.0.2:53 1 64 1 2025-11-25 15:18:34.005 00:00:00.000 UDP 28.104.0.1:55511 -> 198.28.0.2:53 1 64 1 2025-11-25 15:18:34.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55511 1 109 1 2025-11-25 15:18:34.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59071 1 80 1 2025-11-25 15:15:03.729 00:05:08.606 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:19:34.301 00:00:00.000 UDP 28.104.0.1:51520 -> 198.28.0.2:53 1 64 1 2025-11-25 15:19:34.302 00:00:00.000 UDP 28.104.0.1:58818 -> 198.28.0.2:53 1 64 1 2025-11-25 15:19:34.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58818 1 109 1 2025-11-25 15:19:34.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51520 1 80 1 2025-11-25 15:15:12.422 00:05:51.359 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 15:15:12.326 00:06:00.345 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 15:16:03.739 00:05:08.587 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 15:15:12.326 00:06:00.190 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 15:16:03.729 00:05:08.703 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:20:34.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47856 1 109 1 2025-11-25 15:20:34.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45101 1 80 1 2025-11-25 15:20:34.610 00:00:00.000 UDP 28.104.0.1:47856 -> 198.28.0.2:53 1 64 1 2025-11-25 15:20:34.610 00:00:00.000 UDP 28.104.0.1:45101 -> 198.28.0.2:53 1 64 1 2025-11-25 15:21:34.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57479 1 109 1 2025-11-25 15:21:34.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34197 1 80 1 2025-11-25 15:21:34.863 00:00:00.000 UDP 28.104.0.1:57479 -> 198.28.0.2:53 1 64 1 2025-11-25 15:21:34.863 00:00:00.000 UDP 28.104.0.1:34197 -> 198.28.0.2:53 1 64 1 2025-11-25 15:22:35.182 00:00:00.000 UDP 28.104.0.1:52292 -> 198.28.0.2:53 1 64 1 2025-11-25 15:22:35.182 00:00:00.000 UDP 28.104.0.1:38612 -> 198.28.0.2:53 1 64 1 2025-11-25 15:22:35.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38612 1 109 1 2025-11-25 15:22:35.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52292 1 80 1 2025-11-25 15:22:46.465 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:23:35.470 00:00:00.000 UDP 28.104.0.1:34450 -> 198.28.0.2:53 1 64 1 2025-11-25 15:23:35.471 00:00:00.000 UDP 28.104.0.1:45544 -> 198.28.0.2:53 1 64 1 2025-11-25 15:23:35.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34450 1 109 1 2025-11-25 15:23:35.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45544 1 80 1 2025-11-25 15:19:38.673 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2748 1 2025-11-25 15:24:35.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42773 1 80 1 2025-11-25 15:24:35.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60653 1 109 1 2025-11-25 15:24:35.770 00:00:00.000 UDP 28.104.0.1:42773 -> 198.28.0.2:53 1 64 1 2025-11-25 15:24:35.770 00:00:00.000 UDP 28.104.0.1:60653 -> 198.28.0.2:53 1 64 1 2025-11-25 15:21:03.731 00:05:08.606 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:25:36.090 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34298 1 109 1 2025-11-25 15:25:36.090 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34913 1 80 1 2025-11-25 15:25:36.081 00:00:00.000 UDP 28.104.0.1:34298 -> 198.28.0.2:53 1 64 1 2025-11-25 15:25:36.081 00:00:00.000 UDP 28.104.0.1:34913 -> 198.28.0.2:53 1 64 1 2025-11-25 15:21:12.424 00:05:51.360 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 15:22:03.732 00:05:08.703 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:22:03.741 00:05:08.586 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 15:26:36.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46769 1 109 1 2025-11-25 15:26:36.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41449 1 80 1 2025-11-25 15:26:36.377 00:00:00.000 UDP 28.104.0.1:46769 -> 198.28.0.2:53 1 64 1 2025-11-25 15:26:36.378 00:00:00.000 UDP 28.104.0.1:41449 -> 198.28.0.2:53 1 64 1 2025-11-25 15:22:12.327 00:06:00.346 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 15:22:12.327 00:06:00.192 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 15:27:36.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40348 1 109 1 2025-11-25 15:27:36.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33490 1 80 1 2025-11-25 15:27:36.666 00:00:00.000 UDP 28.104.0.1:33490 -> 198.28.0.2:53 1 64 1 2025-11-25 15:27:36.666 00:00:00.000 UDP 28.104.0.1:40348 -> 198.28.0.2:53 1 64 1 2025-11-25 15:27:46.665 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:28:36.959 00:00:00.000 UDP 28.104.0.1:59516 -> 198.28.0.2:53 1 64 1 2025-11-25 15:28:36.960 00:00:00.000 UDP 28.104.0.1:34103 -> 198.28.0.2:53 1 64 1 2025-11-25 15:28:36.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59516 1 80 1 2025-11-25 15:28:36.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34103 1 109 1 2025-11-25 15:24:58.680 00:05:10.415 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2588 1 2025-11-25 15:29:37.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59354 1 80 1 2025-11-25 15:29:37.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34138 1 109 1 2025-11-25 15:29:37.256 00:00:00.000 UDP 28.104.0.1:34138 -> 198.28.0.2:53 1 64 1 2025-11-25 15:29:37.256 00:00:00.000 UDP 28.104.0.1:59354 -> 198.28.0.2:53 1 64 1 2025-11-25 15:30:37.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33327 1 109 1 2025-11-25 15:30:37.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46511 1 80 1 2025-11-25 15:30:37.549 00:00:00.000 UDP 28.104.0.1:46511 -> 198.28.0.2:53 1 64 1 2025-11-25 15:30:37.549 00:00:00.000 UDP 28.104.0.1:33327 -> 198.28.0.2:53 1 64 1 2025-11-25 15:27:03.732 00:05:08.608 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:31:37.812 00:00:00.000 UDP 28.104.0.1:56674 -> 198.28.0.2:53 1 64 1 2025-11-25 15:31:37.812 00:00:00.000 UDP 28.104.0.1:54456 -> 198.28.0.2:53 1 64 1 2025-11-25 15:31:37.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54456 1 109 1 2025-11-25 15:31:37.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56674 1 80 1 2025-11-25 15:27:12.425 00:05:51.361 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 15:28:03.744 00:05:08.585 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 15:28:03.734 00:05:08.702 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:32:38.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45340 1 109 1 2025-11-25 15:32:38.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38474 1 80 1 2025-11-25 15:32:38.109 00:00:00.000 UDP 28.104.0.1:45340 -> 198.28.0.2:53 1 64 1 2025-11-25 15:32:38.109 00:00:00.000 UDP 28.104.0.1:38474 -> 198.28.0.2:53 1 64 1 2025-11-25 15:32:46.539 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:33:38.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40166 1 80 1 2025-11-25 15:33:38.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55368 1 109 1 2025-11-25 15:33:38.403 00:00:00.000 UDP 28.104.0.1:40166 -> 198.28.0.2:53 1 64 1 2025-11-25 15:33:38.403 00:00:00.000 UDP 28.104.0.1:55368 -> 198.28.0.2:53 1 64 1 2025-11-25 15:29:12.329 00:06:00.345 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 15:29:12.329 00:06:00.190 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 15:30:18.687 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2920 1 2025-11-25 15:34:38.712 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42297 1 109 1 2025-11-25 15:34:38.712 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46912 1 80 1 2025-11-25 15:34:38.702 00:00:00.000 UDP 28.104.0.1:42297 -> 198.28.0.2:53 1 64 1 2025-11-25 15:34:38.702 00:00:00.000 UDP 28.104.0.1:46912 -> 198.28.0.2:53 1 64 1 2025-11-25 15:35:38.961 00:00:00.000 UDP 28.104.0.1:44593 -> 198.28.0.2:53 1 64 1 2025-11-25 15:35:38.961 00:00:00.000 UDP 28.104.0.1:43052 -> 198.28.0.2:53 1 64 1 2025-11-25 15:35:38.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43052 1 80 1 2025-11-25 15:35:38.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44593 1 109 1 2025-11-25 15:36:39.259 00:00:00.000 UDP 28.104.0.1:33501 -> 198.28.0.2:53 1 64 1 2025-11-25 15:36:39.260 00:00:00.000 UDP 28.104.0.1:39578 -> 198.28.0.2:53 1 64 1 2025-11-25 15:36:39.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39578 1 109 1 2025-11-25 15:36:39.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33501 1 80 1 2025-11-25 15:33:03.737 00:05:08.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:37:39.559 00:00:00.000 UDP 28.104.0.1:32989 -> 198.28.0.2:53 1 64 1 2025-11-25 15:37:39.559 00:00:00.000 UDP 28.104.0.1:59195 -> 198.28.0.2:53 1 64 1 2025-11-25 15:37:39.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32989 1 80 1 2025-11-25 15:37:39.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59195 1 109 1 2025-11-25 15:37:46.650 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:33:12.425 00:05:51.363 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 15:34:03.746 00:05:08.585 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 15:34:03.736 00:05:08.701 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:38:39.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39273 1 109 1 2025-11-25 15:38:39.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46059 1 80 1 2025-11-25 15:38:39.849 00:00:00.000 UDP 28.104.0.1:46059 -> 198.28.0.2:53 1 64 1 2025-11-25 15:38:39.849 00:00:00.000 UDP 28.104.0.1:39273 -> 198.28.0.2:53 1 64 1 2025-11-25 15:39:40.169 00:00:00.000 UDP 28.104.0.1:41817 -> 198.28.0.2:53 1 64 1 2025-11-25 15:39:40.169 00:00:00.000 UDP 28.104.0.1:60354 -> 198.28.0.2:53 1 64 1 2025-11-25 15:39:40.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41817 1 80 1 2025-11-25 15:39:40.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60354 1 109 1 2025-11-25 15:35:38.697 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2968 1 2025-11-25 15:40:40.464 00:00:00.000 UDP 28.104.0.1:58491 -> 198.28.0.2:53 1 64 1 2025-11-25 15:40:40.465 00:00:00.000 UDP 28.104.0.1:58370 -> 198.28.0.2:53 1 64 1 2025-11-25 15:40:40.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58370 1 109 1 2025-11-25 15:40:40.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58491 1 80 1 2025-11-25 15:36:12.331 00:06:00.345 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 15:36:12.331 00:06:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 15:41:40.773 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46119 1 109 1 2025-11-25 15:41:40.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39926 1 80 1 2025-11-25 15:41:40.765 00:00:00.000 UDP 28.104.0.1:39926 -> 198.28.0.2:53 1 64 1 2025-11-25 15:41:40.764 00:00:00.000 UDP 28.104.0.1:46119 -> 198.28.0.2:53 1 64 1 2025-11-25 15:42:41.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38382 1 80 1 2025-11-25 15:42:41.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53227 1 109 1 2025-11-25 15:42:41.069 00:00:00.000 UDP 28.104.0.1:38382 -> 198.28.0.2:53 1 64 1 2025-11-25 15:42:41.069 00:00:00.000 UDP 28.104.0.1:53227 -> 198.28.0.2:53 1 64 1 2025-11-25 15:42:46.760 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:39:03.737 00:05:08.604 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:43:41.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44990 1 80 1 2025-11-25 15:43:41.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49222 1 109 1 2025-11-25 15:43:41.369 00:00:00.000 UDP 28.104.0.1:44990 -> 198.28.0.2:53 1 64 1 2025-11-25 15:43:41.369 00:00:00.000 UDP 28.104.0.1:49222 -> 198.28.0.2:53 1 64 1 2025-11-25 15:39:12.427 00:05:51.367 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 15:40:03.747 00:05:08.584 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 15:40:03.738 00:05:08.703 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:44:41.657 00:00:00.000 UDP 28.104.0.1:41604 -> 198.28.0.2:53 1 64 1 2025-11-25 15:44:41.657 00:00:00.000 UDP 28.104.0.1:47032 -> 198.28.0.2:53 1 64 1 2025-11-25 15:44:41.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41604 1 80 1 2025-11-25 15:44:41.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47032 1 109 1 2025-11-25 15:40:58.704 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-11-25 15:45:41.955 00:00:00.000 UDP 28.104.0.1:34857 -> 198.28.0.2:53 1 64 1 2025-11-25 15:45:41.955 00:00:00.000 UDP 28.104.0.1:43508 -> 198.28.0.2:53 1 64 1 2025-11-25 15:45:41.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43508 1 80 1 2025-11-25 15:45:41.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34857 1 109 1 2025-11-25 15:46:42.234 00:00:00.000 UDP 28.104.0.1:56436 -> 198.28.0.2:53 1 64 1 2025-11-25 15:46:42.234 00:00:00.000 UDP 28.104.0.1:55341 -> 198.28.0.2:53 1 64 1 2025-11-25 15:46:42.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55341 1 80 1 2025-11-25 15:46:42.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56436 1 109 1 2025-11-25 15:47:42.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51300 1 109 1 2025-11-25 15:47:42.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56504 1 80 1 2025-11-25 15:47:42.486 00:00:00.000 UDP 28.104.0.1:51300 -> 198.28.0.2:53 1 64 1 2025-11-25 15:47:42.486 00:00:00.000 UDP 28.104.0.1:56504 -> 198.28.0.2:53 1 64 1 2025-11-25 15:47:47.042 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:43:12.332 00:06:00.195 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 15:43:12.332 00:06:00.346 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 15:48:42.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51058 1 80 1 2025-11-25 15:48:42.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45553 1 109 1 2025-11-25 15:48:42.783 00:00:00.000 UDP 28.104.0.1:45553 -> 198.28.0.2:53 1 64 1 2025-11-25 15:48:42.783 00:00:00.000 UDP 28.104.0.1:51058 -> 198.28.0.2:53 1 64 1 2025-11-25 15:45:03.743 00:05:08.600 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:49:43.234 00:00:00.000 UDP 28.104.0.1:49884 -> 198.28.0.2:53 1 64 1 2025-11-25 15:49:43.234 00:00:00.000 UDP 28.104.0.1:59014 -> 198.28.0.2:53 1 64 1 2025-11-25 15:49:43.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59014 1 80 1 2025-11-25 15:49:43.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49884 1 109 1 2025-11-25 15:45:12.431 00:05:51.362 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 15:46:03.752 00:05:08.582 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 15:46:03.743 00:05:08.703 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:46:18.711 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2812 1 2025-11-25 15:50:43.490 00:00:00.000 UDP 28.104.0.1:44191 -> 198.28.0.2:53 1 64 1 2025-11-25 15:50:43.490 00:00:00.000 UDP 28.104.0.1:53295 -> 198.28.0.2:53 1 64 1 2025-11-25 15:50:43.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53295 1 80 1 2025-11-25 15:50:43.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44191 1 109 1 2025-11-25 15:51:43.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37159 1 109 1 2025-11-25 15:51:43.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35593 1 80 1 2025-11-25 15:51:43.741 00:00:00.000 UDP 28.104.0.1:37159 -> 198.28.0.2:53 1 64 1 2025-11-25 15:51:43.741 00:00:00.000 UDP 28.104.0.1:35593 -> 198.28.0.2:53 1 64 1 2025-11-25 15:52:44.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51083 1 80 1 2025-11-25 15:52:44.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52314 1 109 1 2025-11-25 15:52:44.058 00:00:00.000 UDP 28.104.0.1:51083 -> 198.28.0.2:53 1 64 1 2025-11-25 15:52:44.058 00:00:00.000 UDP 28.104.0.1:52314 -> 198.28.0.2:53 1 64 1 2025-11-25 15:52:47.144 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:53:44.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57938 1 80 1 2025-11-25 15:53:44.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37342 1 109 1 2025-11-25 15:53:44.356 00:00:00.000 UDP 28.104.0.1:37342 -> 198.28.0.2:53 1 64 1 2025-11-25 15:53:44.356 00:00:00.000 UDP 28.104.0.1:57938 -> 198.28.0.2:53 1 64 1 2025-11-25 15:54:44.915 00:00:00.000 UDP 28.104.0.1:60251 -> 198.28.0.2:53 1 64 1 2025-11-25 15:54:44.915 00:00:00.000 UDP 28.104.0.1:40472 -> 198.28.0.2:53 1 64 1 2025-11-25 15:54:44.926 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40472 1 109 1 2025-11-25 15:54:44.926 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60251 1 80 1 2025-11-25 15:51:03.742 00:05:08.602 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 15:50:12.333 00:06:00.344 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 15:50:12.333 00:06:00.197 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 15:55:45.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52212 1 80 1 2025-11-25 15:55:45.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34363 1 109 1 2025-11-25 15:55:45.184 00:00:00.000 UDP 28.104.0.1:52212 -> 198.28.0.2:53 1 64 1 2025-11-25 15:55:45.184 00:00:00.000 UDP 28.104.0.1:34363 -> 198.28.0.2:53 1 64 1 2025-11-25 15:51:38.723 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-25 15:51:12.435 00:05:51.359 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 15:52:03.753 00:05:08.581 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 15:52:03.743 00:05:08.703 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 15:56:45.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51246 1 109 1 2025-11-25 15:56:45.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57732 1 80 1 2025-11-25 15:56:45.476 00:00:00.000 UDP 28.104.0.1:57732 -> 198.28.0.2:53 1 64 1 2025-11-25 15:56:45.476 00:00:00.000 UDP 28.104.0.1:51246 -> 198.28.0.2:53 1 64 1 2025-11-25 15:57:45.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46484 1 109 1 2025-11-25 15:57:45.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55096 1 80 1 2025-11-25 15:57:45.768 00:00:00.000 UDP 28.104.0.1:55096 -> 198.28.0.2:53 1 64 1 2025-11-25 15:57:45.768 00:00:00.000 UDP 28.104.0.1:46484 -> 198.28.0.2:53 1 64 1 2025-11-25 15:57:47.181 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 15:58:46.182 00:00:00.000 UDP 28.104.0.1:34647 -> 198.28.0.2:53 1 64 1 2025-11-25 15:58:46.182 00:00:00.000 UDP 28.104.0.1:52106 -> 198.28.0.2:53 1 64 1 2025-11-25 15:58:46.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34647 1 80 1 2025-11-25 15:58:46.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52106 1 109 1 Summary: total flows: 321, total bytes: 96830, total packets: 1429, avg bps: 199, avg pps: 0, avg bpp: 67 Time window: 2025-11-25 14:54:12 - 2025-11-25 15:58:46 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0050s User: 0.0020s Wall: 0.0040s flows/second: 80572.8 Runtime: 0.0040s