Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 00:59:13.340 00:00:00.000 UDP 28.104.0.1:48309 -> 198.28.0.2:53 1 64 1 2025-10-19 00:59:13.340 00:00:00.000 UDP 28.104.0.1:50354 -> 198.28.0.2:53 1 64 1 2025-10-19 00:59:13.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50354 1 80 1 2025-10-19 00:59:13.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48309 1 109 1 2025-10-19 00:59:38.659 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 00:54:53.430 00:05:51.024 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:00:13.630 00:00:00.000 UDP 28.104.0.1:42132 -> 198.28.0.2:53 1 64 1 2025-10-19 01:00:13.630 00:00:00.000 UDP 28.104.0.1:54665 -> 198.28.0.2:53 1 64 1 2025-10-19 01:00:13.640 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42132 1 109 1 2025-10-19 01:00:13.640 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54665 1 80 1 2025-10-19 00:55:53.457 00:05:50.947 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 00:58:53.448 00:02:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 01:01:13.927 00:00:00.000 UDP 28.104.0.1:47383 -> 198.28.0.2:53 1 64 1 2025-10-19 01:01:13.927 00:00:00.000 UDP 28.104.0.1:51226 -> 198.28.0.2:53 1 64 1 2025-10-19 01:01:13.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47383 1 80 1 2025-10-19 01:01:13.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51226 1 109 1 2025-10-19 00:57:23.465 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2660 1 2025-10-19 00:56:53.440 00:05:50.964 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:02:14.238 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41578 1 80 1 2025-10-19 01:02:14.238 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44676 1 109 1 2025-10-19 01:02:14.228 00:00:00.000 UDP 28.104.0.1:44676 -> 198.28.0.2:53 1 64 1 2025-10-19 01:02:14.228 00:00:00.000 UDP 28.104.0.1:41578 -> 198.28.0.2:53 1 64 1 2025-10-19 01:01:53.448 00:01:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 00:58:53.254 00:04:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 01:03:14.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56960 1 109 1 2025-10-19 01:03:14.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39773 1 80 1 2025-10-19 01:03:14.520 00:00:00.000 UDP 28.104.0.1:39773 -> 198.28.0.2:53 1 64 1 2025-10-19 01:03:14.520 00:00:00.000 UDP 28.104.0.1:56960 -> 198.28.0.2:53 1 64 1 2025-10-19 01:04:14.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39838 1 80 1 2025-10-19 01:04:14.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51862 1 109 1 2025-10-19 01:04:14.818 00:00:00.000 UDP 28.104.0.1:39838 -> 198.28.0.2:53 1 64 1 2025-10-19 01:04:14.818 00:00:00.000 UDP 28.104.0.1:51862 -> 198.28.0.2:53 1 64 1 2025-10-19 01:04:38.832 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 00:59:53.447 00:05:50.967 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 01:05:15.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48780 1 80 1 2025-10-19 01:05:15.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57745 1 109 1 2025-10-19 01:05:15.112 00:00:00.000 UDP 28.104.0.1:57745 -> 198.28.0.2:53 1 64 1 2025-10-19 01:05:15.112 00:00:00.000 UDP 28.104.0.1:48780 -> 198.28.0.2:53 1 64 1 2025-10-19 01:00:53.430 00:05:51.024 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:03:53.448 00:02:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 01:06:15.403 00:00:00.000 UDP 28.104.0.1:39410 -> 198.28.0.2:53 1 64 1 2025-10-19 01:06:15.403 00:00:00.000 UDP 28.104.0.1:47657 -> 198.28.0.2:53 1 64 1 2025-10-19 01:06:15.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47657 1 80 1 2025-10-19 01:06:15.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39410 1 109 1 2025-10-19 01:01:53.459 00:05:50.946 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 01:02:43.472 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2456 1 2025-10-19 01:07:15.713 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60345 1 80 1 2025-10-19 01:07:15.712 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42325 1 109 1 2025-10-19 01:07:15.702 00:00:00.000 UDP 28.104.0.1:42325 -> 198.28.0.2:53 1 64 1 2025-10-19 01:07:15.703 00:00:00.000 UDP 28.104.0.1:60345 -> 198.28.0.2:53 1 64 1 2025-10-19 01:02:53.440 00:05:50.964 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:06:53.450 00:01:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:03:53.260 00:04:00.191 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 01:08:16.022 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40301 1 80 1 2025-10-19 01:08:16.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60553 1 109 1 2025-10-19 01:08:16.007 00:00:00.000 UDP 28.104.0.1:40301 -> 198.28.0.2:53 1 64 1 2025-10-19 01:08:16.007 00:00:00.000 UDP 28.104.0.1:60553 -> 198.28.0.2:53 1 64 1 2025-10-19 01:09:16.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39981 1 109 1 2025-10-19 01:09:16.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47757 1 80 1 2025-10-19 01:09:16.311 00:00:00.000 UDP 28.104.0.1:39981 -> 198.28.0.2:53 1 64 1 2025-10-19 01:09:16.311 00:00:00.000 UDP 28.104.0.1:47757 -> 198.28.0.2:53 1 64 1 2025-10-19 01:09:38.947 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:10:16.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48060 1 109 1 2025-10-19 01:10:16.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35408 1 80 1 2025-10-19 01:10:16.599 00:00:00.000 UDP 28.104.0.1:48060 -> 198.28.0.2:53 1 64 1 2025-10-19 01:10:16.599 00:00:00.000 UDP 28.104.0.1:35408 -> 198.28.0.2:53 1 64 1 2025-10-19 01:05:53.450 00:05:50.966 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 01:08:53.453 00:02:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 01:11:16.889 00:00:00.000 UDP 28.104.0.1:45332 -> 198.28.0.2:53 1 64 1 2025-10-19 01:11:16.889 00:00:00.000 UDP 28.104.0.1:59135 -> 198.28.0.2:53 1 64 1 2025-10-19 01:11:16.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45332 1 80 1 2025-10-19 01:11:16.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59135 1 109 1 2025-10-19 01:06:53.432 00:05:51.024 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:12:17.198 00:00:00.000 UDP 28.104.0.1:36942 -> 198.28.0.2:53 1 64 1 2025-10-19 01:08:03.476 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2656 1 2025-10-19 01:12:17.198 00:00:00.000 UDP 28.104.0.1:51976 -> 198.28.0.2:53 1 64 1 2025-10-19 01:12:17.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36942 1 109 1 2025-10-19 01:12:17.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51976 1 80 1 2025-10-19 01:07:53.460 00:05:50.945 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 01:11:53.453 00:01:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:08:53.259 00:04:00.195 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 01:13:17.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50276 1 80 1 2025-10-19 01:13:17.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46130 1 109 1 2025-10-19 01:13:17.492 00:00:00.000 UDP 28.104.0.1:46130 -> 198.28.0.2:53 1 64 1 2025-10-19 01:13:17.492 00:00:00.000 UDP 28.104.0.1:50276 -> 198.28.0.2:53 1 64 1 2025-10-19 01:08:53.443 00:05:50.963 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:14:17.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59343 1 80 1 2025-10-19 01:14:17.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40337 1 109 1 2025-10-19 01:14:17.795 00:00:00.000 UDP 28.104.0.1:40337 -> 198.28.0.2:53 1 64 1 2025-10-19 01:14:17.795 00:00:00.000 UDP 28.104.0.1:59343 -> 198.28.0.2:53 1 64 1 2025-10-19 01:14:38.858 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:13:53.457 00:01:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:13:53.263 00:01:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 01:15:18.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57950 1 80 1 2025-10-19 01:15:18.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33301 1 109 1 2025-10-19 01:15:18.101 00:00:00.000 UDP 28.104.0.1:57950 -> 198.28.0.2:53 1 64 1 2025-10-19 01:15:18.100 00:00:00.000 UDP 28.104.0.1:33301 -> 198.28.0.2:53 1 64 1 2025-10-19 01:15:53.457 00:00:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-19 01:16:18.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56957 1 109 1 2025-10-19 01:16:18.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53985 1 80 1 2025-10-19 01:16:18.401 00:00:00.000 UDP 28.104.0.1:53985 -> 198.28.0.2:53 1 64 1 2025-10-19 01:16:18.401 00:00:00.000 UDP 28.104.0.1:56957 -> 198.28.0.2:53 1 64 1 2025-10-19 01:11:53.453 00:05:50.963 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 01:17:18.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33123 1 109 1 2025-10-19 01:17:18.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44709 1 80 1 2025-10-19 01:17:18.647 00:00:00.000 UDP 28.104.0.1:44709 -> 198.28.0.2:53 1 64 1 2025-10-19 01:17:18.647 00:00:00.000 UDP 28.104.0.1:33123 -> 198.28.0.2:53 1 64 1 2025-10-19 01:13:23.481 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2624 1 2025-10-19 01:12:53.433 00:05:51.026 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:16:53.458 00:01:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:15:53.264 00:02:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-19 01:18:18.944 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53279 1 109 1 2025-10-19 01:18:18.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59591 1 80 1 2025-10-19 01:18:18.936 00:00:00.000 UDP 28.104.0.1:59591 -> 198.28.0.2:53 1 64 1 2025-10-19 01:18:18.936 00:00:00.000 UDP 28.104.0.1:53279 -> 198.28.0.2:53 1 64 1 2025-10-19 01:13:53.466 00:05:50.943 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 01:19:19.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59889 1 109 1 2025-10-19 01:19:19.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50488 1 80 1 2025-10-19 01:19:19.232 00:00:00.000 UDP 28.104.0.1:59889 -> 198.28.0.2:53 1 64 1 2025-10-19 01:19:19.232 00:00:00.000 UDP 28.104.0.1:50488 -> 198.28.0.2:53 1 64 1 2025-10-19 01:19:39.718 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:14:53.445 00:05:50.965 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:18:53.458 00:01:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:18:53.263 00:01:00.195 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 01:20:19.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55032 1 109 1 2025-10-19 01:20:19.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35911 1 80 1 2025-10-19 01:20:19.554 00:00:00.000 UDP 28.104.0.1:35911 -> 198.28.0.2:53 1 64 1 2025-10-19 01:20:19.554 00:00:00.000 UDP 28.104.0.1:55032 -> 198.28.0.2:53 1 64 1 2025-10-19 01:21:19.801 00:00:00.000 UDP 28.104.0.1:46551 -> 198.28.0.2:53 1 64 1 2025-10-19 01:21:19.801 00:00:00.000 UDP 28.104.0.1:56727 -> 198.28.0.2:53 1 64 1 2025-10-19 01:21:19.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56727 1 80 1 2025-10-19 01:21:19.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46551 1 109 1 2025-10-19 01:22:20.075 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55194 1 80 1 2025-10-19 01:22:20.075 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42471 1 109 1 2025-10-19 01:22:20.065 00:00:00.000 UDP 28.104.0.1:55194 -> 198.28.0.2:53 1 64 1 2025-10-19 01:22:20.065 00:00:00.000 UDP 28.104.0.1:42471 -> 198.28.0.2:53 1 64 1 2025-10-19 01:17:53.457 00:05:50.964 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 01:20:53.459 00:02:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 01:18:43.491 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2708 1 2025-10-19 01:23:20.369 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47932 1 109 1 2025-10-19 01:23:20.369 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34457 1 80 1 2025-10-19 01:23:20.361 00:00:00.000 UDP 28.104.0.1:34457 -> 198.28.0.2:53 1 64 1 2025-10-19 01:23:20.360 00:00:00.000 UDP 28.104.0.1:47932 -> 198.28.0.2:53 1 64 1 2025-10-19 01:18:53.435 00:05:51.026 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:24:20.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37554 1 80 1 2025-10-19 01:24:20.714 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43850 1 109 1 2025-10-19 01:24:20.705 00:00:00.000 UDP 28.104.0.1:43850 -> 198.28.0.2:53 1 64 1 2025-10-19 01:24:20.705 00:00:00.000 UDP 28.104.0.1:37554 -> 198.28.0.2:53 1 64 1 2025-10-19 01:24:39.227 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:19:53.467 00:05:50.943 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 01:20:53.267 00:04:00.191 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 01:23:53.458 00:01:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:25:21.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37615 1 109 1 2025-10-19 01:25:21.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36704 1 80 1 2025-10-19 01:25:21.001 00:00:00.000 UDP 28.104.0.1:37615 -> 198.28.0.2:53 1 64 1 2025-10-19 01:25:21.001 00:00:00.000 UDP 28.104.0.1:36704 -> 198.28.0.2:53 1 64 1 2025-10-19 01:20:53.445 00:05:50.966 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:26:21.303 00:00:00.000 UDP 28.104.0.1:38886 -> 198.28.0.2:53 1 64 1 2025-10-19 01:26:21.303 00:00:00.000 UDP 28.104.0.1:40737 -> 198.28.0.2:53 1 64 1 2025-10-19 01:26:21.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38886 1 109 1 2025-10-19 01:26:21.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40737 1 80 1 2025-10-19 01:27:21.601 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39361 1 109 1 2025-10-19 01:27:21.600 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57689 1 80 1 2025-10-19 01:27:21.590 00:00:00.000 UDP 28.104.0.1:39361 -> 198.28.0.2:53 1 64 1 2025-10-19 01:27:21.589 00:00:00.000 UDP 28.104.0.1:57689 -> 198.28.0.2:53 1 64 1 2025-10-19 01:25:53.458 00:02:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 01:24:03.498 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2580 1 2025-10-19 01:28:21.891 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50386 1 109 1 2025-10-19 01:28:21.891 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34246 1 80 1 2025-10-19 01:28:21.881 00:00:00.000 UDP 28.104.0.1:34246 -> 198.28.0.2:53 1 64 1 2025-10-19 01:28:21.882 00:00:00.000 UDP 28.104.0.1:50386 -> 198.28.0.2:53 1 64 1 2025-10-19 01:23:53.458 00:05:50.964 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 01:29:22.209 00:00:00.000 UDP 28.104.0.1:43389 -> 198.28.0.2:53 1 64 1 2025-10-19 01:29:22.209 00:00:00.000 UDP 28.104.0.1:58155 -> 198.28.0.2:53 1 64 1 2025-10-19 01:29:22.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58155 1 80 1 2025-10-19 01:29:22.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43389 1 109 1 2025-10-19 01:29:39.176 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:24:53.435 00:05:51.028 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:25:53.267 00:04:00.192 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 01:28:53.459 00:01:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:30:22.497 00:00:00.000 UDP 28.104.0.1:47837 -> 198.28.0.2:53 1 64 1 2025-10-19 01:30:22.497 00:00:00.000 UDP 28.104.0.1:48013 -> 198.28.0.2:53 1 64 1 2025-10-19 01:30:22.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47837 1 80 1 2025-10-19 01:30:22.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48013 1 109 1 2025-10-19 01:25:53.468 00:05:50.945 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 01:31:22.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56584 1 80 1 2025-10-19 01:31:22.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41523 1 109 1 2025-10-19 01:31:22.789 00:00:00.000 UDP 28.104.0.1:56584 -> 198.28.0.2:53 1 64 1 2025-10-19 01:31:22.789 00:00:00.000 UDP 28.104.0.1:41523 -> 198.28.0.2:53 1 64 1 2025-10-19 01:26:53.445 00:05:50.967 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:32:23.057 00:00:00.000 UDP 28.104.0.1:53548 -> 198.28.0.2:53 1 64 1 2025-10-19 01:32:23.057 00:00:00.000 UDP 28.104.0.1:51640 -> 198.28.0.2:53 1 64 1 2025-10-19 01:32:23.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51640 1 109 1 2025-10-19 01:32:23.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53548 1 80 1 2025-10-19 01:30:53.459 00:02:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 01:33:23.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36058 1 109 1 2025-10-19 01:33:23.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54354 1 80 1 2025-10-19 01:33:23.355 00:00:00.000 UDP 28.104.0.1:54354 -> 198.28.0.2:53 1 64 1 2025-10-19 01:33:23.355 00:00:00.000 UDP 28.104.0.1:36058 -> 198.28.0.2:53 1 64 1 2025-10-19 01:29:23.508 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2440 1 2025-10-19 01:34:23.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56896 1 109 1 2025-10-19 01:34:23.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45506 1 80 1 2025-10-19 01:34:23.648 00:00:00.000 UDP 28.104.0.1:45506 -> 198.28.0.2:53 1 64 1 2025-10-19 01:34:23.648 00:00:00.000 UDP 28.104.0.1:56896 -> 198.28.0.2:53 1 64 1 2025-10-19 01:34:39.370 00:00:00.027 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:29:53.459 00:05:50.965 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 01:33:53.463 00:01:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:30:53.267 00:04:00.196 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 01:35:23.942 00:00:00.000 UDP 28.104.0.1:57981 -> 198.28.0.2:53 1 64 1 2025-10-19 01:35:23.942 00:00:00.000 UDP 28.104.0.1:51500 -> 198.28.0.2:53 1 64 1 2025-10-19 01:35:23.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57981 1 109 1 2025-10-19 01:35:23.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51500 1 80 1 2025-10-19 01:30:53.436 00:05:51.027 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:36:24.239 00:00:00.000 UDP 28.104.0.1:50098 -> 198.28.0.2:53 1 64 1 2025-10-19 01:36:24.239 00:00:00.000 UDP 28.104.0.1:50225 -> 198.28.0.2:53 1 64 1 2025-10-19 01:36:24.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50225 1 80 1 2025-10-19 01:36:24.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50098 1 109 1 2025-10-19 01:31:53.471 00:05:50.942 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 01:37:26.717 00:00:00.000 UDP 28.104.0.1:47994 -> 198.28.0.2:53 1 64 1 2025-10-19 01:37:26.717 00:00:00.000 UDP 28.104.0.1:46829 -> 198.28.0.2:53 1 64 1 2025-10-19 01:37:26.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47994 1 109 1 2025-10-19 01:37:26.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46829 1 80 1 2025-10-19 01:32:53.448 00:05:50.967 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:35:53.464 00:02:00.070 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 01:38:27.048 00:00:00.000 UDP 28.104.0.1:35039 -> 198.28.0.2:53 1 64 1 2025-10-19 01:38:27.049 00:00:00.000 UDP 28.104.0.1:45993 -> 198.28.0.2:53 1 64 1 2025-10-19 01:38:27.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35039 1 80 1 2025-10-19 01:38:27.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45993 1 109 1 2025-10-19 01:34:43.515 00:05:10.001 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-10-19 01:39:27.351 00:00:00.000 UDP 28.104.0.1:45262 -> 198.28.0.2:53 1 64 1 2025-10-19 01:39:27.351 00:00:00.000 UDP 28.104.0.1:35734 -> 198.28.0.2:53 1 64 1 2025-10-19 01:39:27.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35734 1 80 1 2025-10-19 01:39:27.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45262 1 109 1 2025-10-19 01:39:40.008 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:35:53.268 00:04:00.196 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 01:38:53.464 00:01:00.070 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:40:27.649 00:00:00.000 UDP 28.104.0.1:49466 -> 198.28.0.2:53 1 64 1 2025-10-19 01:40:27.649 00:00:00.000 UDP 28.104.0.1:53873 -> 198.28.0.2:53 1 64 1 2025-10-19 01:40:27.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53873 1 80 1 2025-10-19 01:40:27.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49466 1 109 1 2025-10-19 01:35:53.465 00:05:50.961 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 01:41:27.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50950 1 109 1 2025-10-19 01:41:27.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47731 1 80 1 2025-10-19 01:41:27.940 00:00:00.000 UDP 28.104.0.1:50950 -> 198.28.0.2:53 1 64 1 2025-10-19 01:41:27.941 00:00:00.000 UDP 28.104.0.1:47731 -> 198.28.0.2:53 1 64 1 2025-10-19 01:36:53.439 00:05:51.027 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:40:53.464 00:01:00.070 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:40:53.271 00:01:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 01:42:28.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45062 1 80 1 2025-10-19 01:42:28.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57394 1 109 1 2025-10-19 01:42:28.237 00:00:00.000 UDP 28.104.0.1:45062 -> 198.28.0.2:53 1 64 1 2025-10-19 01:42:28.237 00:00:00.000 UDP 28.104.0.1:57394 -> 198.28.0.2:53 1 64 1 2025-10-19 01:37:53.475 00:05:50.944 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 01:42:53.466 00:00:00.068 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-19 01:43:28.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53397 1 80 1 2025-10-19 01:43:28.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40014 1 109 1 2025-10-19 01:43:28.521 00:00:00.000 UDP 28.104.0.1:40014 -> 198.28.0.2:53 1 64 1 2025-10-19 01:43:28.522 00:00:00.000 UDP 28.104.0.1:53397 -> 198.28.0.2:53 1 64 1 2025-10-19 01:38:53.450 00:05:50.970 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:40:03.516 00:05:10.036 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2800 1 2025-10-19 01:44:28.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36245 1 109 1 2025-10-19 01:44:28.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46718 1 80 1 2025-10-19 01:44:28.825 00:00:00.000 UDP 28.104.0.1:36245 -> 198.28.0.2:53 1 64 1 2025-10-19 01:44:28.825 00:00:00.000 UDP 28.104.0.1:46718 -> 198.28.0.2:53 1 64 1 2025-10-19 01:44:39.638 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:42:53.271 00:02:00.195 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-19 01:43:53.466 00:01:00.069 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:45:29.130 00:00:00.000 UDP 28.104.0.1:42743 -> 198.28.0.2:53 1 64 1 2025-10-19 01:45:29.130 00:00:00.000 UDP 28.104.0.1:54676 -> 198.28.0.2:53 1 64 1 2025-10-19 01:45:29.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42743 1 80 1 2025-10-19 01:45:29.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54676 1 109 1 2025-10-19 01:46:29.430 00:00:00.000 UDP 28.104.0.1:54314 -> 198.28.0.2:53 1 64 1 2025-10-19 01:46:29.430 00:00:00.000 UDP 28.104.0.1:39339 -> 198.28.0.2:53 1 64 1 2025-10-19 01:46:29.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54314 1 109 1 2025-10-19 01:46:29.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39339 1 80 1 2025-10-19 01:41:53.465 00:05:50.966 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 01:45:53.466 00:01:00.069 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:45:53.272 00:01:00.196 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 01:47:29.722 00:00:00.000 UDP 28.104.0.1:55766 -> 198.28.0.2:53 1 64 1 2025-10-19 01:47:29.722 00:00:00.000 UDP 28.104.0.1:55672 -> 198.28.0.2:53 1 64 1 2025-10-19 01:47:29.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55766 1 80 1 2025-10-19 01:47:29.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55672 1 109 1 2025-10-19 01:42:53.440 00:05:51.032 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:47:53.469 00:00:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-19 01:48:30.024 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35640 1 109 1 2025-10-19 01:48:30.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43053 1 80 1 2025-10-19 01:48:30.008 00:00:00.000 UDP 28.104.0.1:43053 -> 198.28.0.2:53 1 64 1 2025-10-19 01:48:30.009 00:00:00.000 UDP 28.104.0.1:35640 -> 198.28.0.2:53 1 64 1 2025-10-19 01:43:53.476 00:05:50.946 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 01:49:30.285 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32891 1 109 1 2025-10-19 01:49:30.285 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47346 1 80 1 2025-10-19 01:49:30.276 00:00:00.000 UDP 28.104.0.1:47346 -> 198.28.0.2:53 1 64 1 2025-10-19 01:49:30.276 00:00:00.000 UDP 28.104.0.1:32891 -> 198.28.0.2:53 1 64 1 2025-10-19 01:45:23.522 00:05:10.027 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2692 1 2025-10-19 01:49:39.577 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:44:53.454 00:05:50.968 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:47:53.272 00:02:00.197 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-19 01:48:53.469 00:01:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:50:30.569 00:00:00.000 UDP 28.104.0.1:60777 -> 198.28.0.2:53 1 64 1 2025-10-19 01:50:30.569 00:00:00.000 UDP 28.104.0.1:35046 -> 198.28.0.2:53 1 64 1 2025-10-19 01:50:30.579 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35046 1 80 1 2025-10-19 01:50:30.579 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60777 1 109 1 2025-10-19 01:51:30.864 00:00:00.000 UDP 28.104.0.1:51607 -> 198.28.0.2:53 1 64 1 2025-10-19 01:51:30.864 00:00:00.000 UDP 28.104.0.1:36216 -> 198.28.0.2:53 1 64 1 2025-10-19 01:51:30.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36216 1 109 1 2025-10-19 01:51:30.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51607 1 80 1 2025-10-19 01:50:53.470 00:01:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:50:53.273 00:01:00.197 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 01:52:31.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38275 1 80 1 2025-10-19 01:52:31.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40452 1 109 1 2025-10-19 01:52:31.176 00:00:00.000 UDP 28.104.0.1:40452 -> 198.28.0.2:53 1 64 1 2025-10-19 01:52:31.176 00:00:00.000 UDP 28.104.0.1:38275 -> 198.28.0.2:53 1 64 1 2025-10-19 01:47:53.469 00:05:50.964 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 01:53:31.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54776 1 109 1 2025-10-19 01:53:31.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40853 1 80 1 2025-10-19 01:53:31.472 00:00:00.000 UDP 28.104.0.1:54776 -> 198.28.0.2:53 1 64 1 2025-10-19 01:53:31.472 00:00:00.000 UDP 28.104.0.1:40853 -> 198.28.0.2:53 1 64 1 2025-10-19 01:48:53.440 00:05:51.032 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:54:31.770 00:00:00.000 UDP 28.104.0.1:34916 -> 198.28.0.2:53 1 64 1 2025-10-19 01:54:31.770 00:00:00.000 UDP 28.104.0.1:34330 -> 198.28.0.2:53 1 64 1 2025-10-19 01:54:31.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34330 1 80 1 2025-10-19 01:54:31.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34916 1 109 1 2025-10-19 01:54:39.661 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:49:53.479 00:05:50.945 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 01:52:53.469 00:02:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 01:50:43.536 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2580 1 2025-10-19 01:55:32.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46433 1 80 1 2025-10-19 01:55:32.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44254 1 109 1 2025-10-19 01:55:32.040 00:00:00.000 UDP 28.104.0.1:46433 -> 198.28.0.2:53 1 64 1 2025-10-19 01:55:32.040 00:00:00.000 UDP 28.104.0.1:44254 -> 198.28.0.2:53 1 64 1 2025-10-19 01:50:53.451 00:05:50.974 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:56:32.348 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47160 1 80 1 2025-10-19 01:56:32.348 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43486 1 109 1 2025-10-19 01:56:32.336 00:00:00.000 UDP 28.104.0.1:43486 -> 198.28.0.2:53 1 64 1 2025-10-19 01:56:32.336 00:00:00.000 UDP 28.104.0.1:47160 -> 198.28.0.2:53 1 64 1 2025-10-19 01:55:53.470 00:01:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 01:52:53.272 00:04:00.198 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 01:57:32.640 00:00:00.000 UDP 28.104.0.1:39325 -> 198.28.0.2:53 1 64 1 2025-10-19 01:57:32.640 00:00:00.000 UDP 28.104.0.1:44736 -> 198.28.0.2:53 1 64 1 2025-10-19 01:57:32.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39325 1 109 1 2025-10-19 01:57:32.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44736 1 80 1 2025-10-19 01:58:32.942 00:00:00.000 UDP 28.104.0.1:36919 -> 198.28.0.2:53 1 64 1 2025-10-19 01:58:32.942 00:00:00.000 UDP 28.104.0.1:46055 -> 198.28.0.2:53 1 64 1 2025-10-19 01:58:32.954 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36919 1 109 1 2025-10-19 01:58:32.954 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46055 1 80 1 2025-10-19 01:53:53.471 00:05:50.965 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 Summary: total flows: 346, total bytes: 94690, total packets: 1392, avg bps: 194, avg pps: 0, avg bpp: 68 Time window: 2025-10-19 00:54:53 - 2025-10-19 01:59:44 Total flows processed: 346, passed: 346, Blocks skipped: 0, Bytes read: 36048 Sys: 0.0029s User: 0.0048s Wall: 0.0037s flows/second: 92293.9 Runtime: 0.0038s