Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-01 08:55:06.299 00:05:08.683 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 08:55:06.349 00:05:08.809 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 08:55:09.556 00:05:10.753 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2872 1 2025-12-01 08:59:34.331 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39491 1 109 1 2025-12-01 08:59:34.331 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39518 1 80 1 2025-12-01 08:59:34.321 00:00:00.000 UDP 28.104.0.1:39518 -> 198.28.0.2:53 1 64 1 2025-12-01 08:59:34.321 00:00:00.000 UDP 28.104.0.1:39491 -> 198.28.0.2:53 1 64 1 2025-12-01 08:55:14.973 00:05:51.339 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 08:56:06.300 00:05:08.870 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:00:32.078 00:00:00.035 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:00:34.624 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50408 1 80 1 2025-12-01 09:00:34.624 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34990 1 109 1 2025-12-01 09:00:34.614 00:00:00.000 UDP 28.104.0.1:34990 -> 198.28.0.2:53 1 64 1 2025-12-01 09:00:34.614 00:00:00.000 UDP 28.104.0.1:50408 -> 198.28.0.2:53 1 64 1 2025-12-01 08:57:14.972 00:05:00.495 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:01:34.856 00:00:00.000 UDP 28.104.0.1:32819 -> 198.28.0.2:53 1 64 1 2025-12-01 09:01:34.856 00:00:00.000 UDP 28.104.0.1:57401 -> 198.28.0.2:53 1 64 1 2025-12-01 09:01:34.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32819 1 109 1 2025-12-01 09:01:34.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57401 1 80 1 2025-12-01 09:02:35.184 00:00:00.000 UDP 28.104.0.1:41271 -> 198.28.0.2:53 1 64 1 2025-12-01 09:02:35.184 00:00:00.000 UDP 28.104.0.1:46044 -> 198.28.0.2:53 1 64 1 2025-12-01 09:02:35.194 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41271 1 80 1 2025-12-01 09:02:35.194 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46044 1 109 1 2025-12-01 09:03:35.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40314 1 109 1 2025-12-01 09:03:35.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43843 1 80 1 2025-12-01 09:03:35.439 00:00:00.000 UDP 28.104.0.1:40314 -> 198.28.0.2:53 1 64 1 2025-12-01 09:03:35.439 00:00:00.000 UDP 28.104.0.1:43843 -> 198.28.0.2:53 1 64 1 2025-12-01 09:00:14.973 00:05:00.670 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-01 09:04:35.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34803 1 80 1 2025-12-01 09:04:35.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50010 1 109 1 2025-12-01 09:04:35.725 00:00:00.000 UDP 28.104.0.1:50010 -> 198.28.0.2:53 1 64 1 2025-12-01 09:04:35.725 00:00:00.000 UDP 28.104.0.1:34803 -> 198.28.0.2:53 1 64 1 2025-12-01 09:00:29.562 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2296 1 2025-12-01 09:01:06.301 00:05:08.683 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 09:01:06.350 00:05:08.809 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 09:05:36.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37055 1 109 1 2025-12-01 09:05:32.367 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:05:36.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58468 1 80 1 2025-12-01 09:05:36.461 00:00:00.000 UDP 28.104.0.1:58468 -> 198.28.0.2:53 1 64 1 2025-12-01 09:05:36.461 00:00:00.000 UDP 28.104.0.1:37055 -> 198.28.0.2:53 1 64 1 2025-12-01 09:01:14.973 00:05:51.341 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 09:02:06.301 00:05:08.868 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:06:36.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43200 1 80 1 2025-12-01 09:06:36.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56537 1 109 1 2025-12-01 09:06:36.721 00:00:00.000 UDP 28.104.0.1:56537 -> 198.28.0.2:53 1 64 1 2025-12-01 09:06:36.720 00:00:00.000 UDP 28.104.0.1:43200 -> 198.28.0.2:53 1 64 1 2025-12-01 09:03:14.974 00:05:00.496 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:07:36.983 00:00:00.000 UDP 28.104.0.1:38635 -> 198.28.0.2:53 1 64 1 2025-12-01 09:07:36.983 00:00:00.000 UDP 28.104.0.1:57935 -> 198.28.0.2:53 1 64 1 2025-12-01 09:07:36.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57935 1 109 1 2025-12-01 09:07:36.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38635 1 80 1 2025-12-01 09:08:37.232 00:00:00.000 UDP 28.104.0.1:56704 -> 198.28.0.2:53 1 64 1 2025-12-01 09:08:37.233 00:00:00.000 UDP 28.104.0.1:49472 -> 198.28.0.2:53 1 64 1 2025-12-01 09:08:37.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56704 1 109 1 2025-12-01 09:08:37.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49472 1 80 1 2025-12-01 09:09:37.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55532 1 109 1 2025-12-01 09:09:37.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54342 1 80 1 2025-12-01 09:09:37.486 00:00:00.000 UDP 28.104.0.1:55532 -> 198.28.0.2:53 1 64 1 2025-12-01 09:09:37.486 00:00:00.000 UDP 28.104.0.1:54342 -> 198.28.0.2:53 1 64 1 2025-12-01 09:05:49.568 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2580 1 2025-12-01 09:06:14.974 00:05:00.669 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-01 09:10:32.226 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:10:37.736 00:00:00.000 UDP 28.104.0.1:34106 -> 198.28.0.2:53 1 64 1 2025-12-01 09:10:37.736 00:00:00.000 UDP 28.104.0.1:46374 -> 198.28.0.2:53 1 64 1 2025-12-01 09:10:37.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46374 1 109 1 2025-12-01 09:10:37.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34106 1 80 1 2025-12-01 09:07:06.304 00:05:08.682 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 09:07:06.355 00:05:08.806 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 09:11:38.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50434 1 109 1 2025-12-01 09:11:38.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48975 1 80 1 2025-12-01 09:11:38.052 00:00:00.000 UDP 28.104.0.1:50434 -> 198.28.0.2:53 1 64 1 2025-12-01 09:11:38.052 00:00:00.000 UDP 28.104.0.1:48975 -> 198.28.0.2:53 1 64 1 2025-12-01 09:07:14.974 00:05:51.343 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 09:08:06.304 00:05:08.866 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:12:38.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35987 1 109 1 2025-12-01 09:12:38.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56401 1 80 1 2025-12-01 09:12:38.344 00:00:00.000 UDP 28.104.0.1:35987 -> 198.28.0.2:53 1 64 1 2025-12-01 09:12:38.344 00:00:00.000 UDP 28.104.0.1:56401 -> 198.28.0.2:53 1 64 1 2025-12-01 09:09:14.974 00:05:00.499 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:13:38.646 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40032 1 80 1 2025-12-01 09:13:38.646 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50105 1 109 1 2025-12-01 09:13:38.637 00:00:00.000 UDP 28.104.0.1:50105 -> 198.28.0.2:53 1 64 1 2025-12-01 09:13:38.637 00:00:00.000 UDP 28.104.0.1:40032 -> 198.28.0.2:53 1 64 1 2025-12-01 09:14:38.927 00:00:00.000 UDP 28.104.0.1:36344 -> 198.28.0.2:53 1 64 1 2025-12-01 09:14:38.927 00:00:00.000 UDP 28.104.0.1:58130 -> 198.28.0.2:53 1 64 1 2025-12-01 09:14:38.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36344 1 109 1 2025-12-01 09:14:38.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58130 1 80 1 2025-12-01 09:11:09.576 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2772 1 2025-12-01 09:15:32.805 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:15:39.192 00:00:00.000 UDP 28.104.0.1:40485 -> 198.28.0.2:53 1 64 1 2025-12-01 09:15:39.192 00:00:00.000 UDP 28.104.0.1:41752 -> 198.28.0.2:53 1 64 1 2025-12-01 09:15:39.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40485 1 109 1 2025-12-01 09:15:39.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41752 1 80 1 2025-12-01 09:12:14.976 00:05:00.668 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-01 09:16:39.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34158 1 109 1 2025-12-01 09:16:39.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37408 1 80 1 2025-12-01 09:16:39.485 00:00:00.000 UDP 28.104.0.1:37408 -> 198.28.0.2:53 1 64 1 2025-12-01 09:16:39.485 00:00:00.000 UDP 28.104.0.1:34158 -> 198.28.0.2:53 1 64 1 2025-12-01 09:13:06.307 00:05:08.681 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 09:13:06.357 00:05:08.806 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 09:17:39.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50217 1 109 1 2025-12-01 09:17:39.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40951 1 80 1 2025-12-01 09:17:39.777 00:00:00.000 UDP 28.104.0.1:50217 -> 198.28.0.2:53 1 64 1 2025-12-01 09:17:39.777 00:00:00.000 UDP 28.104.0.1:40951 -> 198.28.0.2:53 1 64 1 2025-12-01 09:13:14.977 00:05:51.339 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 09:14:06.306 00:05:08.869 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:18:40.067 00:00:00.000 UDP 28.104.0.1:42154 -> 198.28.0.2:53 1 64 1 2025-12-01 09:18:40.067 00:00:00.000 UDP 28.104.0.1:47349 -> 198.28.0.2:53 1 64 1 2025-12-01 09:18:40.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42154 1 80 1 2025-12-01 09:18:40.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47349 1 109 1 2025-12-01 09:15:14.977 00:05:00.496 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:19:40.360 00:00:00.000 UDP 28.104.0.1:35664 -> 198.28.0.2:53 1 64 1 2025-12-01 09:19:40.360 00:00:00.000 UDP 28.104.0.1:56495 -> 198.28.0.2:53 1 64 1 2025-12-01 09:19:40.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35664 1 109 1 2025-12-01 09:19:40.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56495 1 80 1 2025-12-01 09:20:32.627 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:20:40.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34521 1 80 1 2025-12-01 09:16:29.581 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2960 1 2025-12-01 09:20:40.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48199 1 109 1 2025-12-01 09:20:40.672 00:00:00.000 UDP 28.104.0.1:48199 -> 198.28.0.2:53 1 64 1 2025-12-01 09:20:40.671 00:00:00.000 UDP 28.104.0.1:34521 -> 198.28.0.2:53 1 64 1 2025-12-01 09:21:40.973 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57357 1 80 1 2025-12-01 09:21:40.973 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43136 1 109 1 2025-12-01 09:21:40.963 00:00:00.000 UDP 28.104.0.1:43136 -> 198.28.0.2:53 1 64 1 2025-12-01 09:21:40.963 00:00:00.000 UDP 28.104.0.1:57357 -> 198.28.0.2:53 1 64 1 2025-12-01 09:18:14.978 00:05:00.666 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-01 09:22:41.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35419 1 80 1 2025-12-01 09:22:41.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55291 1 109 1 2025-12-01 09:22:41.263 00:00:00.000 UDP 28.104.0.1:55291 -> 198.28.0.2:53 1 64 1 2025-12-01 09:22:41.263 00:00:00.000 UDP 28.104.0.1:35419 -> 198.28.0.2:53 1 64 1 2025-12-01 09:19:06.355 00:05:08.810 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 09:19:06.306 00:05:08.684 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 09:23:41.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52197 1 109 1 2025-12-01 09:23:41.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43443 1 80 1 2025-12-01 09:23:41.513 00:00:00.000 UDP 28.104.0.1:43443 -> 198.28.0.2:53 1 64 1 2025-12-01 09:23:41.513 00:00:00.000 UDP 28.104.0.1:52197 -> 198.28.0.2:53 1 64 1 2025-12-01 09:19:14.977 00:05:51.340 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 09:20:06.306 00:05:08.870 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:24:41.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60193 1 109 1 2025-12-01 09:24:41.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41937 1 80 1 2025-12-01 09:24:41.773 00:00:00.000 UDP 28.104.0.1:60193 -> 198.28.0.2:53 1 64 1 2025-12-01 09:24:41.773 00:00:00.000 UDP 28.104.0.1:41937 -> 198.28.0.2:53 1 64 1 2025-12-01 09:21:14.980 00:05:00.495 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:25:32.719 00:00:00.030 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:25:42.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50296 1 80 1 2025-12-01 09:25:42.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40652 1 109 1 2025-12-01 09:25:42.070 00:00:00.000 UDP 28.104.0.1:50296 -> 198.28.0.2:53 1 64 1 2025-12-01 09:25:42.070 00:00:00.000 UDP 28.104.0.1:40652 -> 198.28.0.2:53 1 64 1 2025-12-01 09:21:49.593 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2916 1 2025-12-01 09:26:42.373 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35484 1 109 1 2025-12-01 09:26:42.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32832 1 80 1 2025-12-01 09:26:42.363 00:00:00.000 UDP 28.104.0.1:32832 -> 198.28.0.2:53 1 64 1 2025-12-01 09:26:42.363 00:00:00.000 UDP 28.104.0.1:35484 -> 198.28.0.2:53 1 64 1 2025-12-01 09:27:42.621 00:00:00.000 UDP 28.104.0.1:55498 -> 198.28.0.2:53 1 64 1 2025-12-01 09:27:42.622 00:00:00.000 UDP 28.104.0.1:39769 -> 198.28.0.2:53 1 64 1 2025-12-01 09:27:42.631 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39769 1 109 1 2025-12-01 09:27:42.631 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55498 1 80 1 2025-12-01 09:24:14.980 00:05:00.670 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-01 09:28:42.913 00:00:00.000 UDP 28.104.0.1:50295 -> 198.28.0.2:53 1 64 1 2025-12-01 09:28:42.914 00:00:00.000 UDP 28.104.0.1:36651 -> 198.28.0.2:53 1 64 1 2025-12-01 09:28:42.925 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36651 1 80 1 2025-12-01 09:28:42.925 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50295 1 109 1 2025-12-01 09:25:06.358 00:05:08.810 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 09:25:06.307 00:05:08.685 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 09:29:43.232 00:00:00.000 UDP 28.104.0.1:57293 -> 198.28.0.2:53 1 64 1 2025-12-01 09:29:43.231 00:00:00.000 UDP 28.104.0.1:36550 -> 198.28.0.2:53 1 64 1 2025-12-01 09:29:43.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57293 1 109 1 2025-12-01 09:29:43.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36550 1 80 1 2025-12-01 09:25:14.980 00:05:51.338 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 09:26:06.307 00:05:08.872 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:30:32.728 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:30:43.521 00:00:00.000 UDP 28.104.0.1:49701 -> 198.28.0.2:53 1 64 1 2025-12-01 09:30:43.521 00:00:00.000 UDP 28.104.0.1:35101 -> 198.28.0.2:53 1 64 1 2025-12-01 09:30:43.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35101 1 109 1 2025-12-01 09:30:43.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49701 1 80 1 2025-12-01 09:27:14.982 00:05:00.493 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:27:09.604 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2768 1 2025-12-01 09:31:43.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42790 1 80 1 2025-12-01 09:31:43.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59449 1 109 1 2025-12-01 09:31:43.819 00:00:00.000 UDP 28.104.0.1:42790 -> 198.28.0.2:53 1 64 1 2025-12-01 09:31:43.819 00:00:00.000 UDP 28.104.0.1:59449 -> 198.28.0.2:53 1 64 1 2025-12-01 09:32:44.120 00:00:00.000 UDP 28.104.0.1:57157 -> 198.28.0.2:53 1 64 1 2025-12-01 09:32:44.120 00:00:00.000 UDP 28.104.0.1:41312 -> 198.28.0.2:53 1 64 1 2025-12-01 09:32:44.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41312 1 80 1 2025-12-01 09:32:44.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57157 1 109 1 2025-12-01 09:33:44.378 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53608 1 80 1 2025-12-01 09:33:44.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60164 1 109 1 2025-12-01 09:33:44.369 00:00:00.000 UDP 28.104.0.1:53608 -> 198.28.0.2:53 1 64 1 2025-12-01 09:33:44.369 00:00:00.000 UDP 28.104.0.1:60164 -> 198.28.0.2:53 1 64 1 2025-12-01 09:30:14.983 00:05:00.668 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-01 09:34:44.667 00:00:00.000 UDP 28.104.0.1:37567 -> 198.28.0.2:53 1 64 1 2025-12-01 09:34:44.667 00:00:00.000 UDP 28.104.0.1:43469 -> 198.28.0.2:53 1 64 1 2025-12-01 09:34:44.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37567 1 109 1 2025-12-01 09:34:44.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43469 1 80 1 2025-12-01 09:31:06.308 00:05:08.686 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 09:31:06.359 00:05:08.814 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 09:35:32.912 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:35:44.955 00:00:00.000 UDP 28.104.0.1:38502 -> 198.28.0.2:53 1 64 1 2025-12-01 09:35:44.955 00:00:00.000 UDP 28.104.0.1:53511 -> 198.28.0.2:53 1 64 1 2025-12-01 09:35:44.964 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53511 1 80 1 2025-12-01 09:35:44.964 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38502 1 109 1 2025-12-01 09:31:14.984 00:05:51.335 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 09:32:06.308 00:05:08.871 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:32:29.615 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-12-01 09:36:45.262 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56693 1 109 1 2025-12-01 09:36:45.262 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42045 1 80 1 2025-12-01 09:36:45.253 00:00:00.000 UDP 28.104.0.1:42045 -> 198.28.0.2:53 1 64 1 2025-12-01 09:36:45.253 00:00:00.000 UDP 28.104.0.1:56693 -> 198.28.0.2:53 1 64 1 2025-12-01 09:33:14.984 00:05:00.494 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:37:45.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46789 1 80 1 2025-12-01 09:37:45.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55256 1 109 1 2025-12-01 09:37:45.556 00:00:00.000 UDP 28.104.0.1:46789 -> 198.28.0.2:53 1 64 1 2025-12-01 09:37:45.556 00:00:00.000 UDP 28.104.0.1:55256 -> 198.28.0.2:53 1 64 1 2025-12-01 09:38:45.845 00:00:00.000 UDP 28.104.0.1:54800 -> 198.28.0.2:53 1 64 1 2025-12-01 09:38:45.845 00:00:00.000 UDP 28.104.0.1:54944 -> 198.28.0.2:53 1 64 1 2025-12-01 09:38:45.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54944 1 80 1 2025-12-01 09:38:45.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54800 1 109 1 2025-12-01 09:39:46.744 00:00:00.000 UDP 28.104.0.1:52827 -> 198.28.0.2:53 1 64 1 2025-12-01 09:39:46.744 00:00:00.000 UDP 28.104.0.1:47911 -> 198.28.0.2:53 1 64 1 2025-12-01 09:39:46.758 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47911 1 109 1 2025-12-01 09:39:46.758 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52827 1 80 1 2025-12-01 09:36:14.984 00:05:00.668 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-01 09:40:33.061 00:00:00.045 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:40:46.997 00:00:00.000 UDP 28.104.0.1:49307 -> 198.28.0.2:53 1 64 1 2025-12-01 09:40:46.997 00:00:00.000 UDP 28.104.0.1:51578 -> 198.28.0.2:53 1 64 1 2025-12-01 09:40:47.007 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51578 1 109 1 2025-12-01 09:40:47.007 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49307 1 80 1 2025-12-01 09:37:06.358 00:05:08.813 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 09:37:06.309 00:05:08.687 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 09:41:47.304 00:00:00.000 UDP 28.104.0.1:46427 -> 198.28.0.2:53 1 64 1 2025-12-01 09:41:47.304 00:00:00.000 UDP 28.104.0.1:55211 -> 198.28.0.2:53 1 64 1 2025-12-01 09:41:47.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46427 1 80 1 2025-12-01 09:41:47.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55211 1 109 1 2025-12-01 09:37:49.620 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2772 1 2025-12-01 09:37:14.985 00:05:51.337 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 09:38:06.309 00:05:08.873 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:42:47.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48608 1 109 1 2025-12-01 09:42:47.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45100 1 80 1 2025-12-01 09:42:47.611 00:00:00.000 UDP 28.104.0.1:45100 -> 198.28.0.2:53 1 64 1 2025-12-01 09:42:47.611 00:00:00.000 UDP 28.104.0.1:48608 -> 198.28.0.2:53 1 64 1 2025-12-01 09:39:14.986 00:05:00.492 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:43:47.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53173 1 80 1 2025-12-01 09:43:47.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42815 1 109 1 2025-12-01 09:43:47.913 00:00:00.000 UDP 28.104.0.1:53173 -> 198.28.0.2:53 1 64 1 2025-12-01 09:43:47.913 00:00:00.000 UDP 28.104.0.1:42815 -> 198.28.0.2:53 1 64 1 2025-12-01 09:44:48.226 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37203 1 109 1 2025-12-01 09:44:48.226 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43700 1 80 1 2025-12-01 09:44:48.215 00:00:00.000 UDP 28.104.0.1:37203 -> 198.28.0.2:53 1 64 1 2025-12-01 09:44:48.215 00:00:00.000 UDP 28.104.0.1:43700 -> 198.28.0.2:53 1 64 1 2025-12-01 09:45:33.062 00:00:00.039 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:45:48.518 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49106 1 109 1 2025-12-01 09:45:48.518 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58532 1 80 1 2025-12-01 09:45:48.507 00:00:00.000 UDP 28.104.0.1:58532 -> 198.28.0.2:53 1 64 1 2025-12-01 09:45:48.507 00:00:00.000 UDP 28.104.0.1:49106 -> 198.28.0.2:53 1 64 1 2025-12-01 09:42:14.986 00:05:00.670 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-01 09:46:48.804 00:00:00.000 UDP 28.104.0.1:56777 -> 198.28.0.2:53 1 64 1 2025-12-01 09:46:48.804 00:00:00.000 UDP 28.104.0.1:51597 -> 198.28.0.2:53 1 64 1 2025-12-01 09:46:48.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56777 1 109 1 2025-12-01 09:46:48.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51597 1 80 1 2025-12-01 09:43:06.312 00:05:08.685 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 09:43:06.362 00:05:08.811 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 09:43:09.632 00:05:10.369 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2816 1 2025-12-01 09:47:49.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52068 1 109 1 2025-12-01 09:47:49.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50034 1 80 1 2025-12-01 09:47:49.100 00:00:00.000 UDP 28.104.0.1:50034 -> 198.28.0.2:53 1 64 1 2025-12-01 09:47:49.100 00:00:00.000 UDP 28.104.0.1:52068 -> 198.28.0.2:53 1 64 1 2025-12-01 09:43:14.985 00:05:51.338 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 09:44:06.311 00:05:08.871 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:48:49.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37926 1 80 1 2025-12-01 09:48:49.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54174 1 109 1 2025-12-01 09:48:49.392 00:00:00.000 UDP 28.104.0.1:37926 -> 198.28.0.2:53 1 64 1 2025-12-01 09:48:49.392 00:00:00.000 UDP 28.104.0.1:54174 -> 198.28.0.2:53 1 64 1 2025-12-01 09:45:14.985 00:05:00.494 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:49:49.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56191 1 80 1 2025-12-01 09:49:49.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37323 1 109 1 2025-12-01 09:49:49.687 00:00:00.000 UDP 28.104.0.1:37323 -> 198.28.0.2:53 1 64 1 2025-12-01 09:49:49.686 00:00:00.000 UDP 28.104.0.1:56191 -> 198.28.0.2:53 1 64 1 2025-12-01 09:50:33.362 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:50:49.989 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33650 1 80 1 2025-12-01 09:50:49.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34888 1 109 1 2025-12-01 09:50:49.980 00:00:00.000 UDP 28.104.0.1:34888 -> 198.28.0.2:53 1 64 1 2025-12-01 09:50:49.980 00:00:00.000 UDP 28.104.0.1:33650 -> 198.28.0.2:53 1 64 1 2025-12-01 09:51:50.286 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40535 1 80 1 2025-12-01 09:51:50.286 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57345 1 109 1 2025-12-01 09:51:50.276 00:00:00.000 UDP 28.104.0.1:40535 -> 198.28.0.2:53 1 64 1 2025-12-01 09:51:50.276 00:00:00.000 UDP 28.104.0.1:57345 -> 198.28.0.2:53 1 64 1 2025-12-01 09:48:14.987 00:05:00.667 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-01 09:48:29.639 00:05:00.446 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3120 1 2025-12-01 09:52:50.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46515 1 80 1 2025-12-01 09:52:50.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48077 1 109 1 2025-12-01 09:52:50.529 00:00:00.000 UDP 28.104.0.1:48077 -> 198.28.0.2:53 1 64 1 2025-12-01 09:52:50.529 00:00:00.000 UDP 28.104.0.1:46515 -> 198.28.0.2:53 1 64 1 2025-12-01 09:49:06.313 00:05:08.688 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-01 09:49:06.364 00:05:08.812 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-01 09:53:50.825 00:00:00.000 UDP 28.104.0.1:45851 -> 198.28.0.2:53 1 64 1 2025-12-01 09:53:50.825 00:00:00.000 UDP 28.104.0.1:46604 -> 198.28.0.2:53 1 64 1 2025-12-01 09:53:50.835 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45851 1 109 1 2025-12-01 09:53:50.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46604 1 80 1 2025-12-01 09:49:14.986 00:05:51.339 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-01 09:50:06.312 00:05:08.872 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-01 09:54:51.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49674 1 80 1 2025-12-01 09:54:51.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41284 1 109 1 2025-12-01 09:54:51.121 00:00:00.000 UDP 28.104.0.1:49674 -> 198.28.0.2:53 1 64 1 2025-12-01 09:54:51.121 00:00:00.000 UDP 28.104.0.1:41284 -> 198.28.0.2:53 1 64 1 2025-12-01 09:51:14.990 00:05:00.491 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-12-01 09:55:33.270 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-01 09:55:51.422 00:00:00.000 UDP 28.104.0.1:36936 -> 198.28.0.2:53 1 64 1 2025-12-01 09:55:51.422 00:00:00.000 UDP 28.104.0.1:52737 -> 198.28.0.2:53 1 64 1 2025-12-01 09:55:51.433 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52737 1 80 1 2025-12-01 09:55:51.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36936 1 109 1 2025-12-01 09:56:51.721 00:00:00.000 UDP 28.104.0.1:55435 -> 198.28.0.2:53 1 64 1 2025-12-01 09:56:51.721 00:00:00.000 UDP 28.104.0.1:48526 -> 198.28.0.2:53 1 64 1 2025-12-01 09:56:51.730 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48526 1 80 1 2025-12-01 09:56:51.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55435 1 109 1 2025-12-01 09:53:39.647 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2768 1 2025-12-01 09:57:52.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48387 1 109 1 2025-12-01 09:57:52.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39323 1 80 1 2025-12-01 09:57:52.048 00:00:00.000 UDP 28.104.0.1:39323 -> 198.28.0.2:53 1 64 1 2025-12-01 09:57:52.048 00:00:00.000 UDP 28.104.0.1:48387 -> 198.28.0.2:53 1 64 1 2025-12-01 09:54:14.990 00:05:00.667 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 Summary: total flows: 320, total bytes: 99031, total packets: 1459, avg bps: 205, avg pps: 0, avg bpp: 67 Time window: 2025-12-01 08:55:06 - 2025-12-01 09:59:15 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0051s User: 0.0017s Wall: 0.0034s flows/second: 93025.9 Runtime: 0.0035s