Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-06-26 10:39:17.854 00:00:00.000 UDP 28.104.0.1:53555 -> 198.28.0.2:53 1 64 1 2025-06-26 10:39:17.854 00:00:00.000 UDP 28.104.0.1:35663 -> 198.28.0.2:53 1 64 1 2025-06-26 10:39:17.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35663 1 109 1 2025-06-26 10:39:17.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53555 1 80 1 2025-06-26 10:39:21.245 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-06-26 10:40:24.774 00:00:00.000 UDP 28.104.0.1:42088 -> 198.28.0.2:53 1 64 1 2025-06-26 10:40:24.774 00:00:00.000 UDP 28.104.0.1:34457 -> 198.28.0.2:53 1 64 1 2025-06-26 10:40:24.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34457 1 80 1 2025-06-26 10:40:24.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42088 1 109 1 2025-06-26 10:40:47.563 00:00:00.020 TCP 28.151.0.1:43499 -> 28.154.0.1:179 2 100 1 2025-06-26 10:38:56.729 00:01:48.877 TCP 28.151.0.1:179 -> 28.156.0.1:34555 5 321 1 2025-06-26 10:38:56.851 00:01:50.281 TCP 28.157.0.1:179 -> 28.156.0.1:42715 13 1055 1 2025-06-26 10:39:03.105 00:01:42.461 TCP 28.151.0.1:41647 -> 28.154.0.1:179 7 425 1 2025-06-26 10:39:10.156 00:01:36.406 TCP 28.155.0.1:179 -> 28.154.0.1:45891 16 1843 1 2025-06-26 10:38:56.679 00:01:48.926 TCP 28.156.0.1:34555 -> 28.151.0.1:179 7 402 1 2025-06-26 10:39:03.113 00:01:42.448 TCP 28.154.0.1:179 -> 28.151.0.1:41647 7 402 1 2025-06-26 10:38:56.803 00:01:50.364 TCP 28.156.0.1:42715 -> 28.157.0.1:179 13 777 1 2025-06-26 10:40:47.572 00:00:00.000 TCP 28.154.0.1:179 -> 28.151.0.1:43499 1 60 1 2025-06-26 10:39:10.109 00:01:36.460 TCP 28.154.0.1:33251 -> 28.157.0.1:179 11 633 1 2025-06-26 10:41:25.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54447 1 80 1 2025-06-26 10:41:25.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51350 1 109 1 2025-06-26 10:41:25.047 00:00:00.000 UDP 28.104.0.1:51350 -> 198.28.0.2:53 1 64 1 2025-06-26 10:41:25.047 00:00:00.000 UDP 28.104.0.1:54447 -> 198.28.0.2:53 1 64 1 2025-06-26 10:42:25.328 00:00:00.000 UDP 28.104.0.1:40232 -> 198.28.0.2:53 1 64 1 2025-06-26 10:42:25.328 00:00:00.000 UDP 28.104.0.1:46673 -> 198.28.0.2:53 1 64 1 2025-06-26 10:38:16.258 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 32 2176 1 2025-06-26 10:42:25.340 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40232 1 109 1 2025-06-26 10:42:25.340 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46673 1 80 1 2025-06-26 10:40:48.378 00:02:00.123 TCP 28.154.0.1:179 -> 28.157.0.1:37077 11 830 1 2025-06-26 10:43:25.612 00:00:00.000 UDP 28.104.0.1:53082 -> 198.28.0.2:53 1 64 1 2025-06-26 10:43:25.612 00:00:00.000 UDP 28.104.0.1:42752 -> 198.28.0.2:53 1 64 1 2025-06-26 10:43:25.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42752 1 109 1 2025-06-26 10:43:25.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53082 1 80 1 2025-06-26 10:44:25.856 00:00:00.000 UDP 28.104.0.1:39291 -> 198.28.0.2:53 1 64 1 2025-06-26 10:44:25.856 00:00:00.000 UDP 28.104.0.1:38451 -> 198.28.0.2:53 1 64 1 2025-06-26 10:44:21.466 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-06-26 10:44:25.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39291 1 80 1 2025-06-26 10:44:25.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38451 1 109 1 2025-06-26 10:45:26.148 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53556 1 109 1 2025-06-26 10:45:26.148 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32775 1 80 1 2025-06-26 10:45:26.138 00:00:00.000 UDP 28.104.0.1:32775 -> 198.28.0.2:53 1 64 1 2025-06-26 10:45:26.138 00:00:00.000 UDP 28.104.0.1:53556 -> 198.28.0.2:53 1 64 1 2025-06-26 10:43:48.501 00:02:00.000 TCP 28.154.0.1:179 -> 28.157.0.1:37077 5 317 1 2025-06-26 10:40:47.514 00:06:00.062 TCP 28.154.0.1:41239 -> 28.151.0.1:179 20 1374 1 2025-06-26 10:40:47.617 00:06:00.169 TCP 28.156.0.1:179 -> 28.151.0.1:39145 17 1359 1 2025-06-26 10:40:47.794 00:06:00.122 TCP 28.154.0.1:179 -> 28.155.0.1:36643 21 1426 1 2025-06-26 10:40:47.523 00:06:00.042 TCP 28.151.0.1:179 -> 28.154.0.1:41239 19 1322 1 2025-06-26 10:40:47.566 00:06:00.188 TCP 28.151.0.1:39145 -> 28.156.0.1:179 22 1478 1 2025-06-26 10:46:26.383 00:00:00.000 UDP 28.104.0.1:36177 -> 198.28.0.2:53 1 64 1 2025-06-26 10:46:26.383 00:00:00.000 UDP 28.104.0.1:59809 -> 198.28.0.2:53 1 64 1 2025-06-26 10:46:26.393 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59809 1 109 1 2025-06-26 10:46:26.394 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36177 1 80 1 2025-06-26 10:47:26.637 00:00:00.000 UDP 28.104.0.1:34900 -> 198.28.0.2:53 1 64 1 2025-06-26 10:47:26.637 00:00:00.000 UDP 28.104.0.1:57610 -> 198.28.0.2:53 1 64 1 2025-06-26 10:47:26.646 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34900 1 80 1 2025-06-26 10:47:26.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57610 1 109 1 2025-06-26 10:46:48.500 00:01:00.004 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-06-26 10:43:36.264 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 32 2176 1 2025-06-26 10:48:26.933 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43600 1 109 1 2025-06-26 10:48:26.933 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42605 1 80 1 2025-06-26 10:48:26.924 00:00:00.000 UDP 28.104.0.1:43600 -> 198.28.0.2:53 1 64 1 2025-06-26 10:48:26.923 00:00:00.000 UDP 28.104.0.1:42605 -> 198.28.0.2:53 1 64 1 2025-06-26 10:49:21.565 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-06-26 10:49:27.239 00:00:00.000 UDP 28.104.0.1:60518 -> 198.28.0.2:53 1 64 1 2025-06-26 10:49:27.239 00:00:00.000 UDP 28.104.0.1:51837 -> 198.28.0.2:53 1 64 1 2025-06-26 10:49:27.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60518 1 80 1 2025-06-26 10:49:27.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51837 1 109 1 2025-06-26 10:48:48.502 00:01:00.004 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-06-26 10:50:27.538 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50023 1 109 1 2025-06-26 10:50:27.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56286 1 80 1 2025-06-26 10:50:27.527 00:00:00.000 UDP 28.104.0.1:56286 -> 198.28.0.2:53 1 64 1 2025-06-26 10:50:27.527 00:00:00.000 UDP 28.104.0.1:50023 -> 198.28.0.2:53 1 64 1 2025-06-26 10:50:48.511 00:00:00.000 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-06-26 10:51:27.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54068 1 109 1 2025-06-26 10:51:27.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57854 1 80 1 2025-06-26 10:51:27.822 00:00:00.000 UDP 28.104.0.1:54068 -> 198.28.0.2:53 1 64 1 2025-06-26 10:51:27.822 00:00:00.000 UDP 28.104.0.1:57854 -> 198.28.0.2:53 1 64 1 2025-06-26 10:52:28.104 00:00:00.000 UDP 28.104.0.1:39307 -> 198.28.0.2:53 1 64 1 2025-06-26 10:52:28.104 00:00:00.000 UDP 28.104.0.1:54572 -> 198.28.0.2:53 1 64 1 2025-06-26 10:52:28.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54572 1 80 1 2025-06-26 10:52:28.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39307 1 109 1 2025-06-26 10:51:48.512 00:01:00.026 TCP 28.154.0.1:179 -> 28.157.0.1:37077 3 194 1 2025-06-26 10:47:47.557 00:06:00.021 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-06-26 10:47:47.746 00:06:00.004 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-06-26 10:47:47.917 00:06:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 7 497 1 2025-06-26 10:47:47.565 00:06:00.001 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-06-26 10:47:47.698 00:06:00.057 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-06-26 10:48:56.272 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 32 2176 1 2025-06-26 10:53:28.388 00:00:00.000 UDP 28.104.0.1:59110 -> 198.28.0.2:53 1 64 1 2025-06-26 10:53:28.388 00:00:00.000 UDP 28.104.0.1:35609 -> 198.28.0.2:53 1 64 1 2025-06-26 10:53:28.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59110 1 109 1 2025-06-26 10:53:28.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35609 1 80 1 2025-06-26 10:54:21.396 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-06-26 10:54:28.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33426 1 109 1 2025-06-26 10:54:28.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54062 1 80 1 2025-06-26 10:54:28.646 00:00:00.000 UDP 28.104.0.1:33426 -> 198.28.0.2:53 1 64 1 2025-06-26 10:54:28.646 00:00:00.000 UDP 28.104.0.1:54062 -> 198.28.0.2:53 1 64 1 2025-06-26 10:53:48.537 00:01:00.001 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 142 1 2025-06-26 10:55:28.889 00:00:00.000 UDP 28.104.0.1:36175 -> 198.28.0.2:53 1 64 1 2025-06-26 10:55:28.889 00:00:00.000 UDP 28.104.0.1:36637 -> 198.28.0.2:53 1 64 1 2025-06-26 10:55:28.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36175 1 80 1 2025-06-26 10:55:28.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36637 1 109 1 2025-06-26 10:55:48.539 00:00:00.000 TCP 28.154.0.1:179 -> 28.157.0.1:37077 1 71 1 2025-06-26 10:56:29.148 00:00:00.000 UDP 28.104.0.1:52385 -> 198.28.0.2:53 1 64 1 2025-06-26 10:56:29.149 00:00:00.000 UDP 28.104.0.1:51523 -> 198.28.0.2:53 1 64 1 2025-06-26 10:56:29.159 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52385 1 109 1 2025-06-26 10:56:29.159 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51523 1 80 1 2025-06-26 10:57:29.447 00:00:00.000 UDP 28.104.0.1:52853 -> 198.28.0.2:53 1 64 1 2025-06-26 10:57:29.447 00:00:00.000 UDP 28.104.0.1:43075 -> 198.28.0.2:53 1 64 1 2025-06-26 10:57:29.456 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52853 1 80 1 2025-06-26 10:57:29.457 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43075 1 109 1 2025-06-26 10:56:48.539 00:01:00.000 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 142 1 2025-06-26 10:54:16.276 00:05:02.733 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2388 1 2025-06-26 10:58:29.713 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55996 1 109 1 2025-06-26 10:58:29.713 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45122 1 80 1 2025-06-26 10:58:29.702 00:00:00.000 UDP 28.104.0.1:45122 -> 198.28.0.2:53 1 64 1 2025-06-26 10:58:29.702 00:00:00.000 UDP 28.104.0.1:55996 -> 198.28.0.2:53 1 64 1 Summary: total flows: 117, total bytes: 35493, total packets: 500, avg bps: 224, avg pps: 0, avg bpp: 70 Time window: 2025-06-26 10:38:16 - 2025-06-26 10:59:19 Total flows processed: 117, passed: 117, Blocks skipped: 0, Bytes read: 12232 Sys: 0.0032s User: 0.0000s Wall: 0.0020s flows/second: 57638.4 Runtime: 0.0020s