Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 13:58:56.337 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 13:59:42.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58072 1 109 1 2025-10-17 13:59:42.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59382 1 80 1 2025-10-17 13:59:42.490 00:00:00.000 UDP 28.104.0.1:58072 -> 198.28.0.2:53 1 64 1 2025-10-17 13:59:42.490 00:00:00.000 UDP 28.104.0.1:59382 -> 198.28.0.2:53 1 64 1 2025-10-17 13:54:52.687 00:05:50.886 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 13:54:52.599 00:05:51.014 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:00:42.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38693 1 80 1 2025-10-17 14:00:42.801 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35965 1 109 1 2025-10-17 14:00:42.792 00:00:00.000 UDP 28.104.0.1:38693 -> 198.28.0.2:53 1 64 1 2025-10-17 14:00:42.791 00:00:00.000 UDP 28.104.0.1:35965 -> 198.28.0.2:53 1 64 1 2025-10-17 13:56:43.562 00:05:09.137 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:01:43.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36374 1 109 1 2025-10-17 14:01:43.112 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50310 1 80 1 2025-10-17 14:01:43.101 00:00:00.000 UDP 28.104.0.1:36374 -> 198.28.0.2:53 1 64 1 2025-10-17 14:01:43.101 00:00:00.000 UDP 28.104.0.1:50310 -> 198.28.0.2:53 1 64 1 2025-10-17 14:02:43.395 00:00:00.000 UDP 28.104.0.1:41249 -> 198.28.0.2:53 1 64 1 2025-10-17 14:02:43.395 00:00:00.000 UDP 28.104.0.1:38802 -> 198.28.0.2:53 1 64 1 2025-10-17 14:02:43.405 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38802 1 80 1 2025-10-17 14:02:43.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41249 1 109 1 2025-10-17 13:57:52.611 00:05:50.954 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 13:57:52.688 00:06:00.099 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 13:58:50.592 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-10-17 14:03:43.694 00:00:00.000 UDP 28.104.0.1:52315 -> 198.28.0.2:53 1 64 1 2025-10-17 14:03:43.694 00:00:00.000 UDP 28.104.0.1:50483 -> 198.28.0.2:53 1 64 1 2025-10-17 14:03:43.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52315 1 109 1 2025-10-17 14:03:43.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50483 1 80 1 2025-10-17 14:03:56.693 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:04:43.999 00:00:00.000 UDP 28.104.0.1:47793 -> 198.28.0.2:53 1 64 1 2025-10-17 14:04:43.999 00:00:00.000 UDP 28.104.0.1:48012 -> 198.28.0.2:53 1 64 1 2025-10-17 14:04:44.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47793 1 80 1 2025-10-17 14:04:44.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48012 1 109 1 2025-10-17 13:59:52.543 00:06:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 14:00:52.688 00:05:50.887 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:00:52.602 00:05:51.013 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:05:44.300 00:00:00.000 UDP 28.104.0.1:49441 -> 198.28.0.2:53 1 64 1 2025-10-17 14:05:44.299 00:00:00.000 UDP 28.104.0.1:47165 -> 198.28.0.2:53 1 64 1 2025-10-17 14:05:44.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49441 1 80 1 2025-10-17 14:05:44.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47165 1 109 1 2025-10-17 14:06:44.595 00:00:00.000 UDP 28.104.0.1:36924 -> 198.28.0.2:53 1 64 1 2025-10-17 14:06:44.596 00:00:00.000 UDP 28.104.0.1:55410 -> 198.28.0.2:53 1 64 1 2025-10-17 14:06:44.606 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36924 1 109 1 2025-10-17 14:06:44.606 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55410 1 80 1 2025-10-17 14:02:43.566 00:05:09.135 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:07:44.887 00:00:00.000 UDP 28.104.0.1:42226 -> 198.28.0.2:53 1 64 1 2025-10-17 14:07:44.887 00:00:00.000 UDP 28.104.0.1:49711 -> 198.28.0.2:53 1 64 1 2025-10-17 14:07:44.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49711 1 109 1 2025-10-17 14:07:44.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42226 1 80 1 2025-10-17 14:04:10.598 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2772 1 2025-10-17 14:03:52.613 00:05:50.954 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 14:08:45.222 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51340 1 109 1 2025-10-17 14:08:45.222 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49705 1 80 1 2025-10-17 14:08:45.211 00:00:00.000 UDP 28.104.0.1:49705 -> 198.28.0.2:53 1 64 1 2025-10-17 14:08:45.211 00:00:00.000 UDP 28.104.0.1:51340 -> 198.28.0.2:53 1 64 1 2025-10-17 14:08:56.710 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:09:45.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37417 1 80 1 2025-10-17 14:09:45.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32883 1 109 1 2025-10-17 14:09:45.546 00:00:00.000 UDP 28.104.0.1:37417 -> 198.28.0.2:53 1 64 1 2025-10-17 14:09:45.546 00:00:00.000 UDP 28.104.0.1:32883 -> 198.28.0.2:53 1 64 1 2025-10-17 14:04:52.692 00:06:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 14:10:45.797 00:00:00.000 UDP 28.104.0.1:49054 -> 198.28.0.2:53 1 64 1 2025-10-17 14:10:45.797 00:00:00.000 UDP 28.104.0.1:58442 -> 198.28.0.2:53 1 64 1 2025-10-17 14:10:45.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58442 1 109 1 2025-10-17 14:10:45.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49054 1 80 1 2025-10-17 14:11:46.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57407 1 109 1 2025-10-17 14:11:46.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58410 1 80 1 2025-10-17 14:06:52.691 00:05:50.888 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:11:46.101 00:00:00.000 UDP 28.104.0.1:57407 -> 198.28.0.2:53 1 64 1 2025-10-17 14:06:52.604 00:05:51.015 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:11:46.101 00:00:00.000 UDP 28.104.0.1:58410 -> 198.28.0.2:53 1 64 1 2025-10-17 14:06:52.545 00:06:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 14:12:46.405 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35124 1 109 1 2025-10-17 14:12:46.405 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43307 1 80 1 2025-10-17 14:12:46.395 00:00:00.000 UDP 28.104.0.1:35124 -> 198.28.0.2:53 1 64 1 2025-10-17 14:12:46.395 00:00:00.000 UDP 28.104.0.1:43307 -> 198.28.0.2:53 1 64 1 2025-10-17 14:08:43.565 00:05:09.137 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:09:30.606 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2516 1 2025-10-17 14:13:46.692 00:00:00.000 UDP 28.104.0.1:36663 -> 198.28.0.2:53 1 64 1 2025-10-17 14:13:46.692 00:00:00.000 UDP 28.104.0.1:42748 -> 198.28.0.2:53 1 64 1 2025-10-17 14:13:46.703 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36663 1 109 1 2025-10-17 14:13:46.703 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42748 1 80 1 2025-10-17 14:13:56.870 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:14:47.390 00:00:00.000 UDP 28.104.0.1:60325 -> 198.28.0.2:53 1 64 1 2025-10-17 14:14:47.390 00:00:00.000 UDP 28.104.0.1:44311 -> 198.28.0.2:53 1 64 1 2025-10-17 14:14:47.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44311 1 80 1 2025-10-17 14:09:52.615 00:05:50.955 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 14:14:47.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60325 1 109 1 2025-10-17 14:15:47.698 00:00:00.000 UDP 28.104.0.1:59416 -> 198.28.0.2:53 1 64 1 2025-10-17 14:15:47.698 00:00:00.000 UDP 28.104.0.1:58221 -> 198.28.0.2:53 1 64 1 2025-10-17 14:15:47.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58221 1 109 1 2025-10-17 14:15:47.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59416 1 80 1 2025-10-17 14:16:48.028 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53838 1 109 1 2025-10-17 14:16:48.028 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36935 1 80 1 2025-10-17 14:16:48.018 00:00:00.000 UDP 28.104.0.1:36935 -> 198.28.0.2:53 1 64 1 2025-10-17 14:16:48.019 00:00:00.000 UDP 28.104.0.1:53838 -> 198.28.0.2:53 1 64 1 2025-10-17 14:11:52.694 00:06:00.099 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 14:12:52.693 00:05:50.897 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:12:52.606 00:05:51.024 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:17:48.319 00:00:00.000 UDP 28.104.0.1:48152 -> 198.28.0.2:53 1 64 1 2025-10-17 14:17:48.319 00:00:00.000 UDP 28.104.0.1:55717 -> 198.28.0.2:53 1 64 1 2025-10-17 14:17:48.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48152 1 80 1 2025-10-17 14:17:48.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55717 1 109 1 2025-10-17 14:18:48.664 00:00:00.000 UDP 28.104.0.1:40415 -> 198.28.0.2:53 1 64 1 2025-10-17 14:18:48.664 00:00:00.000 UDP 28.104.0.1:53647 -> 198.28.0.2:53 1 64 1 2025-10-17 14:18:48.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53647 1 109 1 2025-10-17 14:18:48.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40415 1 80 1 2025-10-17 14:14:43.570 00:05:09.135 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:13:52.547 00:06:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 14:18:56.807 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:14:50.612 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2384 1 2025-10-17 14:19:48.971 00:00:00.000 UDP 28.104.0.1:42193 -> 198.28.0.2:53 1 64 1 2025-10-17 14:19:48.971 00:00:00.000 UDP 28.104.0.1:58803 -> 198.28.0.2:53 1 64 1 2025-10-17 14:19:48.981 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42193 1 80 1 2025-10-17 14:19:48.981 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58803 1 109 1 2025-10-17 14:15:52.618 00:05:50.961 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 14:20:49.284 00:00:00.000 UDP 28.104.0.1:56972 -> 198.28.0.2:53 1 64 1 2025-10-17 14:20:49.284 00:00:00.000 UDP 28.104.0.1:33141 -> 198.28.0.2:53 1 64 1 2025-10-17 14:20:49.295 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56972 1 80 1 2025-10-17 14:20:49.294 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33141 1 109 1 2025-10-17 14:21:49.596 00:00:00.000 UDP 28.104.0.1:36222 -> 198.28.0.2:53 1 64 1 2025-10-17 14:21:49.596 00:00:00.000 UDP 28.104.0.1:41160 -> 198.28.0.2:53 1 64 1 2025-10-17 14:21:49.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41160 1 80 1 2025-10-17 14:21:49.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36222 1 109 1 2025-10-17 14:22:49.904 00:00:00.000 UDP 28.104.0.1:35806 -> 198.28.0.2:53 1 64 1 2025-10-17 14:22:49.904 00:00:00.000 UDP 28.104.0.1:34278 -> 198.28.0.2:53 1 64 1 2025-10-17 14:22:49.913 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34278 1 80 1 2025-10-17 14:22:49.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35806 1 109 1 2025-10-17 14:18:52.694 00:05:50.894 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:18:52.608 00:05:51.021 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:18:52.695 00:06:00.100 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 14:23:50.646 00:00:00.000 UDP 28.104.0.1:55842 -> 198.28.0.2:53 1 64 1 2025-10-17 14:23:50.646 00:00:00.000 UDP 28.104.0.1:59352 -> 198.28.0.2:53 1 64 1 2025-10-17 14:23:50.655 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55842 1 80 1 2025-10-17 14:23:50.655 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59352 1 109 1 2025-10-17 14:23:56.914 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:20:10.615 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2640 1 2025-10-17 14:24:50.956 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43480 1 80 1 2025-10-17 14:20:43.579 00:05:09.127 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:24:50.956 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56844 1 109 1 2025-10-17 14:24:50.945 00:00:00.000 UDP 28.104.0.1:56844 -> 198.28.0.2:53 1 64 1 2025-10-17 14:24:50.945 00:00:00.000 UDP 28.104.0.1:43480 -> 198.28.0.2:53 1 64 1 2025-10-17 14:25:51.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39843 1 109 1 2025-10-17 14:25:51.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34997 1 80 1 2025-10-17 14:25:51.247 00:00:00.000 UDP 28.104.0.1:39843 -> 198.28.0.2:53 1 64 1 2025-10-17 14:20:52.547 00:06:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 14:25:51.247 00:00:00.000 UDP 28.104.0.1:34997 -> 198.28.0.2:53 1 64 1 2025-10-17 14:21:52.620 00:05:50.959 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 14:26:51.557 00:00:00.000 UDP 28.104.0.1:44581 -> 198.28.0.2:53 1 64 1 2025-10-17 14:26:51.557 00:00:00.000 UDP 28.104.0.1:56729 -> 198.28.0.2:53 1 64 1 2025-10-17 14:26:51.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44581 1 80 1 2025-10-17 14:26:51.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56729 1 109 1 2025-10-17 14:27:51.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48402 1 109 1 2025-10-17 14:27:51.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49023 1 80 1 2025-10-17 14:27:51.860 00:00:00.000 UDP 28.104.0.1:49023 -> 198.28.0.2:53 1 64 1 2025-10-17 14:27:51.860 00:00:00.000 UDP 28.104.0.1:48402 -> 198.28.0.2:53 1 64 1 2025-10-17 14:28:52.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51196 1 109 1 2025-10-17 14:28:52.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37026 1 80 1 2025-10-17 14:28:52.182 00:00:00.000 UDP 28.104.0.1:37026 -> 198.28.0.2:53 1 64 1 2025-10-17 14:28:52.182 00:00:00.000 UDP 28.104.0.1:51196 -> 198.28.0.2:53 1 64 1 2025-10-17 14:28:57.069 00:00:00.032 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:24:52.695 00:05:50.896 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:24:52.610 00:05:51.021 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:25:30.620 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2640 1 2025-10-17 14:29:52.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41530 1 80 1 2025-10-17 14:29:52.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38695 1 109 1 2025-10-17 14:29:52.485 00:00:00.000 UDP 28.104.0.1:41530 -> 198.28.0.2:53 1 64 1 2025-10-17 14:29:52.485 00:00:00.000 UDP 28.104.0.1:38695 -> 198.28.0.2:53 1 64 1 2025-10-17 14:30:52.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44820 1 80 1 2025-10-17 14:30:52.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56605 1 109 1 2025-10-17 14:26:43.579 00:05:09.130 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:25:52.695 00:06:00.103 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 14:30:52.775 00:00:00.000 UDP 28.104.0.1:56605 -> 198.28.0.2:53 1 64 1 2025-10-17 14:30:52.775 00:00:00.000 UDP 28.104.0.1:44820 -> 198.28.0.2:53 1 64 1 2025-10-17 14:31:53.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58384 1 80 1 2025-10-17 14:31:53.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52251 1 109 1 2025-10-17 14:31:53.096 00:00:00.000 UDP 28.104.0.1:52251 -> 198.28.0.2:53 1 64 1 2025-10-17 14:31:53.095 00:00:00.000 UDP 28.104.0.1:58384 -> 198.28.0.2:53 1 64 1 2025-10-17 14:27:52.621 00:05:50.967 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 14:32:53.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58536 1 80 1 2025-10-17 14:32:53.394 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59596 1 109 1 2025-10-17 14:32:53.385 00:00:00.000 UDP 28.104.0.1:59596 -> 198.28.0.2:53 1 64 1 2025-10-17 14:27:52.549 00:06:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 14:32:53.385 00:00:00.000 UDP 28.104.0.1:58536 -> 198.28.0.2:53 1 64 1 2025-10-17 14:33:53.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40041 1 109 1 2025-10-17 14:33:53.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59528 1 80 1 2025-10-17 14:33:53.690 00:00:00.000 UDP 28.104.0.1:59528 -> 198.28.0.2:53 1 64 1 2025-10-17 14:33:53.690 00:00:00.000 UDP 28.104.0.1:40041 -> 198.28.0.2:53 1 64 1 2025-10-17 14:33:57.443 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:34:54.010 00:00:00.000 UDP 28.104.0.1:46666 -> 198.28.0.2:53 1 64 1 2025-10-17 14:34:54.021 00:00:00.000 UDP 28.104.0.1:47541 -> 198.28.0.2:53 1 64 1 2025-10-17 14:34:54.022 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46666 1 80 1 2025-10-17 14:34:54.031 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47541 1 109 1 2025-10-17 14:30:50.626 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2676 1 2025-10-17 14:30:52.699 00:05:50.899 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:30:52.611 00:05:51.027 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:35:54.288 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59576 1 80 1 2025-10-17 14:35:54.288 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60172 1 109 1 2025-10-17 14:35:54.278 00:00:00.000 UDP 28.104.0.1:60172 -> 198.28.0.2:53 1 64 1 2025-10-17 14:35:54.278 00:00:00.000 UDP 28.104.0.1:59576 -> 198.28.0.2:53 1 64 1 2025-10-17 14:32:43.582 00:05:09.129 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:36:54.938 00:00:00.000 UDP 28.104.0.1:58726 -> 198.28.0.2:53 1 64 1 2025-10-17 14:36:54.938 00:00:00.000 UDP 28.104.0.1:53682 -> 198.28.0.2:53 1 64 1 2025-10-17 14:36:54.949 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58726 1 80 1 2025-10-17 14:36:54.949 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53682 1 109 1 2025-10-17 14:32:52.699 00:06:00.101 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 14:37:55.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34084 1 109 1 2025-10-17 14:37:55.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56475 1 80 1 2025-10-17 14:37:55.244 00:00:00.000 UDP 28.104.0.1:56475 -> 198.28.0.2:53 1 64 1 2025-10-17 14:37:55.244 00:00:00.000 UDP 28.104.0.1:34084 -> 198.28.0.2:53 1 64 1 2025-10-17 14:33:52.622 00:05:50.966 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 14:38:55.560 00:00:00.000 UDP 28.104.0.1:56127 -> 198.28.0.2:53 1 64 1 2025-10-17 14:38:55.560 00:00:00.000 UDP 28.104.0.1:55184 -> 198.28.0.2:53 1 64 1 2025-10-17 14:38:57.248 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:38:55.568 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56127 1 80 1 2025-10-17 14:38:55.568 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55184 1 109 1 2025-10-17 14:34:52.549 00:06:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 14:39:55.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34368 1 80 1 2025-10-17 14:39:55.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39206 1 109 1 2025-10-17 14:39:55.850 00:00:00.000 UDP 28.104.0.1:34368 -> 198.28.0.2:53 1 64 1 2025-10-17 14:39:55.851 00:00:00.000 UDP 28.104.0.1:39206 -> 198.28.0.2:53 1 64 1 2025-10-17 14:36:10.635 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-10-17 14:40:56.163 00:00:00.000 UDP 28.104.0.1:54779 -> 198.28.0.2:53 1 64 1 2025-10-17 14:40:56.163 00:00:00.000 UDP 28.104.0.1:34299 -> 198.28.0.2:53 1 64 1 2025-10-17 14:40:56.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54779 1 80 1 2025-10-17 14:40:56.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34299 1 109 1 2025-10-17 14:36:52.700 00:05:50.898 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:36:52.614 00:05:51.025 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:41:56.418 00:00:00.000 UDP 28.104.0.1:50349 -> 198.28.0.2:53 1 64 1 2025-10-17 14:41:56.418 00:00:00.000 UDP 28.104.0.1:45227 -> 198.28.0.2:53 1 64 1 2025-10-17 14:41:56.428 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45227 1 109 1 2025-10-17 14:41:56.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50349 1 80 1 2025-10-17 14:38:43.588 00:05:09.124 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:42:56.769 00:00:00.000 UDP 28.104.0.1:37820 -> 198.28.0.2:53 1 64 1 2025-10-17 14:42:56.768 00:00:00.000 UDP 28.104.0.1:51814 -> 198.28.0.2:53 1 64 1 2025-10-17 14:42:56.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37820 1 80 1 2025-10-17 14:42:56.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51814 1 109 1 2025-10-17 14:43:57.088 00:00:00.000 UDP 28.104.0.1:39219 -> 198.28.0.2:53 1 64 1 2025-10-17 14:43:57.088 00:00:00.000 UDP 28.104.0.1:36806 -> 198.28.0.2:53 1 64 1 2025-10-17 14:43:57.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36806 1 109 1 2025-10-17 14:43:57.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39219 1 80 1 2025-10-17 14:43:57.355 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:39:52.626 00:05:50.964 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 14:39:52.701 00:06:00.100 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 14:44:57.406 00:00:00.000 UDP 28.104.0.1:35767 -> 198.28.0.2:53 1 64 1 2025-10-17 14:44:57.406 00:00:00.000 UDP 28.104.0.1:52327 -> 198.28.0.2:53 1 64 1 2025-10-17 14:44:57.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35767 1 80 1 2025-10-17 14:44:57.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52327 1 109 1 2025-10-17 14:41:30.640 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2580 1 2025-10-17 14:45:57.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49577 1 80 1 2025-10-17 14:45:57.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56174 1 109 1 2025-10-17 14:45:57.696 00:00:00.000 UDP 28.104.0.1:56174 -> 198.28.0.2:53 1 64 1 2025-10-17 14:45:57.696 00:00:00.000 UDP 28.104.0.1:49577 -> 198.28.0.2:53 1 64 1 2025-10-17 14:41:52.551 00:06:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 14:47:04.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56043 1 109 1 2025-10-17 14:47:04.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34701 1 80 1 2025-10-17 14:47:04.399 00:00:00.000 UDP 28.104.0.1:34701 -> 198.28.0.2:53 1 64 1 2025-10-17 14:47:04.398 00:00:00.000 UDP 28.104.0.1:56043 -> 198.28.0.2:53 1 64 1 2025-10-17 14:42:52.703 00:05:50.898 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:42:52.622 00:05:51.019 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:48:04.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54318 1 109 1 2025-10-17 14:48:04.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42888 1 80 1 2025-10-17 14:48:04.685 00:00:00.000 UDP 28.104.0.1:42888 -> 198.28.0.2:53 1 64 1 2025-10-17 14:48:04.685 00:00:00.000 UDP 28.104.0.1:54318 -> 198.28.0.2:53 1 64 1 2025-10-17 14:44:43.590 00:05:09.123 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:48:57.610 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:49:04.989 00:00:00.000 UDP 28.104.0.1:54067 -> 198.28.0.2:53 1 64 1 2025-10-17 14:49:04.989 00:00:00.000 UDP 28.104.0.1:48761 -> 198.28.0.2:53 1 64 1 2025-10-17 14:49:04.999 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54067 1 80 1 2025-10-17 14:49:05.000 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48761 1 109 1 2025-10-17 14:50:05.306 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32906 1 109 1 2025-10-17 14:50:05.307 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56726 1 80 1 2025-10-17 14:50:05.296 00:00:00.000 UDP 28.104.0.1:32906 -> 198.28.0.2:53 1 64 1 2025-10-17 14:50:05.296 00:00:00.000 UDP 28.104.0.1:56726 -> 198.28.0.2:53 1 64 1 2025-10-17 14:45:52.631 00:05:50.962 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 14:46:50.644 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2440 1 2025-10-17 14:51:05.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43446 1 109 1 2025-10-17 14:51:05.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60902 1 80 1 2025-10-17 14:51:05.553 00:00:00.000 UDP 28.104.0.1:60902 -> 198.28.0.2:53 1 64 1 2025-10-17 14:51:05.553 00:00:00.000 UDP 28.104.0.1:43446 -> 198.28.0.2:53 1 64 1 2025-10-17 14:46:52.702 00:06:00.102 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 14:52:05.857 00:00:00.000 UDP 28.104.0.1:42468 -> 198.28.0.2:53 1 64 1 2025-10-17 14:52:05.857 00:00:00.000 UDP 28.104.0.1:55748 -> 198.28.0.2:53 1 64 1 2025-10-17 14:52:05.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42468 1 80 1 2025-10-17 14:52:05.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55748 1 109 1 2025-10-17 14:53:06.145 00:00:00.000 UDP 28.104.0.1:37230 -> 198.28.0.2:53 1 64 1 2025-10-17 14:53:06.145 00:00:00.000 UDP 28.104.0.1:60235 -> 198.28.0.2:53 1 64 1 2025-10-17 14:53:06.156 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37230 1 80 1 2025-10-17 14:53:06.155 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60235 1 109 1 2025-10-17 14:48:52.702 00:05:50.903 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:48:52.622 00:05:51.022 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 14:48:52.551 00:06:00.153 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 14:53:57.671 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:54:06.705 00:00:00.000 UDP 28.104.0.1:58658 -> 198.28.0.2:53 1 64 1 2025-10-17 14:54:06.705 00:00:00.000 UDP 28.104.0.1:60216 -> 198.28.0.2:53 1 64 1 2025-10-17 14:54:06.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58658 1 80 1 2025-10-17 14:54:06.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60216 1 109 1 2025-10-17 14:50:43.594 00:05:09.121 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 14:55:07.036 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60420 1 80 1 2025-10-17 14:55:07.036 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48344 1 109 1 2025-10-17 14:55:07.025 00:00:00.000 UDP 28.104.0.1:48344 -> 198.28.0.2:53 1 64 1 2025-10-17 14:55:07.026 00:00:00.000 UDP 28.104.0.1:60420 -> 198.28.0.2:53 1 64 1 2025-10-17 14:56:07.318 00:00:00.000 UDP 28.104.0.1:55986 -> 198.28.0.2:53 1 64 1 2025-10-17 14:56:07.318 00:00:00.000 UDP 28.104.0.1:39398 -> 198.28.0.2:53 1 64 1 2025-10-17 14:56:07.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39398 1 109 1 2025-10-17 14:56:07.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55986 1 80 1 2025-10-17 14:52:10.649 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2800 1 2025-10-17 14:51:52.633 00:05:50.962 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 14:57:07.577 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55810 1 80 1 2025-10-17 14:57:07.577 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40733 1 109 1 2025-10-17 14:57:07.567 00:00:00.000 UDP 28.104.0.1:40733 -> 198.28.0.2:53 1 64 1 2025-10-17 14:57:07.567 00:00:00.000 UDP 28.104.0.1:55810 -> 198.28.0.2:53 1 64 1 2025-10-17 14:58:07.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55097 1 80 1 2025-10-17 14:58:07.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39626 1 109 1 2025-10-17 14:58:07.823 00:00:00.000 UDP 28.104.0.1:39626 -> 198.28.0.2:53 1 64 1 2025-10-17 14:58:07.822 00:00:00.000 UDP 28.104.0.1:55097 -> 198.28.0.2:53 1 64 1 2025-10-17 14:53:52.704 00:06:00.103 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 Summary: total flows: 316, total bytes: 94164, total packets: 1388, avg bps: 193, avg pps: 0, avg bpp: 67 Time window: 2025-10-17 13:54:52 - 2025-10-17 14:59:52 Total flows processed: 316, passed: 316, Blocks skipped: 0, Bytes read: 32928 Sys: 0.0036s User: 0.0027s Wall: 0.0039s flows/second: 80366.2 Runtime: 0.0039s