Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-01 14:59:17.755 00:00:00.000 UDP 28.104.0.1:48378 -> 198.28.0.2:53 1 64 1 2025-09-01 14:59:17.755 00:00:00.000 UDP 28.104.0.1:50310 -> 198.28.0.2:53 1 64 1 2025-09-01 14:59:17.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48378 1 80 1 2025-09-01 14:59:17.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50310 1 109 1 2025-09-01 15:00:18.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47330 1 80 1 2025-09-01 15:00:18.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42356 1 109 1 2025-09-01 15:00:18.056 00:00:00.000 UDP 28.104.0.1:42356 -> 198.28.0.2:53 1 64 1 2025-09-01 15:00:18.056 00:00:00.000 UDP 28.104.0.1:47330 -> 198.28.0.2:53 1 64 1 2025-09-01 14:56:21.995 00:05:01.157 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 14:58:23.260 00:02:00.111 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 14:58:23.260 00:02:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 14:56:21.955 00:05:01.304 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 14:56:48.620 00:05:10.031 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2760 1 2025-09-01 15:01:18.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52559 1 80 1 2025-09-01 15:01:18.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51333 1 109 1 2025-09-01 15:01:18.352 00:00:00.000 UDP 28.104.0.1:52559 -> 198.28.0.2:53 1 64 1 2025-09-01 15:01:18.352 00:00:00.000 UDP 28.104.0.1:51333 -> 198.28.0.2:53 1 64 1 2025-09-01 14:57:21.945 00:05:01.324 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:01:42.248 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:02:18.653 00:00:00.000 UDP 28.104.0.1:56021 -> 198.28.0.2:53 1 64 1 2025-09-01 15:02:18.653 00:00:00.000 UDP 28.104.0.1:47864 -> 198.28.0.2:53 1 64 1 2025-09-01 15:01:23.259 00:01:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 15:01:23.259 00:01:00.113 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 15:02:18.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56021 1 109 1 2025-09-01 15:02:18.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47864 1 80 1 2025-09-01 14:58:21.948 00:05:01.215 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:03:18.955 00:00:00.000 UDP 28.104.0.1:57594 -> 198.28.0.2:53 1 64 1 2025-09-01 15:03:18.955 00:00:00.000 UDP 28.104.0.1:41851 -> 198.28.0.2:53 1 64 1 2025-09-01 15:03:18.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41851 1 80 1 2025-09-01 15:03:18.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57594 1 109 1 2025-09-01 15:04:19.249 00:00:00.000 UDP 28.104.0.1:53158 -> 198.28.0.2:53 1 64 1 2025-09-01 15:04:19.248 00:00:00.000 UDP 28.104.0.1:55603 -> 198.28.0.2:53 1 64 1 2025-09-01 15:04:19.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55603 1 109 1 2025-09-01 15:04:19.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53158 1 80 1 2025-09-01 15:03:23.260 00:02:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 15:05:19.541 00:00:00.000 UDP 28.104.0.1:59372 -> 198.28.0.2:53 1 64 1 2025-09-01 15:03:23.259 00:02:00.113 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 15:05:19.541 00:00:00.000 UDP 28.104.0.1:52313 -> 198.28.0.2:53 1 64 1 2025-09-01 15:05:19.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52313 1 109 1 2025-09-01 15:05:19.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59372 1 80 1 2025-09-01 15:02:21.959 00:05:01.302 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 15:06:19.871 00:00:00.000 UDP 28.104.0.1:38213 -> 198.28.0.2:53 1 64 1 2025-09-01 15:02:22.000 00:05:01.153 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 15:06:19.871 00:00:00.000 UDP 28.104.0.1:45549 -> 198.28.0.2:53 1 64 1 2025-09-01 15:02:08.623 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2740 1 2025-09-01 15:06:19.883 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38213 1 109 1 2025-09-01 15:06:19.883 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45549 1 80 1 2025-09-01 15:06:42.288 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:06:23.260 00:01:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 15:07:20.184 00:00:00.000 UDP 28.104.0.1:50596 -> 198.28.0.2:53 1 64 1 2025-09-01 15:06:23.260 00:01:00.113 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 15:07:20.184 00:00:00.000 UDP 28.104.0.1:44136 -> 198.28.0.2:53 1 64 1 2025-09-01 15:07:20.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50596 1 80 1 2025-09-01 15:07:20.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44136 1 109 1 2025-09-01 15:03:21.949 00:05:01.321 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:08:20.521 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41126 1 80 1 2025-09-01 15:08:20.521 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55833 1 109 1 2025-09-01 15:04:21.949 00:05:01.214 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:08:20.510 00:00:00.000 UDP 28.104.0.1:55833 -> 198.28.0.2:53 1 64 1 2025-09-01 15:08:20.510 00:00:00.000 UDP 28.104.0.1:41126 -> 198.28.0.2:53 1 64 1 2025-09-01 15:09:20.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58578 1 109 1 2025-09-01 15:09:20.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42943 1 80 1 2025-09-01 15:09:20.854 00:00:00.000 UDP 28.104.0.1:58578 -> 198.28.0.2:53 1 64 1 2025-09-01 15:09:20.854 00:00:00.000 UDP 28.104.0.1:42943 -> 198.28.0.2:53 1 64 1 2025-09-01 15:10:21.161 00:00:00.000 UDP 28.104.0.1:59710 -> 198.28.0.2:53 1 64 1 2025-09-01 15:10:21.161 00:00:00.000 UDP 28.104.0.1:33156 -> 198.28.0.2:53 1 64 1 2025-09-01 15:10:21.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33156 1 80 1 2025-09-01 15:10:21.173 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59710 1 109 1 2025-09-01 15:11:21.448 00:00:00.000 UDP 28.104.0.1:60696 -> 198.28.0.2:53 1 64 1 2025-09-01 15:11:21.448 00:00:00.000 UDP 28.104.0.1:58838 -> 198.28.0.2:53 1 64 1 2025-09-01 15:11:21.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60696 1 109 1 2025-09-01 15:11:21.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58838 1 80 1 2025-09-01 15:07:28.625 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2468 1 2025-09-01 15:11:42.045 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:08:23.260 00:04:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-01 15:12:21.739 00:00:00.000 UDP 28.104.0.1:59777 -> 198.28.0.2:53 1 64 1 2025-09-01 15:12:21.740 00:00:00.000 UDP 28.104.0.1:35415 -> 198.28.0.2:53 1 64 1 2025-09-01 15:08:23.260 00:04:00.115 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-01 15:12:21.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35415 1 80 1 2025-09-01 15:12:21.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59777 1 109 1 2025-09-01 15:08:21.960 00:05:01.301 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 15:08:22.001 00:05:01.163 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 15:13:22.055 00:00:00.000 UDP 28.104.0.1:43404 -> 198.28.0.2:53 1 64 1 2025-09-01 15:13:22.055 00:00:00.000 UDP 28.104.0.1:46463 -> 198.28.0.2:53 1 64 1 2025-09-01 15:13:22.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43404 1 80 1 2025-09-01 15:09:21.951 00:05:01.323 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:13:22.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46463 1 109 1 2025-09-01 15:14:22.344 00:00:00.000 UDP 28.104.0.1:41513 -> 198.28.0.2:53 1 64 1 2025-09-01 15:14:22.344 00:00:00.000 UDP 28.104.0.1:35755 -> 198.28.0.2:53 1 64 1 2025-09-01 15:14:22.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35755 1 80 1 2025-09-01 15:14:22.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41513 1 109 1 2025-09-01 15:10:21.951 00:05:01.248 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:15:22.629 00:00:00.000 UDP 28.104.0.1:39896 -> 198.28.0.2:53 1 64 1 2025-09-01 15:15:22.629 00:00:00.000 UDP 28.104.0.1:37151 -> 198.28.0.2:53 1 64 1 2025-09-01 15:15:22.639 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37151 1 109 1 2025-09-01 15:15:22.639 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39896 1 80 1 2025-09-01 15:16:22.883 00:00:00.000 UDP 28.104.0.1:53911 -> 198.28.0.2:53 1 64 1 2025-09-01 15:16:22.884 00:00:00.000 UDP 28.104.0.1:48654 -> 198.28.0.2:53 1 64 1 2025-09-01 15:16:22.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48654 1 80 1 2025-09-01 15:16:22.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53911 1 109 1 2025-09-01 15:16:42.737 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:12:48.633 00:05:10.017 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2496 1 2025-09-01 15:17:23.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36269 1 80 1 2025-09-01 15:17:23.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52237 1 109 1 2025-09-01 15:13:23.261 00:04:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-01 15:17:23.212 00:00:00.000 UDP 28.104.0.1:52237 -> 198.28.0.2:53 1 64 1 2025-09-01 15:13:23.261 00:04:00.115 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-01 15:17:23.211 00:00:00.000 UDP 28.104.0.1:36269 -> 198.28.0.2:53 1 64 1 2025-09-01 15:14:21.963 00:05:01.301 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 15:14:22.005 00:05:01.162 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 15:18:23.512 00:00:00.000 UDP 28.104.0.1:53821 -> 198.28.0.2:53 1 64 1 2025-09-01 15:18:23.512 00:00:00.000 UDP 28.104.0.1:42494 -> 198.28.0.2:53 1 64 1 2025-09-01 15:18:23.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42494 1 109 1 2025-09-01 15:18:23.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53821 1 80 1 2025-09-01 15:19:23.803 00:00:00.000 UDP 28.104.0.1:60366 -> 198.28.0.2:53 1 64 1 2025-09-01 15:19:23.803 00:00:00.000 UDP 28.104.0.1:49249 -> 198.28.0.2:53 1 64 1 2025-09-01 15:19:23.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49249 1 109 1 2025-09-01 15:19:23.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60366 1 80 1 2025-09-01 15:15:21.953 00:05:01.321 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:16:21.953 00:05:01.223 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:20:24.105 00:00:00.000 UDP 28.104.0.1:55111 -> 198.28.0.2:53 1 64 1 2025-09-01 15:20:24.105 00:00:00.000 UDP 28.104.0.1:58554 -> 198.28.0.2:53 1 64 1 2025-09-01 15:20:24.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55111 1 80 1 2025-09-01 15:20:24.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58554 1 109 1 2025-09-01 15:21:24.397 00:00:00.000 UDP 28.104.0.1:47226 -> 198.28.0.2:53 1 64 1 2025-09-01 15:21:24.396 00:00:00.000 UDP 28.104.0.1:37247 -> 198.28.0.2:53 1 64 1 2025-09-01 15:21:24.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47226 1 109 1 2025-09-01 15:21:24.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37247 1 80 1 2025-09-01 15:21:42.382 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:18:23.263 00:04:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-01 15:18:23.263 00:04:00.114 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-01 15:18:08.650 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-09-01 15:22:24.652 00:00:00.000 UDP 28.104.0.1:43037 -> 198.28.0.2:53 1 64 1 2025-09-01 15:22:24.652 00:00:00.000 UDP 28.104.0.1:54312 -> 198.28.0.2:53 1 64 1 2025-09-01 15:22:24.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54312 1 109 1 2025-09-01 15:22:24.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43037 1 80 1 2025-09-01 15:23:24.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57931 1 80 1 2025-09-01 15:23:24.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59987 1 109 1 2025-09-01 15:23:24.948 00:00:00.000 UDP 28.104.0.1:57931 -> 198.28.0.2:53 1 64 1 2025-09-01 15:23:24.948 00:00:00.000 UDP 28.104.0.1:59987 -> 198.28.0.2:53 1 64 1 2025-09-01 15:20:21.963 00:05:01.302 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 15:20:22.004 00:05:01.163 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 15:24:25.229 00:00:00.000 UDP 28.104.0.1:46752 -> 198.28.0.2:53 1 64 1 2025-09-01 15:24:25.229 00:00:00.000 UDP 28.104.0.1:56118 -> 198.28.0.2:53 1 64 1 2025-09-01 15:24:25.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46752 1 80 1 2025-09-01 15:24:25.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56118 1 109 1 2025-09-01 15:21:21.954 00:05:01.322 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:25:25.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55130 1 80 1 2025-09-01 15:25:25.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50484 1 109 1 2025-09-01 15:25:25.520 00:00:00.000 UDP 28.104.0.1:50484 -> 198.28.0.2:53 1 64 1 2025-09-01 15:25:25.520 00:00:00.000 UDP 28.104.0.1:55130 -> 198.28.0.2:53 1 64 1 2025-09-01 15:22:21.953 00:05:01.235 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:26:25.780 00:00:00.000 UDP 28.104.0.1:54933 -> 198.28.0.2:53 1 64 1 2025-09-01 15:26:25.780 00:00:00.000 UDP 28.104.0.1:57312 -> 198.28.0.2:53 1 64 1 2025-09-01 15:26:25.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57312 1 80 1 2025-09-01 15:26:25.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54933 1 109 1 2025-09-01 15:26:42.685 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:23:23.265 00:04:00.112 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-01 15:23:23.265 00:04:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-01 15:27:26.078 00:00:00.000 UDP 28.104.0.1:34125 -> 198.28.0.2:53 1 64 1 2025-09-01 15:27:26.078 00:00:00.000 UDP 28.104.0.1:34286 -> 198.28.0.2:53 1 64 1 2025-09-01 15:27:26.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34125 1 109 1 2025-09-01 15:27:26.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34286 1 80 1 2025-09-01 15:23:28.658 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2744 1 2025-09-01 15:28:26.385 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35276 1 80 1 2025-09-01 15:28:26.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58458 1 109 1 2025-09-01 15:28:26.376 00:00:00.000 UDP 28.104.0.1:58458 -> 198.28.0.2:53 1 64 1 2025-09-01 15:28:26.376 00:00:00.000 UDP 28.104.0.1:35276 -> 198.28.0.2:53 1 64 1 2025-09-01 15:28:23.265 00:01:00.114 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 15:28:23.265 00:01:00.103 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 15:29:26.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32894 1 109 1 2025-09-01 15:29:26.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47328 1 80 1 2025-09-01 15:29:26.668 00:00:00.000 UDP 28.104.0.1:32894 -> 198.28.0.2:53 1 64 1 2025-09-01 15:29:26.668 00:00:00.000 UDP 28.104.0.1:47328 -> 198.28.0.2:53 1 64 1 2025-09-01 15:26:21.968 00:05:01.300 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 15:26:22.009 00:05:01.190 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 15:30:26.933 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48691 1 109 1 2025-09-01 15:30:26.934 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35508 1 80 1 2025-09-01 15:30:26.923 00:00:00.000 UDP 28.104.0.1:35508 -> 198.28.0.2:53 1 64 1 2025-09-01 15:30:26.923 00:00:00.000 UDP 28.104.0.1:48691 -> 198.28.0.2:53 1 64 1 2025-09-01 15:31:27.237 00:00:00.000 UDP 28.104.0.1:40785 -> 198.28.0.2:53 1 64 1 2025-09-01 15:31:27.237 00:00:00.000 UDP 28.104.0.1:37681 -> 198.28.0.2:53 1 64 1 2025-09-01 15:31:27.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40785 1 80 1 2025-09-01 15:27:21.958 00:05:01.320 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:31:27.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37681 1 109 1 2025-09-01 15:31:42.650 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:30:23.268 00:02:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 15:30:23.268 00:02:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 15:28:21.958 00:05:01.248 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:32:27.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49104 1 80 1 2025-09-01 15:32:27.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58558 1 109 1 2025-09-01 15:32:27.482 00:00:00.000 UDP 28.104.0.1:49104 -> 198.28.0.2:53 1 64 1 2025-09-01 15:32:27.482 00:00:00.000 UDP 28.104.0.1:58558 -> 198.28.0.2:53 1 64 1 2025-09-01 15:28:48.666 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2884 1 2025-09-01 15:33:27.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53369 1 80 1 2025-09-01 15:33:27.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36785 1 109 1 2025-09-01 15:33:27.767 00:00:00.000 UDP 28.104.0.1:36785 -> 198.28.0.2:53 1 64 1 2025-09-01 15:33:27.767 00:00:00.000 UDP 28.104.0.1:53369 -> 198.28.0.2:53 1 64 1 2025-09-01 15:33:23.268 00:01:00.081 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 15:33:23.268 00:01:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 15:34:28.066 00:00:00.000 UDP 28.104.0.1:59772 -> 198.28.0.2:53 1 64 1 2025-09-01 15:34:28.066 00:00:00.000 UDP 28.104.0.1:42481 -> 198.28.0.2:53 1 64 1 2025-09-01 15:34:28.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42481 1 80 1 2025-09-01 15:34:28.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59772 1 109 1 2025-09-01 15:35:28.321 00:00:00.000 UDP 28.104.0.1:51155 -> 198.28.0.2:53 1 64 1 2025-09-01 15:35:28.322 00:00:00.000 UDP 28.104.0.1:47025 -> 198.28.0.2:53 1 64 1 2025-09-01 15:35:28.333 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51155 1 109 1 2025-09-01 15:35:28.333 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47025 1 80 1 2025-09-01 15:32:21.968 00:05:01.301 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 15:32:22.009 00:05:01.188 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 15:36:28.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43846 1 109 1 2025-09-01 15:36:28.630 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45842 1 80 1 2025-09-01 15:36:28.619 00:00:00.000 UDP 28.104.0.1:43846 -> 198.28.0.2:53 1 64 1 2025-09-01 15:36:28.619 00:00:00.000 UDP 28.104.0.1:45842 -> 198.28.0.2:53 1 64 1 2025-09-01 15:36:42.982 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:33:21.957 00:05:01.322 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:35:23.267 00:02:00.082 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 15:35:23.267 00:02:00.112 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 15:37:28.934 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57043 1 80 1 2025-09-01 15:37:28.934 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56114 1 109 1 2025-09-01 15:37:28.924 00:00:00.000 UDP 28.104.0.1:57043 -> 198.28.0.2:53 1 64 1 2025-09-01 15:37:28.924 00:00:00.000 UDP 28.104.0.1:56114 -> 198.28.0.2:53 1 64 1 2025-09-01 15:34:08.669 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-09-01 15:34:21.958 00:05:01.250 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:38:29.239 00:00:00.000 UDP 28.104.0.1:37879 -> 198.28.0.2:53 1 64 1 2025-09-01 15:38:29.239 00:00:00.000 UDP 28.104.0.1:59582 -> 198.28.0.2:53 1 64 1 2025-09-01 15:38:29.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59582 1 80 1 2025-09-01 15:38:29.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37879 1 109 1 2025-09-01 15:38:23.269 00:01:00.081 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 15:38:23.269 00:01:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 15:39:29.537 00:00:00.000 UDP 28.104.0.1:50728 -> 198.28.0.2:53 1 64 1 2025-09-01 15:39:29.537 00:00:00.000 UDP 28.104.0.1:35353 -> 198.28.0.2:53 1 64 1 2025-09-01 15:39:29.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35353 1 109 1 2025-09-01 15:39:29.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50728 1 80 1 2025-09-01 15:40:29.849 00:00:00.000 UDP 28.104.0.1:53300 -> 198.28.0.2:53 1 64 1 2025-09-01 15:40:29.849 00:00:00.000 UDP 28.104.0.1:34896 -> 198.28.0.2:53 1 64 1 2025-09-01 15:40:29.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53300 1 109 1 2025-09-01 15:40:29.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34896 1 80 1 2025-09-01 15:41:30.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52970 1 109 1 2025-09-01 15:41:30.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49309 1 80 1 2025-09-01 15:41:30.172 00:00:00.000 UDP 28.104.0.1:49309 -> 198.28.0.2:53 1 64 1 2025-09-01 15:41:30.172 00:00:00.000 UDP 28.104.0.1:52970 -> 198.28.0.2:53 1 64 1 2025-09-01 15:41:42.821 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:38:21.968 00:05:01.302 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 15:38:22.009 00:05:01.188 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 15:42:30.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59891 1 109 1 2025-09-01 15:42:30.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40409 1 80 1 2025-09-01 15:42:30.472 00:00:00.000 UDP 28.104.0.1:59891 -> 198.28.0.2:53 1 64 1 2025-09-01 15:42:30.472 00:00:00.000 UDP 28.104.0.1:40409 -> 198.28.0.2:53 1 64 1 2025-09-01 15:39:21.958 00:05:01.322 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:43:30.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33524 1 109 1 2025-09-01 15:43:30.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40312 1 80 1 2025-09-01 15:43:30.759 00:00:00.000 UDP 28.104.0.1:33524 -> 198.28.0.2:53 1 64 1 2025-09-01 15:43:30.759 00:00:00.000 UDP 28.104.0.1:40312 -> 198.28.0.2:53 1 64 1 2025-09-01 15:39:28.681 00:05:10.014 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2628 1 2025-09-01 15:40:23.271 00:04:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-01 15:40:23.271 00:04:00.084 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-01 15:40:21.958 00:05:01.249 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:44:31.055 00:00:00.000 UDP 28.104.0.1:42824 -> 198.28.0.2:53 1 64 1 2025-09-01 15:44:31.055 00:00:00.000 UDP 28.104.0.1:56456 -> 198.28.0.2:53 1 64 1 2025-09-01 15:44:31.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42824 1 109 1 2025-09-01 15:44:31.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56456 1 80 1 2025-09-01 15:45:31.350 00:00:00.000 UDP 28.104.0.1:51070 -> 198.28.0.2:53 1 64 1 2025-09-01 15:45:31.350 00:00:00.000 UDP 28.104.0.1:42167 -> 198.28.0.2:53 1 64 1 2025-09-01 15:45:31.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51070 1 80 1 2025-09-01 15:45:31.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42167 1 109 1 2025-09-01 15:46:31.636 00:00:00.000 UDP 28.104.0.1:48728 -> 198.28.0.2:53 1 64 1 2025-09-01 15:46:31.636 00:00:00.000 UDP 28.104.0.1:42113 -> 198.28.0.2:53 1 64 1 2025-09-01 15:46:31.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48728 1 109 1 2025-09-01 15:46:31.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42113 1 80 1 2025-09-01 15:46:42.779 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:47:31.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54009 1 109 1 2025-09-01 15:47:31.946 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39303 1 80 1 2025-09-01 15:47:31.934 00:00:00.000 UDP 28.104.0.1:39303 -> 198.28.0.2:53 1 64 1 2025-09-01 15:47:31.934 00:00:00.000 UDP 28.104.0.1:54009 -> 198.28.0.2:53 1 64 1 2025-09-01 15:44:21.969 00:05:01.302 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 15:44:22.010 00:05:01.198 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 15:48:46.782 00:00:00.000 UDP 28.104.0.1:41722 -> 198.28.0.2:53 1 64 1 2025-09-01 15:48:46.782 00:00:00.000 UDP 28.104.0.1:43551 -> 198.28.0.2:53 1 64 1 2025-09-01 15:48:46.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43551 1 80 1 2025-09-01 15:48:46.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41722 1 109 1 2025-09-01 15:44:48.695 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 32 2176 1 2025-09-01 15:45:23.270 00:04:00.084 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-01 15:45:23.270 00:04:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-01 15:45:21.959 00:05:01.323 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:49:47.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60843 1 109 1 2025-09-01 15:49:47.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46857 1 80 1 2025-09-01 15:49:47.077 00:00:00.000 UDP 28.104.0.1:60843 -> 198.28.0.2:53 1 64 1 2025-09-01 15:49:47.077 00:00:00.000 UDP 28.104.0.1:46857 -> 198.28.0.2:53 1 64 1 2025-09-01 15:46:21.959 00:05:01.260 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:50:47.371 00:00:00.000 UDP 28.104.0.1:47332 -> 198.28.0.2:53 1 64 1 2025-09-01 15:50:47.371 00:00:00.000 UDP 28.104.0.1:52230 -> 198.28.0.2:53 1 64 1 2025-09-01 15:50:47.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47332 1 80 1 2025-09-01 15:50:47.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52230 1 109 1 2025-09-01 15:51:42.890 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:51:47.661 00:00:00.000 UDP 28.104.0.1:34028 -> 198.28.0.2:53 1 64 1 2025-09-01 15:51:47.661 00:00:00.000 UDP 28.104.0.1:45492 -> 198.28.0.2:53 1 64 1 2025-09-01 15:51:47.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34028 1 109 1 2025-09-01 15:51:47.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45492 1 80 1 2025-09-01 15:52:47.947 00:00:00.000 UDP 28.104.0.1:59640 -> 198.28.0.2:53 1 64 1 2025-09-01 15:52:47.948 00:00:00.000 UDP 28.104.0.1:34646 -> 198.28.0.2:53 1 64 1 2025-09-01 15:52:47.957 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34646 1 80 1 2025-09-01 15:52:47.957 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59640 1 109 1 2025-09-01 15:53:48.238 00:00:00.000 UDP 28.104.0.1:60679 -> 198.28.0.2:53 1 64 1 2025-09-01 15:53:48.238 00:00:00.000 UDP 28.104.0.1:48720 -> 198.28.0.2:53 1 64 1 2025-09-01 15:53:48.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48720 1 109 1 2025-09-01 15:53:48.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60679 1 80 1 2025-09-01 15:50:23.272 00:04:00.085 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-01 15:50:23.272 00:04:00.111 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-01 15:50:08.706 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 2888 1 2025-09-01 15:50:22.010 00:05:01.199 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 15:50:21.970 00:05:01.303 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 15:54:48.538 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57291 1 80 1 2025-09-01 15:54:48.538 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34921 1 109 1 2025-09-01 15:54:48.529 00:00:00.000 UDP 28.104.0.1:34921 -> 198.28.0.2:53 1 64 1 2025-09-01 15:54:48.528 00:00:00.000 UDP 28.104.0.1:57291 -> 198.28.0.2:53 1 64 1 2025-09-01 15:51:21.960 00:05:01.324 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 15:55:48.777 00:00:00.000 UDP 28.104.0.1:51856 -> 198.28.0.2:53 1 64 1 2025-09-01 15:55:48.777 00:00:00.000 UDP 28.104.0.1:49198 -> 198.28.0.2:53 1 64 1 2025-09-01 15:55:48.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51856 1 80 1 2025-09-01 15:55:48.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49198 1 109 1 2025-09-01 15:52:21.961 00:05:01.282 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 15:56:43.436 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 15:56:49.076 00:00:00.000 UDP 28.104.0.1:54858 -> 198.28.0.2:53 1 64 1 2025-09-01 15:56:49.076 00:00:00.000 UDP 28.104.0.1:55565 -> 198.28.0.2:53 1 64 1 2025-09-01 15:56:49.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55565 1 109 1 2025-09-01 15:56:49.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54858 1 80 1 2025-09-01 15:57:49.329 00:00:00.000 UDP 28.104.0.1:45952 -> 198.28.0.2:53 1 64 1 2025-09-01 15:57:49.329 00:00:00.000 UDP 28.104.0.1:46995 -> 198.28.0.2:53 1 64 1 2025-09-01 15:57:49.341 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46995 1 80 1 2025-09-01 15:57:49.339 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45952 1 109 1 2025-09-01 15:58:49.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60364 1 109 1 2025-09-01 15:58:49.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33071 1 80 1 2025-09-01 15:58:49.635 00:00:00.000 UDP 28.104.0.1:33071 -> 198.28.0.2:53 1 64 1 2025-09-01 15:58:49.635 00:00:00.000 UDP 28.104.0.1:60364 -> 198.28.0.2:53 1 64 1 Summary: total flows: 335, total bytes: 94186, total packets: 1385, avg bps: 201, avg pps: 0, avg bpp: 68 Time window: 2025-09-01 14:56:21 - 2025-09-01 15:58:49 Total flows processed: 335, passed: 335, Blocks skipped: 0, Bytes read: 34904 Sys: 0.0035s User: 0.0035s Wall: 0.0046s flows/second: 73530.4 Runtime: 0.0046s