Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 00:59:49.494 00:00:00.000 UDP 28.104.0.1:43881 -> 198.28.0.2:53 1 64 1 2025-11-27 00:59:49.494 00:00:00.000 UDP 28.104.0.1:59822 -> 198.28.0.2:53 1 64 1 2025-11-27 00:59:49.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43881 1 80 1 2025-11-27 00:59:49.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59822 1 109 1 2025-11-27 00:56:31.299 00:05:10.016 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2752 1 2025-11-27 01:00:49.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40038 1 80 1 2025-11-27 01:00:49.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42233 1 109 1 2025-11-27 01:00:49.753 00:00:00.000 UDP 28.104.0.1:42233 -> 198.28.0.2:53 1 64 1 2025-11-27 01:00:49.753 00:00:00.000 UDP 28.104.0.1:40038 -> 198.28.0.2:53 1 64 1 2025-11-27 00:56:12.976 00:05:51.416 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 00:57:04.439 00:05:08.688 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 00:57:12.966 00:05:00.566 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 00:57:04.390 00:05:08.747 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:01:50.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41962 1 109 1 2025-11-27 01:01:50.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55459 1 80 1 2025-11-27 01:01:50.059 00:00:00.000 UDP 28.104.0.1:55459 -> 198.28.0.2:53 1 64 1 2025-11-27 01:01:50.059 00:00:00.000 UDP 28.104.0.1:41962 -> 198.28.0.2:53 1 64 1 2025-11-27 00:57:12.967 00:05:51.436 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:02:50.360 00:00:00.000 UDP 28.104.0.1:39781 -> 198.28.0.2:53 1 64 1 2025-11-27 01:02:50.360 00:00:00.000 UDP 28.104.0.1:56357 -> 198.28.0.2:53 1 64 1 2025-11-27 01:02:50.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39781 1 109 1 2025-11-27 01:02:50.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56357 1 80 1 2025-11-27 01:03:26.982 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:03:50.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60075 1 109 1 2025-11-27 01:03:50.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54904 1 80 1 2025-11-27 01:03:50.656 00:00:00.000 UDP 28.104.0.1:54904 -> 198.28.0.2:53 1 64 1 2025-11-27 01:03:50.655 00:00:00.000 UDP 28.104.0.1:60075 -> 198.28.0.2:53 1 64 1 2025-11-27 01:00:12.967 00:05:00.451 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:04:50.911 00:00:00.000 UDP 28.104.0.1:60642 -> 198.28.0.2:53 1 64 1 2025-11-27 01:04:50.911 00:00:00.000 UDP 28.104.0.1:42322 -> 198.28.0.2:53 1 64 1 2025-11-27 01:04:50.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60642 1 80 1 2025-11-27 01:04:50.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42322 1 109 1 2025-11-27 01:05:51.226 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38567 1 80 1 2025-11-27 01:01:41.613 00:05:09.693 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2376 1 2025-11-27 01:05:51.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37740 1 109 1 2025-11-27 01:05:51.216 00:00:00.000 UDP 28.104.0.1:38567 -> 198.28.0.2:53 1 64 1 2025-11-27 01:05:51.216 00:00:00.000 UDP 28.104.0.1:37740 -> 198.28.0.2:53 1 64 1 2025-11-27 01:06:51.525 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53094 1 80 1 2025-11-27 01:06:51.525 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43174 1 109 1 2025-11-27 01:06:51.515 00:00:00.000 UDP 28.104.0.1:53094 -> 198.28.0.2:53 1 64 1 2025-11-27 01:06:51.515 00:00:00.000 UDP 28.104.0.1:43174 -> 198.28.0.2:53 1 64 1 2025-11-27 01:02:12.977 00:05:51.417 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 01:03:04.442 00:05:08.685 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 01:03:12.967 00:05:00.566 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 01:03:04.392 00:05:08.746 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:07:51.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55643 1 80 1 2025-11-27 01:07:51.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57530 1 109 1 2025-11-27 01:07:51.805 00:00:00.000 UDP 28.104.0.1:55643 -> 198.28.0.2:53 1 64 1 2025-11-27 01:07:51.805 00:00:00.000 UDP 28.104.0.1:57530 -> 198.28.0.2:53 1 64 1 2025-11-27 01:03:12.969 00:05:51.436 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:08:27.214 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:08:52.112 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45913 1 80 1 2025-11-27 01:08:52.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43035 1 109 1 2025-11-27 01:08:52.100 00:00:00.000 UDP 28.104.0.1:43035 -> 198.28.0.2:53 1 64 1 2025-11-27 01:08:52.100 00:00:00.000 UDP 28.104.0.1:45913 -> 198.28.0.2:53 1 64 1 2025-11-27 01:09:52.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52615 1 109 1 2025-11-27 01:09:52.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57285 1 80 1 2025-11-27 01:09:52.390 00:00:00.000 UDP 28.104.0.1:52615 -> 198.28.0.2:53 1 64 1 2025-11-27 01:09:52.391 00:00:00.000 UDP 28.104.0.1:57285 -> 198.28.0.2:53 1 64 1 2025-11-27 01:06:12.970 00:05:00.449 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:10:52.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60601 1 109 1 2025-11-27 01:10:52.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57048 1 80 1 2025-11-27 01:10:52.687 00:00:00.000 UDP 28.104.0.1:57048 -> 198.28.0.2:53 1 64 1 2025-11-27 01:10:52.687 00:00:00.000 UDP 28.104.0.1:60601 -> 198.28.0.2:53 1 64 1 2025-11-27 01:07:01.308 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2892 1 2025-11-27 01:11:52.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48465 1 109 1 2025-11-27 01:11:52.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39622 1 80 1 2025-11-27 01:11:52.981 00:00:00.000 UDP 28.104.0.1:39622 -> 198.28.0.2:53 1 64 1 2025-11-27 01:11:52.982 00:00:00.000 UDP 28.104.0.1:48465 -> 198.28.0.2:53 1 64 1 2025-11-27 01:12:53.271 00:00:00.000 UDP 28.104.0.1:52662 -> 198.28.0.2:53 1 64 1 2025-11-27 01:12:53.271 00:00:00.000 UDP 28.104.0.1:33317 -> 198.28.0.2:53 1 64 1 2025-11-27 01:12:53.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33317 1 80 1 2025-11-27 01:12:53.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52662 1 109 1 2025-11-27 01:08:12.978 00:05:51.416 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 01:09:04.444 00:05:08.685 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 01:09:12.969 00:05:00.565 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 01:09:04.395 00:05:08.746 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:13:27.390 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:13:53.597 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53153 1 80 1 2025-11-27 01:13:53.597 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39805 1 109 1 2025-11-27 01:13:53.586 00:00:00.000 UDP 28.104.0.1:53153 -> 198.28.0.2:53 1 64 1 2025-11-27 01:13:53.587 00:00:00.000 UDP 28.104.0.1:39805 -> 198.28.0.2:53 1 64 1 2025-11-27 01:09:12.968 00:05:51.436 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:14:53.886 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48724 1 80 1 2025-11-27 01:14:53.886 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34883 1 109 1 2025-11-27 01:14:53.878 00:00:00.000 UDP 28.104.0.1:34883 -> 198.28.0.2:53 1 64 1 2025-11-27 01:14:53.878 00:00:00.000 UDP 28.104.0.1:48724 -> 198.28.0.2:53 1 64 1 2025-11-27 01:15:54.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47554 1 80 1 2025-11-27 01:15:54.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39820 1 109 1 2025-11-27 01:15:54.201 00:00:00.000 UDP 28.104.0.1:39820 -> 198.28.0.2:53 1 64 1 2025-11-27 01:15:54.201 00:00:00.000 UDP 28.104.0.1:47554 -> 198.28.0.2:53 1 64 1 2025-11-27 01:12:12.969 00:05:00.451 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:12:21.309 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-27 01:16:55.171 00:00:00.000 UDP 28.104.0.1:36052 -> 198.28.0.2:53 1 64 1 2025-11-27 01:16:55.172 00:00:00.000 UDP 28.104.0.1:36404 -> 198.28.0.2:53 1 64 1 2025-11-27 01:16:55.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36052 1 80 1 2025-11-27 01:16:55.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36404 1 109 1 2025-11-27 01:17:55.528 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36228 1 80 1 2025-11-27 01:17:55.527 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42901 1 109 1 2025-11-27 01:17:55.517 00:00:00.000 UDP 28.104.0.1:36228 -> 198.28.0.2:53 1 64 1 2025-11-27 01:17:55.517 00:00:00.000 UDP 28.104.0.1:42901 -> 198.28.0.2:53 1 64 1 2025-11-27 01:18:27.428 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:18:55.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46151 1 109 1 2025-11-27 01:18:55.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52658 1 80 1 2025-11-27 01:18:55.766 00:00:00.000 UDP 28.104.0.1:52658 -> 198.28.0.2:53 1 64 1 2025-11-27 01:18:55.766 00:00:00.000 UDP 28.104.0.1:46151 -> 198.28.0.2:53 1 64 1 2025-11-27 01:14:12.978 00:05:51.417 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 01:15:04.395 00:05:08.746 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:15:04.446 00:05:08.686 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 01:15:12.971 00:05:00.565 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 01:19:56.075 00:00:00.000 UDP 28.104.0.1:55133 -> 198.28.0.2:53 1 64 1 2025-11-27 01:19:56.076 00:00:00.000 UDP 28.104.0.1:57885 -> 198.28.0.2:53 1 64 1 2025-11-27 01:19:56.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57885 1 109 1 2025-11-27 01:19:56.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55133 1 80 1 2025-11-27 01:15:12.969 00:05:51.445 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:20:56.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49005 1 80 1 2025-11-27 01:20:56.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45911 1 109 1 2025-11-27 01:20:56.372 00:00:00.000 UDP 28.104.0.1:45911 -> 198.28.0.2:53 1 64 1 2025-11-27 01:20:56.372 00:00:00.000 UDP 28.104.0.1:49005 -> 198.28.0.2:53 1 64 1 2025-11-27 01:21:56.623 00:00:00.000 UDP 28.104.0.1:50714 -> 198.28.0.2:53 1 64 1 2025-11-27 01:21:56.622 00:00:00.000 UDP 28.104.0.1:57806 -> 198.28.0.2:53 1 64 1 2025-11-27 01:17:41.318 00:05:10.601 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2800 1 2025-11-27 01:21:56.634 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50714 1 109 1 2025-11-27 01:21:56.632 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57806 1 80 1 2025-11-27 01:18:12.971 00:05:00.455 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:22:56.882 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36251 1 109 1 2025-11-27 01:22:56.882 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53349 1 80 1 2025-11-27 01:22:56.871 00:00:00.000 UDP 28.104.0.1:53349 -> 198.28.0.2:53 1 64 1 2025-11-27 01:22:56.872 00:00:00.000 UDP 28.104.0.1:36251 -> 198.28.0.2:53 1 64 1 2025-11-27 01:23:27.360 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:23:57.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50621 1 109 1 2025-11-27 01:23:57.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35304 1 80 1 2025-11-27 01:23:57.168 00:00:00.000 UDP 28.104.0.1:35304 -> 198.28.0.2:53 1 64 1 2025-11-27 01:23:57.169 00:00:00.000 UDP 28.104.0.1:50621 -> 198.28.0.2:53 1 64 1 2025-11-27 01:24:57.458 00:00:00.000 UDP 28.104.0.1:35551 -> 198.28.0.2:53 1 64 1 2025-11-27 01:24:57.458 00:00:00.000 UDP 28.104.0.1:57760 -> 198.28.0.2:53 1 64 1 2025-11-27 01:24:57.469 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57760 1 80 1 2025-11-27 01:24:57.468 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35551 1 109 1 2025-11-27 01:20:12.981 00:05:51.420 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 01:21:04.404 00:05:08.761 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:21:04.454 00:05:08.685 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 01:21:12.971 00:05:00.565 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 01:25:57.753 00:00:00.000 UDP 28.104.0.1:56054 -> 198.28.0.2:53 1 64 1 2025-11-27 01:25:57.753 00:00:00.000 UDP 28.104.0.1:51818 -> 198.28.0.2:53 1 64 1 2025-11-27 01:25:57.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51818 1 80 1 2025-11-27 01:25:57.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56054 1 109 1 2025-11-27 01:21:12.970 00:05:51.441 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:26:58.057 00:00:00.000 UDP 28.104.0.1:53356 -> 198.28.0.2:53 1 64 1 2025-11-27 01:26:58.057 00:00:00.000 UDP 28.104.0.1:38018 -> 198.28.0.2:53 1 64 1 2025-11-27 01:26:58.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38018 1 80 1 2025-11-27 01:26:58.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53356 1 109 1 2025-11-27 01:23:01.326 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-11-27 01:27:58.311 00:00:00.000 UDP 28.104.0.1:41902 -> 198.28.0.2:53 1 64 1 2025-11-27 01:27:58.311 00:00:00.000 UDP 28.104.0.1:42719 -> 198.28.0.2:53 1 64 1 2025-11-27 01:27:58.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42719 1 80 1 2025-11-27 01:27:58.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41902 1 109 1 2025-11-27 01:24:12.970 00:05:00.456 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:28:27.567 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:28:58.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33104 1 80 1 2025-11-27 01:28:58.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47327 1 109 1 2025-11-27 01:28:58.661 00:00:00.000 UDP 28.104.0.1:47327 -> 198.28.0.2:53 1 64 1 2025-11-27 01:28:58.661 00:00:00.000 UDP 28.104.0.1:33104 -> 198.28.0.2:53 1 64 1 2025-11-27 01:29:58.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56860 1 80 1 2025-11-27 01:29:58.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39003 1 109 1 2025-11-27 01:29:58.948 00:00:00.000 UDP 28.104.0.1:39003 -> 198.28.0.2:53 1 64 1 2025-11-27 01:29:58.947 00:00:00.000 UDP 28.104.0.1:56860 -> 198.28.0.2:53 1 64 1 2025-11-27 01:30:59.221 00:00:00.000 UDP 28.104.0.1:34103 -> 198.28.0.2:53 1 64 1 2025-11-27 01:30:59.222 00:00:00.000 UDP 28.104.0.1:53684 -> 198.28.0.2:53 1 64 1 2025-11-27 01:30:59.232 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53684 1 109 1 2025-11-27 01:30:59.231 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34103 1 80 1 2025-11-27 01:26:12.981 00:05:51.421 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 01:27:04.401 00:05:08.745 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:27:04.451 00:05:08.685 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 01:27:12.971 00:05:00.567 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 01:31:59.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44094 1 80 1 2025-11-27 01:31:59.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34922 1 109 1 2025-11-27 01:31:59.474 00:00:00.000 UDP 28.104.0.1:44094 -> 198.28.0.2:53 1 64 1 2025-11-27 01:31:59.474 00:00:00.000 UDP 28.104.0.1:34922 -> 198.28.0.2:53 1 64 1 2025-11-27 01:27:12.971 00:05:51.442 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:28:21.330 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2792 1 2025-11-27 01:32:59.767 00:00:00.000 UDP 28.104.0.1:50114 -> 198.28.0.2:53 1 64 1 2025-11-27 01:32:59.767 00:00:00.000 UDP 28.104.0.1:33442 -> 198.28.0.2:53 1 64 1 2025-11-27 01:32:59.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33442 1 109 1 2025-11-27 01:32:59.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50114 1 80 1 2025-11-27 01:33:27.518 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:34:00.074 00:00:00.000 UDP 28.104.0.1:43360 -> 198.28.0.2:53 1 64 1 2025-11-27 01:34:00.074 00:00:00.000 UDP 28.104.0.1:53865 -> 198.28.0.2:53 1 64 1 2025-11-27 01:34:00.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43360 1 80 1 2025-11-27 01:34:00.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53865 1 109 1 2025-11-27 01:30:12.972 00:05:00.455 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:35:00.364 00:00:00.000 UDP 28.104.0.1:58498 -> 198.28.0.2:53 1 64 1 2025-11-27 01:35:00.364 00:00:00.000 UDP 28.104.0.1:51973 -> 198.28.0.2:53 1 64 1 2025-11-27 01:35:00.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51973 1 80 1 2025-11-27 01:35:00.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58498 1 109 1 2025-11-27 01:36:00.659 00:00:00.000 UDP 28.104.0.1:49214 -> 198.28.0.2:53 1 64 1 2025-11-27 01:36:00.659 00:00:00.000 UDP 28.104.0.1:52264 -> 198.28.0.2:53 1 64 1 2025-11-27 01:36:00.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49214 1 80 1 2025-11-27 01:36:00.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52264 1 109 1 2025-11-27 01:37:00.946 00:00:00.000 UDP 28.104.0.1:56594 -> 198.28.0.2:53 1 64 1 2025-11-27 01:37:00.946 00:00:00.000 UDP 28.104.0.1:59273 -> 198.28.0.2:53 1 64 1 2025-11-27 01:37:00.956 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59273 1 80 1 2025-11-27 01:37:00.957 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56594 1 109 1 2025-11-27 01:32:12.983 00:05:51.421 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 01:33:04.403 00:05:08.745 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:33:04.453 00:05:08.684 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 01:33:12.975 00:05:00.591 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 01:33:41.333 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2948 1 2025-11-27 01:38:01.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39366 1 80 1 2025-11-27 01:38:01.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59044 1 109 1 2025-11-27 01:38:01.241 00:00:00.000 UDP 28.104.0.1:39366 -> 198.28.0.2:53 1 64 1 2025-11-27 01:38:01.242 00:00:00.000 UDP 28.104.0.1:59044 -> 198.28.0.2:53 1 64 1 2025-11-27 01:33:12.976 00:05:51.440 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:38:28.164 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:39:01.488 00:00:00.000 UDP 28.104.0.1:60016 -> 198.28.0.2:53 1 64 1 2025-11-27 01:39:01.488 00:00:00.000 UDP 28.104.0.1:38113 -> 198.28.0.2:53 1 64 1 2025-11-27 01:39:01.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38113 1 80 1 2025-11-27 01:39:01.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60016 1 109 1 2025-11-27 01:40:01.743 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38020 1 109 1 2025-11-27 01:40:01.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59846 1 80 1 2025-11-27 01:40:01.734 00:00:00.000 UDP 28.104.0.1:59846 -> 198.28.0.2:53 1 64 1 2025-11-27 01:40:01.734 00:00:00.000 UDP 28.104.0.1:38020 -> 198.28.0.2:53 1 64 1 2025-11-27 01:36:12.976 00:05:00.453 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:41:02.057 00:00:00.000 UDP 28.104.0.1:32791 -> 198.28.0.2:53 1 64 1 2025-11-27 01:41:02.057 00:00:00.000 UDP 28.104.0.1:38109 -> 198.28.0.2:53 1 64 1 2025-11-27 01:41:02.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32791 1 80 1 2025-11-27 01:41:02.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38109 1 109 1 2025-11-27 01:42:02.346 00:00:00.000 UDP 28.104.0.1:35608 -> 198.28.0.2:53 1 64 1 2025-11-27 01:42:02.346 00:00:00.000 UDP 28.104.0.1:48200 -> 198.28.0.2:53 1 64 1 2025-11-27 01:42:02.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48200 1 109 1 2025-11-27 01:42:02.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35608 1 80 1 2025-11-27 01:38:12.986 00:05:51.421 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 01:43:02.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36214 1 109 1 2025-11-27 01:43:02.655 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41230 1 80 1 2025-11-27 01:43:02.645 00:00:00.000 UDP 28.104.0.1:41230 -> 198.28.0.2:53 1 64 1 2025-11-27 01:43:02.645 00:00:00.000 UDP 28.104.0.1:36214 -> 198.28.0.2:53 1 64 1 2025-11-27 01:39:04.405 00:05:08.743 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:39:01.337 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2444 1 2025-11-27 01:39:04.455 00:05:08.683 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 01:39:12.978 00:05:00.569 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 01:43:27.931 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:44:02.944 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40579 1 80 1 2025-11-27 01:44:02.944 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52327 1 109 1 2025-11-27 01:44:02.933 00:00:00.000 UDP 28.104.0.1:52327 -> 198.28.0.2:53 1 64 1 2025-11-27 01:39:12.977 00:05:51.440 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:44:02.934 00:00:00.000 UDP 28.104.0.1:40579 -> 198.28.0.2:53 1 64 1 2025-11-27 01:45:03.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50987 1 109 1 2025-11-27 01:45:03.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55048 1 80 1 2025-11-27 01:45:03.202 00:00:00.000 UDP 28.104.0.1:50987 -> 198.28.0.2:53 1 64 1 2025-11-27 01:45:03.202 00:00:00.000 UDP 28.104.0.1:55048 -> 198.28.0.2:53 1 64 1 2025-11-27 01:46:03.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43583 1 109 1 2025-11-27 01:46:03.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54221 1 80 1 2025-11-27 01:46:03.463 00:00:00.000 UDP 28.104.0.1:43583 -> 198.28.0.2:53 1 64 1 2025-11-27 01:46:03.463 00:00:00.000 UDP 28.104.0.1:54221 -> 198.28.0.2:53 1 64 1 2025-11-27 01:42:12.980 00:05:00.451 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:47:03.720 00:00:00.000 UDP 28.104.0.1:34921 -> 198.28.0.2:53 1 64 1 2025-11-27 01:47:03.721 00:00:00.000 UDP 28.104.0.1:46943 -> 198.28.0.2:53 1 64 1 2025-11-27 01:47:03.730 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34921 1 80 1 2025-11-27 01:47:03.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46943 1 109 1 2025-11-27 01:48:04.044 00:00:00.000 UDP 28.104.0.1:59758 -> 198.28.0.2:53 1 64 1 2025-11-27 01:48:04.044 00:00:00.000 UDP 28.104.0.1:52149 -> 198.28.0.2:53 1 64 1 2025-11-27 01:48:04.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52149 1 109 1 2025-11-27 01:48:04.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59758 1 80 1 2025-11-27 01:48:29.010 00:00:00.019 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:44:21.349 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2304 1 2025-11-27 01:49:04.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32916 1 80 1 2025-11-27 01:44:12.988 00:05:51.419 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 01:49:04.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56432 1 109 1 2025-11-27 01:49:04.337 00:00:00.000 UDP 28.104.0.1:32916 -> 198.28.0.2:53 1 64 1 2025-11-27 01:49:04.337 00:00:00.000 UDP 28.104.0.1:56432 -> 198.28.0.2:53 1 64 1 2025-11-27 01:45:04.406 00:05:08.744 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:45:04.457 00:05:08.684 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 01:45:12.979 00:05:00.582 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 01:50:04.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60685 1 109 1 2025-11-27 01:50:04.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58558 1 80 1 2025-11-27 01:50:04.630 00:00:00.000 UDP 28.104.0.1:60685 -> 198.28.0.2:53 1 64 1 2025-11-27 01:45:12.979 00:05:51.440 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:50:04.630 00:00:00.000 UDP 28.104.0.1:58558 -> 198.28.0.2:53 1 64 1 2025-11-27 01:51:05.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58653 1 109 1 2025-11-27 01:51:05.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55242 1 80 1 2025-11-27 01:51:05.909 00:00:00.000 UDP 28.104.0.1:58653 -> 198.28.0.2:53 1 64 1 2025-11-27 01:51:05.909 00:00:00.000 UDP 28.104.0.1:55242 -> 198.28.0.2:53 1 64 1 2025-11-27 01:52:06.215 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50018 1 80 1 2025-11-27 01:52:06.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47831 1 109 1 2025-11-27 01:52:06.205 00:00:00.000 UDP 28.104.0.1:50018 -> 198.28.0.2:53 1 64 1 2025-11-27 01:52:06.204 00:00:00.000 UDP 28.104.0.1:47831 -> 198.28.0.2:53 1 64 1 2025-11-27 01:48:12.982 00:05:00.449 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:53:06.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49023 1 80 1 2025-11-27 01:53:06.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40558 1 109 1 2025-11-27 01:53:06.543 00:00:00.000 UDP 28.104.0.1:40558 -> 198.28.0.2:53 1 64 1 2025-11-27 01:53:06.543 00:00:00.000 UDP 28.104.0.1:49023 -> 198.28.0.2:53 1 64 1 2025-11-27 01:53:28.316 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 01:49:41.354 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3080 1 2025-11-27 01:54:06.838 00:00:00.000 UDP 28.104.0.1:33114 -> 198.28.0.2:53 1 64 1 2025-11-27 01:54:06.839 00:00:00.000 UDP 28.104.0.1:37340 -> 198.28.0.2:53 1 64 1 2025-11-27 01:54:06.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37340 1 80 1 2025-11-27 01:54:06.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33114 1 109 1 2025-11-27 01:50:12.992 00:05:51.417 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 01:55:07.142 00:00:00.000 UDP 28.104.0.1:37877 -> 198.28.0.2:53 1 64 1 2025-11-27 01:55:07.143 00:00:00.000 UDP 28.104.0.1:44356 -> 198.28.0.2:53 1 64 1 2025-11-27 01:55:07.152 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44356 1 109 1 2025-11-27 01:55:07.152 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37877 1 80 1 2025-11-27 01:51:04.458 00:05:08.684 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 01:51:12.982 00:05:00.579 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-27 01:51:04.408 00:05:08.744 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 01:56:07.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35189 1 80 1 2025-11-27 01:56:07.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44593 1 109 1 2025-11-27 01:51:12.982 00:05:51.438 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 01:56:07.448 00:00:00.000 UDP 28.104.0.1:35189 -> 198.28.0.2:53 1 64 1 2025-11-27 01:56:07.448 00:00:00.000 UDP 28.104.0.1:44593 -> 198.28.0.2:53 1 64 1 2025-11-27 01:57:07.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37929 1 80 1 2025-11-27 01:57:07.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39891 1 109 1 2025-11-27 01:57:07.737 00:00:00.000 UDP 28.104.0.1:37929 -> 198.28.0.2:53 1 64 1 2025-11-27 01:57:07.736 00:00:00.000 UDP 28.104.0.1:39891 -> 198.28.0.2:53 1 64 1 2025-11-27 01:58:08.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41944 1 109 1 2025-11-27 01:58:08.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48093 1 80 1 2025-11-27 01:58:08.245 00:00:00.000 UDP 28.104.0.1:48093 -> 198.28.0.2:53 1 64 1 2025-11-27 01:58:08.245 00:00:00.000 UDP 28.104.0.1:41944 -> 198.28.0.2:53 1 64 1 2025-11-27 01:54:12.983 00:05:00.448 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-27 01:58:27.860 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 Summary: total flows: 319, total bytes: 95487, total packets: 1409, avg bps: 202, avg pps: 0, avg bpp: 67 Time window: 2025-11-27 00:56:12 - 2025-11-27 01:59:13 Total flows processed: 319, passed: 319, Blocks skipped: 0, Bytes read: 33240 Sys: 0.0059s User: 0.0020s Wall: 0.0040s flows/second: 80393.1 Runtime: 0.0040s