Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 08:59:07.993 00:00:00.000 UDP 28.104.0.1:60305 -> 198.28.0.2:53 1 64 1 2025-10-14 08:59:07.993 00:00:00.000 UDP 28.104.0.1:59645 -> 198.28.0.2:53 1 64 1 2025-10-14 08:59:08.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60305 1 80 1 2025-10-14 08:59:08.005 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59645 1 109 1 2025-10-14 08:55:41.927 00:05:09.253 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:00:08.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53780 1 80 1 2025-10-14 09:00:08.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55610 1 109 1 2025-10-14 09:00:08.598 00:00:00.000 UDP 28.104.0.1:53780 -> 198.28.0.2:53 1 64 1 2025-10-14 09:00:08.598 00:00:00.000 UDP 28.104.0.1:55610 -> 198.28.0.2:53 1 64 1 2025-10-14 08:56:41.968 00:05:09.047 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:01:08.895 00:00:00.000 UDP 28.104.0.1:53389 -> 198.28.0.2:53 1 64 1 2025-10-14 09:01:08.895 00:00:00.000 UDP 28.104.0.1:48216 -> 198.28.0.2:53 1 64 1 2025-10-14 09:01:08.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53389 1 109 1 2025-10-14 09:01:08.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48216 1 80 1 2025-10-14 08:56:51.176 00:06:00.117 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-14 08:57:41.917 00:05:09.273 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:02:09.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40442 1 109 1 2025-10-14 09:02:09.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38796 1 80 1 2025-10-14 09:02:09.204 00:00:00.000 UDP 28.104.0.1:38796 -> 198.28.0.2:53 1 64 1 2025-10-14 09:02:09.204 00:00:00.000 UDP 28.104.0.1:40442 -> 198.28.0.2:53 1 64 1 2025-10-14 09:02:23.881 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 08:58:41.917 00:05:09.108 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:03:09.501 00:00:00.000 UDP 28.104.0.1:39320 -> 198.28.0.2:53 1 64 1 2025-10-14 09:03:09.502 00:00:00.000 UDP 28.104.0.1:52175 -> 198.28.0.2:53 1 64 1 2025-10-14 09:03:09.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39320 1 80 1 2025-10-14 09:03:09.513 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52175 1 109 1 2025-10-14 08:59:34.198 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2256 1 2025-10-14 09:04:09.794 00:00:00.000 UDP 28.104.0.1:58676 -> 198.28.0.2:53 1 64 1 2025-10-14 09:04:09.795 00:00:00.000 UDP 28.104.0.1:50111 -> 198.28.0.2:53 1 64 1 2025-10-14 09:04:09.805 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50111 1 109 1 2025-10-14 09:04:09.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58676 1 80 1 2025-10-14 09:05:10.096 00:00:00.000 UDP 28.104.0.1:48784 -> 198.28.0.2:53 1 64 1 2025-10-14 09:05:10.097 00:00:00.000 UDP 28.104.0.1:33413 -> 198.28.0.2:53 1 64 1 2025-10-14 09:05:10.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48784 1 109 1 2025-10-14 09:05:10.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33413 1 80 1 2025-10-14 09:01:41.928 00:05:09.254 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:00:51.033 00:06:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-14 09:06:10.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36748 1 109 1 2025-10-14 09:06:10.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48289 1 80 1 2025-10-14 09:06:10.346 00:00:00.000 UDP 28.104.0.1:36748 -> 198.28.0.2:53 1 64 1 2025-10-14 09:06:10.346 00:00:00.000 UDP 28.104.0.1:48289 -> 198.28.0.2:53 1 64 1 2025-10-14 09:02:41.968 00:05:09.048 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:07:10.643 00:00:00.000 UDP 28.104.0.1:47024 -> 198.28.0.2:53 1 64 1 2025-10-14 09:07:10.643 00:00:00.000 UDP 28.104.0.1:38414 -> 198.28.0.2:53 1 64 1 2025-10-14 09:07:10.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47024 1 80 1 2025-10-14 09:07:10.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38414 1 109 1 2025-10-14 09:07:23.980 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:03:41.918 00:05:09.274 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:08:10.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41113 1 109 1 2025-10-14 09:08:10.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58079 1 80 1 2025-10-14 09:08:10.948 00:00:00.000 UDP 28.104.0.1:41113 -> 198.28.0.2:53 1 64 1 2025-10-14 09:08:10.948 00:00:00.000 UDP 28.104.0.1:58079 -> 198.28.0.2:53 1 64 1 2025-10-14 09:04:41.919 00:05:09.108 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:03:51.181 00:06:00.115 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-14 09:09:11.215 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43331 1 109 1 2025-10-14 09:09:11.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35959 1 80 1 2025-10-14 09:04:54.202 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2900 1 2025-10-14 09:09:11.205 00:00:00.000 UDP 28.104.0.1:35959 -> 198.28.0.2:53 1 64 1 2025-10-14 09:09:11.205 00:00:00.000 UDP 28.104.0.1:43331 -> 198.28.0.2:53 1 64 1 2025-10-14 09:10:11.509 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60710 1 109 1 2025-10-14 09:10:11.509 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55303 1 80 1 2025-10-14 09:10:11.500 00:00:00.000 UDP 28.104.0.1:60710 -> 198.28.0.2:53 1 64 1 2025-10-14 09:10:11.501 00:00:00.000 UDP 28.104.0.1:55303 -> 198.28.0.2:53 1 64 1 2025-10-14 09:11:11.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59538 1 109 1 2025-10-14 09:11:11.805 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55773 1 80 1 2025-10-14 09:11:11.796 00:00:00.000 UDP 28.104.0.1:59538 -> 198.28.0.2:53 1 64 1 2025-10-14 09:11:11.794 00:00:00.000 UDP 28.104.0.1:55773 -> 198.28.0.2:53 1 64 1 2025-10-14 09:07:41.930 00:05:09.253 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:12:12.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43409 1 109 1 2025-10-14 09:12:12.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56093 1 80 1 2025-10-14 09:12:12.105 00:00:00.000 UDP 28.104.0.1:43409 -> 198.28.0.2:53 1 64 1 2025-10-14 09:12:12.105 00:00:00.000 UDP 28.104.0.1:56093 -> 198.28.0.2:53 1 64 1 2025-10-14 09:12:24.216 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:08:41.970 00:05:09.049 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:07:51.034 00:06:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-14 09:13:12.404 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52262 1 109 1 2025-10-14 09:13:12.404 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48181 1 80 1 2025-10-14 09:13:12.394 00:00:00.000 UDP 28.104.0.1:48181 -> 198.28.0.2:53 1 64 1 2025-10-14 09:13:12.394 00:00:00.000 UDP 28.104.0.1:52262 -> 198.28.0.2:53 1 64 1 2025-10-14 09:09:41.919 00:05:09.274 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:14:12.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57076 1 109 1 2025-10-14 09:14:12.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58253 1 80 1 2025-10-14 09:14:12.688 00:00:00.000 UDP 28.104.0.1:57076 -> 198.28.0.2:53 1 64 1 2025-10-14 09:14:12.688 00:00:00.000 UDP 28.104.0.1:58253 -> 198.28.0.2:53 1 64 1 2025-10-14 09:10:14.207 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2664 1 2025-10-14 09:10:41.920 00:05:09.108 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:15:12.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54346 1 80 1 2025-10-14 09:15:12.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60351 1 109 1 2025-10-14 09:15:12.986 00:00:00.000 UDP 28.104.0.1:54346 -> 198.28.0.2:53 1 64 1 2025-10-14 09:15:12.986 00:00:00.000 UDP 28.104.0.1:60351 -> 198.28.0.2:53 1 64 1 2025-10-14 09:10:51.182 00:06:00.114 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-14 09:16:13.297 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37055 1 109 1 2025-10-14 09:16:13.297 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50067 1 80 1 2025-10-14 09:16:13.287 00:00:00.000 UDP 28.104.0.1:37055 -> 198.28.0.2:53 1 64 1 2025-10-14 09:16:13.287 00:00:00.000 UDP 28.104.0.1:50067 -> 198.28.0.2:53 1 64 1 2025-10-14 09:17:13.582 00:00:00.000 UDP 28.104.0.1:36197 -> 198.28.0.2:53 1 64 1 2025-10-14 09:17:13.582 00:00:00.000 UDP 28.104.0.1:43575 -> 198.28.0.2:53 1 64 1 2025-10-14 09:17:13.592 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36197 1 109 1 2025-10-14 09:17:13.592 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43575 1 80 1 2025-10-14 09:17:24.173 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:13:41.929 00:05:09.254 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:18:13.886 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51737 1 109 1 2025-10-14 09:18:13.886 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56818 1 80 1 2025-10-14 09:18:13.877 00:00:00.000 UDP 28.104.0.1:51737 -> 198.28.0.2:53 1 64 1 2025-10-14 09:18:13.877 00:00:00.000 UDP 28.104.0.1:56818 -> 198.28.0.2:53 1 64 1 2025-10-14 09:14:41.972 00:05:09.050 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:19:14.226 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54013 1 109 1 2025-10-14 09:19:14.226 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33930 1 80 1 2025-10-14 09:19:14.215 00:00:00.000 UDP 28.104.0.1:54013 -> 198.28.0.2:53 1 64 1 2025-10-14 09:19:14.215 00:00:00.000 UDP 28.104.0.1:33930 -> 198.28.0.2:53 1 64 1 2025-10-14 09:15:34.214 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2480 1 2025-10-14 09:15:41.920 00:05:09.275 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:14:51.035 00:06:00.150 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-14 09:20:14.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38889 1 109 1 2025-10-14 09:20:14.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39162 1 80 1 2025-10-14 09:20:14.462 00:00:00.000 UDP 28.104.0.1:39162 -> 198.28.0.2:53 1 64 1 2025-10-14 09:20:14.462 00:00:00.000 UDP 28.104.0.1:38889 -> 198.28.0.2:53 1 64 1 2025-10-14 09:16:41.920 00:05:09.111 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:21:14.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41605 1 109 1 2025-10-14 09:21:14.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48996 1 80 1 2025-10-14 09:21:14.801 00:00:00.000 UDP 28.104.0.1:41605 -> 198.28.0.2:53 1 64 1 2025-10-14 09:21:14.801 00:00:00.000 UDP 28.104.0.1:48996 -> 198.28.0.2:53 1 64 1 2025-10-14 09:22:20.355 00:00:00.000 UDP 28.104.0.1:46929 -> 198.28.0.2:53 1 64 1 2025-10-14 09:22:20.355 00:00:00.000 UDP 28.104.0.1:37101 -> 198.28.0.2:53 1 64 1 2025-10-14 09:22:20.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37101 1 80 1 2025-10-14 09:22:20.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46929 1 109 1 2025-10-14 09:22:24.396 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:17:51.184 00:06:00.117 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-14 09:23:20.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53918 1 80 1 2025-10-14 09:23:20.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36078 1 109 1 2025-10-14 09:23:20.654 00:00:00.000 UDP 28.104.0.1:53918 -> 198.28.0.2:53 1 64 1 2025-10-14 09:23:20.654 00:00:00.000 UDP 28.104.0.1:36078 -> 198.28.0.2:53 1 64 1 2025-10-14 09:19:41.932 00:05:09.255 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:24:20.905 00:00:00.000 UDP 28.104.0.1:58093 -> 198.28.0.2:53 1 64 1 2025-10-14 09:24:20.905 00:00:00.000 UDP 28.104.0.1:50899 -> 198.28.0.2:53 1 64 1 2025-10-14 09:24:20.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58093 1 109 1 2025-10-14 09:24:20.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50899 1 80 1 2025-10-14 09:20:41.973 00:05:09.050 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:20:54.219 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2676 1 2025-10-14 09:25:21.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53526 1 109 1 2025-10-14 09:25:21.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42437 1 80 1 2025-10-14 09:25:21.218 00:00:00.000 UDP 28.104.0.1:42437 -> 198.28.0.2:53 1 64 1 2025-10-14 09:25:21.218 00:00:00.000 UDP 28.104.0.1:53526 -> 198.28.0.2:53 1 64 1 2025-10-14 09:21:41.923 00:05:09.274 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:26:21.506 00:00:00.000 UDP 28.104.0.1:50138 -> 198.28.0.2:53 1 64 1 2025-10-14 09:26:21.506 00:00:00.000 UDP 28.104.0.1:33253 -> 198.28.0.2:53 1 64 1 2025-10-14 09:26:21.516 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33253 1 80 1 2025-10-14 09:26:21.516 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50138 1 109 1 2025-10-14 09:21:51.039 00:06:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-14 09:22:41.924 00:05:09.109 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:27:21.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34857 1 109 1 2025-10-14 09:27:21.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58082 1 80 1 2025-10-14 09:27:21.807 00:00:00.000 UDP 28.104.0.1:34857 -> 198.28.0.2:53 1 64 1 2025-10-14 09:27:21.807 00:00:00.000 UDP 28.104.0.1:58082 -> 198.28.0.2:53 1 64 1 2025-10-14 09:27:24.573 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:28:22.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37129 1 80 1 2025-10-14 09:28:22.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53173 1 109 1 2025-10-14 09:28:22.071 00:00:00.000 UDP 28.104.0.1:37129 -> 198.28.0.2:53 1 64 1 2025-10-14 09:28:22.071 00:00:00.000 UDP 28.104.0.1:53173 -> 198.28.0.2:53 1 64 1 2025-10-14 09:29:22.369 00:00:00.000 UDP 28.104.0.1:38852 -> 198.28.0.2:53 1 64 1 2025-10-14 09:29:22.369 00:00:00.000 UDP 28.104.0.1:56289 -> 198.28.0.2:53 1 64 1 2025-10-14 09:29:22.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38852 1 80 1 2025-10-14 09:29:22.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56289 1 109 1 2025-10-14 09:24:51.187 00:06:00.115 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-14 09:25:41.937 00:05:09.252 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:30:22.667 00:00:00.000 UDP 28.104.0.1:57024 -> 198.28.0.2:53 1 64 1 2025-10-14 09:30:22.667 00:00:00.000 UDP 28.104.0.1:59088 -> 198.28.0.2:53 1 64 1 2025-10-14 09:30:22.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59088 1 80 1 2025-10-14 09:30:22.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57024 1 109 1 2025-10-14 09:26:14.227 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2336 1 2025-10-14 09:26:41.976 00:05:09.048 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:31:22.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37529 1 109 1 2025-10-14 09:31:22.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59216 1 80 1 2025-10-14 09:31:22.970 00:00:00.000 UDP 28.104.0.1:59216 -> 198.28.0.2:53 1 64 1 2025-10-14 09:31:22.969 00:00:00.000 UDP 28.104.0.1:37529 -> 198.28.0.2:53 1 64 1 2025-10-14 09:27:41.926 00:05:09.272 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:32:23.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58926 1 80 1 2025-10-14 09:32:23.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42687 1 109 1 2025-10-14 09:32:23.270 00:00:00.000 UDP 28.104.0.1:58926 -> 198.28.0.2:53 1 64 1 2025-10-14 09:32:23.271 00:00:00.000 UDP 28.104.0.1:42687 -> 198.28.0.2:53 1 64 1 2025-10-14 09:32:24.675 00:00:00.033 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:28:41.926 00:05:09.107 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:33:23.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59020 1 109 1 2025-10-14 09:33:23.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38426 1 80 1 2025-10-14 09:33:23.566 00:00:00.000 UDP 28.104.0.1:38426 -> 198.28.0.2:53 1 64 1 2025-10-14 09:33:23.566 00:00:00.000 UDP 28.104.0.1:59020 -> 198.28.0.2:53 1 64 1 2025-10-14 09:28:51.072 00:06:00.119 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-14 09:34:23.864 00:00:00.000 UDP 28.104.0.1:44953 -> 198.28.0.2:53 1 64 1 2025-10-14 09:34:23.864 00:00:00.000 UDP 28.104.0.1:39907 -> 198.28.0.2:53 1 64 1 2025-10-14 09:34:23.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44953 1 80 1 2025-10-14 09:34:23.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39907 1 109 1 2025-10-14 09:35:24.141 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33102 1 80 1 2025-10-14 09:35:24.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48105 1 109 1 2025-10-14 09:35:24.130 00:00:00.000 UDP 28.104.0.1:48105 -> 198.28.0.2:53 1 64 1 2025-10-14 09:35:24.130 00:00:00.000 UDP 28.104.0.1:33102 -> 198.28.0.2:53 1 64 1 2025-10-14 09:31:34.234 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2556 1 2025-10-14 09:31:41.937 00:05:09.256 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:36:24.422 00:00:00.000 UDP 28.104.0.1:33932 -> 198.28.0.2:53 1 64 1 2025-10-14 09:36:24.422 00:00:00.000 UDP 28.104.0.1:41752 -> 198.28.0.2:53 1 64 1 2025-10-14 09:36:24.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33932 1 109 1 2025-10-14 09:36:24.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41752 1 80 1 2025-10-14 09:31:51.188 00:06:00.116 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-14 09:32:41.978 00:05:09.049 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:37:24.729 00:00:00.000 UDP 28.104.0.1:48104 -> 198.28.0.2:53 1 64 1 2025-10-14 09:37:24.729 00:00:00.000 UDP 28.104.0.1:38814 -> 198.28.0.2:53 1 64 1 2025-10-14 09:37:24.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38814 1 80 1 2025-10-14 09:37:24.704 00:00:00.031 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:37:24.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48104 1 109 1 2025-10-14 09:33:41.929 00:05:09.275 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:38:24.977 00:00:00.000 UDP 28.104.0.1:53194 -> 198.28.0.2:53 1 64 1 2025-10-14 09:38:24.977 00:00:00.000 UDP 28.104.0.1:52734 -> 198.28.0.2:53 1 64 1 2025-10-14 09:38:24.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52734 1 80 1 2025-10-14 09:38:24.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53194 1 109 1 2025-10-14 09:34:41.929 00:05:09.108 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:39:25.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51527 1 80 1 2025-10-14 09:39:25.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51461 1 109 1 2025-10-14 09:39:25.676 00:00:00.000 UDP 28.104.0.1:51461 -> 198.28.0.2:53 1 64 1 2025-10-14 09:39:25.676 00:00:00.000 UDP 28.104.0.1:51527 -> 198.28.0.2:53 1 64 1 2025-10-14 09:40:25.981 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48858 1 109 1 2025-10-14 09:40:25.981 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37556 1 80 1 2025-10-14 09:40:25.971 00:00:00.000 UDP 28.104.0.1:37556 -> 198.28.0.2:53 1 64 1 2025-10-14 09:40:25.971 00:00:00.000 UDP 28.104.0.1:48858 -> 198.28.0.2:53 1 64 1 2025-10-14 09:35:51.072 00:06:00.122 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-14 09:36:54.238 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2672 1 2025-10-14 09:41:26.225 00:00:00.000 UDP 28.104.0.1:39298 -> 198.28.0.2:53 1 64 1 2025-10-14 09:41:26.225 00:00:00.000 UDP 28.104.0.1:41119 -> 198.28.0.2:53 1 64 1 2025-10-14 09:41:26.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39298 1 109 1 2025-10-14 09:41:26.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41119 1 80 1 2025-10-14 09:37:41.939 00:05:09.255 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:42:25.011 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:42:26.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44743 1 109 1 2025-10-14 09:42:26.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55026 1 80 1 2025-10-14 09:42:26.513 00:00:00.000 UDP 28.104.0.1:55026 -> 198.28.0.2:53 1 64 1 2025-10-14 09:42:26.513 00:00:00.000 UDP 28.104.0.1:44743 -> 198.28.0.2:53 1 64 1 2025-10-14 09:38:41.979 00:05:09.048 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:43:26.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52548 1 80 1 2025-10-14 09:43:26.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48848 1 109 1 2025-10-14 09:43:26.767 00:00:00.000 UDP 28.104.0.1:52548 -> 198.28.0.2:53 1 64 1 2025-10-14 09:43:26.767 00:00:00.000 UDP 28.104.0.1:48848 -> 198.28.0.2:53 1 64 1 2025-10-14 09:39:41.928 00:05:09.277 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:38:51.193 00:06:00.112 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-14 09:44:27.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49325 1 109 1 2025-10-14 09:44:27.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57386 1 80 1 2025-10-14 09:44:27.066 00:00:00.000 UDP 28.104.0.1:49325 -> 198.28.0.2:53 1 64 1 2025-10-14 09:44:27.066 00:00:00.000 UDP 28.104.0.1:57386 -> 198.28.0.2:53 1 64 1 2025-10-14 09:40:41.928 00:05:09.109 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:45:27.372 00:00:00.000 UDP 28.104.0.1:54774 -> 198.28.0.2:53 1 64 1 2025-10-14 09:45:27.372 00:00:00.000 UDP 28.104.0.1:40406 -> 198.28.0.2:53 1 64 1 2025-10-14 09:45:27.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54774 1 109 1 2025-10-14 09:45:27.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40406 1 80 1 2025-10-14 09:46:27.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41070 1 80 1 2025-10-14 09:46:27.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47297 1 109 1 2025-10-14 09:46:27.667 00:00:00.000 UDP 28.104.0.1:41070 -> 198.28.0.2:53 1 64 1 2025-10-14 09:46:27.668 00:00:00.000 UDP 28.104.0.1:47297 -> 198.28.0.2:53 1 64 1 2025-10-14 09:42:14.240 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2624 1 2025-10-14 09:47:27.922 00:00:00.000 UDP 28.104.0.1:46323 -> 198.28.0.2:53 1 64 1 2025-10-14 09:47:27.921 00:00:00.000 UDP 28.104.0.1:33703 -> 198.28.0.2:53 1 64 1 2025-10-14 09:47:24.836 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:47:27.932 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33703 1 109 1 2025-10-14 09:47:27.931 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46323 1 80 1 2025-10-14 09:43:41.940 00:05:09.256 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:42:51.074 00:06:00.122 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-14 09:48:28.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57905 1 109 1 2025-10-14 09:48:28.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36077 1 80 1 2025-10-14 09:48:28.213 00:00:00.000 UDP 28.104.0.1:57905 -> 198.28.0.2:53 1 64 1 2025-10-14 09:48:28.213 00:00:00.000 UDP 28.104.0.1:36077 -> 198.28.0.2:53 1 64 1 2025-10-14 09:44:41.979 00:05:09.049 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:49:28.500 00:00:00.000 UDP 28.104.0.1:46902 -> 198.28.0.2:53 1 64 1 2025-10-14 09:49:28.500 00:00:00.000 UDP 28.104.0.1:42187 -> 198.28.0.2:53 1 64 1 2025-10-14 09:49:28.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46902 1 80 1 2025-10-14 09:49:28.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42187 1 109 1 2025-10-14 09:45:41.929 00:05:09.276 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:50:28.808 00:00:00.000 UDP 28.104.0.1:36609 -> 198.28.0.2:53 1 64 1 2025-10-14 09:50:28.808 00:00:00.000 UDP 28.104.0.1:57324 -> 198.28.0.2:53 1 64 1 2025-10-14 09:50:28.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36609 1 80 1 2025-10-14 09:50:28.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57324 1 109 1 2025-10-14 09:46:41.931 00:05:09.107 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:45:51.195 00:06:00.112 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-14 09:51:29.111 00:00:00.000 UDP 28.104.0.1:40710 -> 198.28.0.2:53 1 64 1 2025-10-14 09:51:29.111 00:00:00.000 UDP 28.104.0.1:34358 -> 198.28.0.2:53 1 64 1 2025-10-14 09:51:29.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40710 1 109 1 2025-10-14 09:51:29.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34358 1 80 1 2025-10-14 09:47:34.244 00:05:10.013 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2612 1 2025-10-14 09:52:24.811 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:52:29.362 00:00:00.000 UDP 28.104.0.1:55336 -> 198.28.0.2:53 1 64 1 2025-10-14 09:52:29.362 00:00:00.000 UDP 28.104.0.1:33645 -> 198.28.0.2:53 1 64 1 2025-10-14 09:52:29.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55336 1 109 1 2025-10-14 09:52:29.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33645 1 80 1 2025-10-14 09:53:29.891 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50958 1 109 1 2025-10-14 09:53:29.890 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37077 1 80 1 2025-10-14 09:53:29.882 00:00:00.000 UDP 28.104.0.1:50958 -> 198.28.0.2:53 1 64 1 2025-10-14 09:53:29.882 00:00:00.000 UDP 28.104.0.1:37077 -> 198.28.0.2:53 1 64 1 2025-10-14 09:49:41.941 00:05:09.257 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-14 09:54:30.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57471 1 80 1 2025-10-14 09:54:30.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59354 1 109 1 2025-10-14 09:54:30.170 00:00:00.000 UDP 28.104.0.1:59354 -> 198.28.0.2:53 1 64 1 2025-10-14 09:54:30.170 00:00:00.000 UDP 28.104.0.1:57471 -> 198.28.0.2:53 1 64 1 2025-10-14 09:50:41.981 00:05:09.077 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-14 09:49:51.074 00:06:00.126 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-14 09:55:30.479 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40578 1 109 1 2025-10-14 09:55:30.479 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34809 1 80 1 2025-10-14 09:55:30.468 00:00:00.000 UDP 28.104.0.1:34809 -> 198.28.0.2:53 1 64 1 2025-10-14 09:55:30.468 00:00:00.000 UDP 28.104.0.1:40578 -> 198.28.0.2:53 1 64 1 2025-10-14 09:51:41.931 00:05:09.287 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-14 09:56:30.783 00:00:00.000 UDP 28.104.0.1:44096 -> 198.28.0.2:53 1 64 1 2025-10-14 09:56:30.783 00:00:00.000 UDP 28.104.0.1:55851 -> 198.28.0.2:53 1 64 1 2025-10-14 09:56:30.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55851 1 109 1 2025-10-14 09:56:30.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44096 1 80 1 2025-10-14 09:52:41.932 00:05:09.140 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-14 09:52:54.257 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-10-14 09:57:24.941 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-14 09:57:31.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41458 1 80 1 2025-10-14 09:57:31.100 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41287 1 109 1 2025-10-14 09:57:31.091 00:00:00.000 UDP 28.104.0.1:41287 -> 198.28.0.2:53 1 64 1 2025-10-14 09:57:31.090 00:00:00.000 UDP 28.104.0.1:41458 -> 198.28.0.2:53 1 64 1 2025-10-14 09:52:51.197 00:06:00.111 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-14 09:58:31.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57790 1 109 1 2025-10-14 09:58:31.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41253 1 80 1 2025-10-14 09:58:31.378 00:00:00.000 UDP 28.104.0.1:41253 -> 198.28.0.2:53 1 64 1 2025-10-14 09:58:31.378 00:00:00.000 UDP 28.104.0.1:57790 -> 198.28.0.2:53 1 64 1 Summary: total flows: 320, total bytes: 94473, total packets: 1391, avg bps: 199, avg pps: 0, avg bpp: 67 Time window: 2025-10-14 08:55:41 - 2025-10-14 09:58:51 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0044s User: 0.0017s Wall: 0.0040s flows/second: 80785.9 Runtime: 0.0040s