Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 12:54:45.172 00:05:09.000 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 12:59:21.760 00:00:00.000 UDP 28.104.0.1:37443 -> 198.28.0.2:53 1 64 1 2025-10-20 12:59:21.760 00:00:00.000 UDP 28.104.0.1:54793 -> 198.28.0.2:53 1 64 1 2025-10-20 12:59:21.772 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37443 1 80 1 2025-10-20 12:59:21.772 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54793 1 109 1 2025-10-20 12:54:54.144 00:05:50.979 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 12:55:53.974 00:05:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:00:22.047 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:00:22.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37323 1 80 1 2025-10-20 13:00:22.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57535 1 109 1 2025-10-20 13:00:22.058 00:00:00.000 UDP 28.104.0.1:37323 -> 198.28.0.2:53 1 64 1 2025-10-20 13:00:22.058 00:00:00.000 UDP 28.104.0.1:57535 -> 198.28.0.2:53 1 64 1 2025-10-20 12:56:26.582 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2624 1 2025-10-20 13:01:22.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39521 1 109 1 2025-10-20 13:01:22.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53218 1 80 1 2025-10-20 13:01:22.525 00:00:00.000 UDP 28.104.0.1:39521 -> 198.28.0.2:53 1 64 1 2025-10-20 13:01:22.525 00:00:00.000 UDP 28.104.0.1:53218 -> 198.28.0.2:53 1 64 1 2025-10-20 12:56:54.181 00:05:50.942 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:02:22.830 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45900 1 80 1 2025-10-20 13:02:22.830 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55589 1 109 1 2025-10-20 13:02:22.819 00:00:00.000 UDP 28.104.0.1:45900 -> 198.28.0.2:53 1 64 1 2025-10-20 13:02:22.819 00:00:00.000 UDP 28.104.0.1:55589 -> 198.28.0.2:53 1 64 1 2025-10-20 13:03:23.135 00:00:00.000 UDP 28.104.0.1:43604 -> 198.28.0.2:53 1 64 1 2025-10-20 13:03:23.135 00:00:00.000 UDP 28.104.0.1:44518 -> 198.28.0.2:53 1 64 1 2025-10-20 13:03:23.147 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44518 1 109 1 2025-10-20 13:03:23.146 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43604 1 80 1 2025-10-20 12:58:54.135 00:06:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-20 12:59:45.133 00:05:09.002 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:04:23.439 00:00:00.000 UDP 28.104.0.1:40285 -> 198.28.0.2:53 1 64 1 2025-10-20 13:04:23.439 00:00:00.000 UDP 28.104.0.1:52788 -> 198.28.0.2:53 1 64 1 2025-10-20 13:04:23.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40285 1 109 1 2025-10-20 13:04:23.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52788 1 80 1 2025-10-20 13:00:45.174 00:05:09.000 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 13:05:23.740 00:00:00.000 UDP 28.104.0.1:60147 -> 198.28.0.2:53 1 64 1 2025-10-20 13:05:23.740 00:00:00.000 UDP 28.104.0.1:40352 -> 198.28.0.2:53 1 64 1 2025-10-20 13:05:22.184 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:05:23.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40352 1 109 1 2025-10-20 13:05:23.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60147 1 80 1 2025-10-20 13:00:54.146 00:05:50.980 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 13:01:53.975 00:05:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:01:46.592 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2612 1 2025-10-20 13:06:24.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47056 1 109 1 2025-10-20 13:06:24.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56197 1 80 1 2025-10-20 13:06:24.049 00:00:00.000 UDP 28.104.0.1:47056 -> 198.28.0.2:53 1 64 1 2025-10-20 13:06:24.049 00:00:00.000 UDP 28.104.0.1:56197 -> 198.28.0.2:53 1 64 1 2025-10-20 13:07:24.338 00:00:00.000 UDP 28.104.0.1:43913 -> 198.28.0.2:53 1 64 1 2025-10-20 13:07:24.339 00:00:00.000 UDP 28.104.0.1:48769 -> 198.28.0.2:53 1 64 1 2025-10-20 13:07:24.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48769 1 109 1 2025-10-20 13:07:24.348 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43913 1 80 1 2025-10-20 13:02:54.184 00:05:50.941 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:08:24.634 00:00:00.000 UDP 28.104.0.1:56410 -> 198.28.0.2:53 1 64 1 2025-10-20 13:08:24.634 00:00:00.000 UDP 28.104.0.1:36123 -> 198.28.0.2:53 1 64 1 2025-10-20 13:08:24.644 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56410 1 80 1 2025-10-20 13:08:24.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36123 1 109 1 2025-10-20 13:09:24.927 00:00:00.000 UDP 28.104.0.1:60278 -> 198.28.0.2:53 1 64 1 2025-10-20 13:09:24.927 00:00:00.000 UDP 28.104.0.1:33948 -> 198.28.0.2:53 1 64 1 2025-10-20 13:09:24.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33948 1 109 1 2025-10-20 13:09:24.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60278 1 80 1 2025-10-20 13:05:45.134 00:05:09.004 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:10:22.475 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:10:26.476 00:00:00.000 UDP 28.104.0.1:47056 -> 198.28.0.2:53 1 64 1 2025-10-20 13:10:26.476 00:00:00.000 UDP 28.104.0.1:37492 -> 198.28.0.2:53 1 64 1 2025-10-20 13:10:26.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47056 1 109 1 2025-10-20 13:10:26.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37492 1 80 1 2025-10-20 13:05:54.136 00:06:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-20 13:06:45.175 00:05:09.001 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 13:07:06.601 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2660 1 2025-10-20 13:11:26.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40122 1 80 1 2025-10-20 13:11:26.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50879 1 109 1 2025-10-20 13:11:26.772 00:00:00.000 UDP 28.104.0.1:50879 -> 198.28.0.2:53 1 64 1 2025-10-20 13:11:26.772 00:00:00.000 UDP 28.104.0.1:40122 -> 198.28.0.2:53 1 64 1 2025-10-20 13:06:54.147 00:05:50.980 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 13:07:53.976 00:05:00.161 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:12:27.793 00:00:00.000 UDP 28.104.0.1:47632 -> 198.28.0.2:53 1 64 1 2025-10-20 13:12:27.794 00:00:00.000 UDP 28.104.0.1:39267 -> 198.28.0.2:53 1 64 1 2025-10-20 13:12:27.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47632 1 80 1 2025-10-20 13:12:27.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39267 1 109 1 2025-10-20 13:13:28.099 00:00:00.000 UDP 28.104.0.1:36450 -> 198.28.0.2:53 1 64 1 2025-10-20 13:13:28.099 00:00:00.000 UDP 28.104.0.1:39727 -> 198.28.0.2:53 1 64 1 2025-10-20 13:13:28.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36450 1 109 1 2025-10-20 13:13:28.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39727 1 80 1 2025-10-20 13:08:54.186 00:05:50.943 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:14:28.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57981 1 80 1 2025-10-20 13:14:28.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46156 1 109 1 2025-10-20 13:14:28.400 00:00:00.000 UDP 28.104.0.1:46156 -> 198.28.0.2:53 1 64 1 2025-10-20 13:14:28.400 00:00:00.000 UDP 28.104.0.1:57981 -> 198.28.0.2:53 1 64 1 2025-10-20 13:15:22.460 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:15:28.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35864 1 109 1 2025-10-20 13:15:28.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37109 1 80 1 2025-10-20 13:15:28.705 00:00:00.000 UDP 28.104.0.1:37109 -> 198.28.0.2:53 1 64 1 2025-10-20 13:15:28.705 00:00:00.000 UDP 28.104.0.1:35864 -> 198.28.0.2:53 1 64 1 2025-10-20 13:11:45.136 00:05:09.004 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:16:29.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43889 1 109 1 2025-10-20 13:16:29.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44637 1 80 1 2025-10-20 13:16:29.006 00:00:00.000 UDP 28.104.0.1:43889 -> 198.28.0.2:53 1 64 1 2025-10-20 13:16:29.006 00:00:00.000 UDP 28.104.0.1:44637 -> 198.28.0.2:53 1 64 1 2025-10-20 13:12:26.607 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2400 1 2025-10-20 13:12:45.176 00:05:09.002 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 13:17:29.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47001 1 80 1 2025-10-20 13:17:29.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56553 1 109 1 2025-10-20 13:17:29.312 00:00:00.000 UDP 28.104.0.1:56553 -> 198.28.0.2:53 1 64 1 2025-10-20 13:17:29.312 00:00:00.000 UDP 28.104.0.1:47001 -> 198.28.0.2:53 1 64 1 2025-10-20 13:12:54.147 00:05:50.985 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 13:12:54.138 00:06:00.065 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-20 13:13:53.977 00:05:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:18:29.579 00:00:00.000 UDP 28.104.0.1:57257 -> 198.28.0.2:53 1 64 1 2025-10-20 13:18:29.579 00:00:00.000 UDP 28.104.0.1:56572 -> 198.28.0.2:53 1 64 1 2025-10-20 13:18:29.591 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56572 1 109 1 2025-10-20 13:18:29.590 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57257 1 80 1 2025-10-20 13:19:29.873 00:00:00.000 UDP 28.104.0.1:44696 -> 198.28.0.2:53 1 64 1 2025-10-20 13:19:29.873 00:00:00.000 UDP 28.104.0.1:46838 -> 198.28.0.2:53 1 64 1 2025-10-20 13:19:29.883 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44696 1 109 1 2025-10-20 13:19:29.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46838 1 80 1 2025-10-20 13:14:54.187 00:05:50.945 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:20:22.281 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:20:30.191 00:00:00.000 UDP 28.104.0.1:54587 -> 198.28.0.2:53 1 64 1 2025-10-20 13:20:30.191 00:00:00.000 UDP 28.104.0.1:48635 -> 198.28.0.2:53 1 64 1 2025-10-20 13:20:30.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48635 1 109 1 2025-10-20 13:20:30.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54587 1 80 1 2025-10-20 13:21:30.489 00:00:00.000 UDP 28.104.0.1:50110 -> 198.28.0.2:53 1 64 1 2025-10-20 13:21:30.488 00:00:00.000 UDP 28.104.0.1:37571 -> 198.28.0.2:53 1 64 1 2025-10-20 13:21:30.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50110 1 109 1 2025-10-20 13:21:30.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37571 1 80 1 2025-10-20 13:17:46.614 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2696 1 2025-10-20 13:17:45.138 00:05:09.002 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:22:30.808 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59343 1 80 1 2025-10-20 13:22:30.808 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58933 1 109 1 2025-10-20 13:22:30.797 00:00:00.000 UDP 28.104.0.1:58933 -> 198.28.0.2:53 1 64 1 2025-10-20 13:22:30.798 00:00:00.000 UDP 28.104.0.1:59343 -> 198.28.0.2:53 1 64 1 2025-10-20 13:18:45.183 00:05:08.997 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 13:23:31.091 00:00:00.000 UDP 28.104.0.1:55564 -> 198.28.0.2:53 1 64 1 2025-10-20 13:23:31.091 00:00:00.000 UDP 28.104.0.1:41308 -> 198.28.0.2:53 1 64 1 2025-10-20 13:23:31.101 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55564 1 109 1 2025-10-20 13:23:31.101 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41308 1 80 1 2025-10-20 13:18:54.150 00:05:50.983 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 13:19:53.979 00:05:00.161 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:24:31.392 00:00:00.000 UDP 28.104.0.1:48961 -> 198.28.0.2:53 1 64 1 2025-10-20 13:24:31.392 00:00:00.000 UDP 28.104.0.1:35854 -> 198.28.0.2:53 1 64 1 2025-10-20 13:24:31.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48961 1 109 1 2025-10-20 13:24:31.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35854 1 80 1 2025-10-20 13:19:54.142 00:06:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-20 13:25:22.585 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:25:31.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47698 1 80 1 2025-10-20 13:25:31.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54393 1 109 1 2025-10-20 13:25:31.695 00:00:00.000 UDP 28.104.0.1:47698 -> 198.28.0.2:53 1 64 1 2025-10-20 13:25:31.695 00:00:00.000 UDP 28.104.0.1:54393 -> 198.28.0.2:53 1 64 1 2025-10-20 13:20:54.190 00:05:50.944 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:26:31.990 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44099 1 109 1 2025-10-20 13:26:31.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51785 1 80 1 2025-10-20 13:26:31.981 00:00:00.000 UDP 28.104.0.1:44099 -> 198.28.0.2:53 1 64 1 2025-10-20 13:26:31.981 00:00:00.000 UDP 28.104.0.1:51785 -> 198.28.0.2:53 1 64 1 2025-10-20 13:23:06.622 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2528 1 2025-10-20 13:27:32.286 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49830 1 109 1 2025-10-20 13:27:32.286 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39373 1 80 1 2025-10-20 13:27:32.276 00:00:00.000 UDP 28.104.0.1:39373 -> 198.28.0.2:53 1 64 1 2025-10-20 13:27:32.276 00:00:00.000 UDP 28.104.0.1:49830 -> 198.28.0.2:53 1 64 1 2025-10-20 13:23:45.143 00:05:08.998 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:28:32.569 00:00:00.000 UDP 28.104.0.1:42291 -> 198.28.0.2:53 1 64 1 2025-10-20 13:28:32.568 00:00:00.000 UDP 28.104.0.1:49387 -> 198.28.0.2:53 1 64 1 2025-10-20 13:28:32.579 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49387 1 80 1 2025-10-20 13:28:32.579 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42291 1 109 1 2025-10-20 13:24:45.183 00:05:08.998 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 13:29:32.864 00:00:00.000 UDP 28.104.0.1:55959 -> 198.28.0.2:53 1 64 1 2025-10-20 13:29:32.864 00:00:00.000 UDP 28.104.0.1:53686 -> 198.28.0.2:53 1 64 1 2025-10-20 13:29:32.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53686 1 109 1 2025-10-20 13:29:32.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55959 1 80 1 2025-10-20 13:24:54.150 00:05:50.984 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 13:25:53.979 00:05:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:30:22.622 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:30:33.185 00:00:00.000 UDP 28.104.0.1:40357 -> 198.28.0.2:53 1 64 1 2025-10-20 13:30:33.185 00:00:00.000 UDP 28.104.0.1:55961 -> 198.28.0.2:53 1 64 1 2025-10-20 13:30:33.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40357 1 109 1 2025-10-20 13:30:33.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55961 1 80 1 2025-10-20 13:31:33.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53908 1 109 1 2025-10-20 13:31:33.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49349 1 80 1 2025-10-20 13:31:33.483 00:00:00.000 UDP 28.104.0.1:49349 -> 198.28.0.2:53 1 64 1 2025-10-20 13:31:33.484 00:00:00.000 UDP 28.104.0.1:53908 -> 198.28.0.2:53 1 64 1 2025-10-20 13:26:54.191 00:05:50.942 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:26:54.141 00:06:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-20 13:32:33.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42496 1 80 1 2025-10-20 13:32:33.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35137 1 109 1 2025-10-20 13:32:33.773 00:00:00.000 UDP 28.104.0.1:35137 -> 198.28.0.2:53 1 64 1 2025-10-20 13:32:33.773 00:00:00.000 UDP 28.104.0.1:42496 -> 198.28.0.2:53 1 64 1 2025-10-20 13:28:26.628 00:05:10.022 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2692 1 2025-10-20 13:33:34.098 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50408 1 80 1 2025-10-20 13:33:34.098 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34788 1 109 1 2025-10-20 13:33:34.088 00:00:00.000 UDP 28.104.0.1:50408 -> 198.28.0.2:53 1 64 1 2025-10-20 13:33:34.088 00:00:00.000 UDP 28.104.0.1:34788 -> 198.28.0.2:53 1 64 1 2025-10-20 13:29:45.144 00:05:08.998 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:34:34.384 00:00:00.000 UDP 28.104.0.1:43386 -> 198.28.0.2:53 1 64 1 2025-10-20 13:34:34.384 00:00:00.000 UDP 28.104.0.1:38488 -> 198.28.0.2:53 1 64 1 2025-10-20 13:34:34.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43386 1 109 1 2025-10-20 13:34:34.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38488 1 80 1 2025-10-20 13:30:45.184 00:05:08.998 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 13:35:22.935 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:35:34.633 00:00:00.000 UDP 28.104.0.1:52999 -> 198.28.0.2:53 1 64 1 2025-10-20 13:35:34.634 00:00:00.000 UDP 28.104.0.1:34742 -> 198.28.0.2:53 1 64 1 2025-10-20 13:35:34.644 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34742 1 109 1 2025-10-20 13:35:34.643 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52999 1 80 1 2025-10-20 13:30:54.151 00:05:50.984 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 13:31:53.981 00:05:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:36:34.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37481 1 80 1 2025-10-20 13:36:34.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58574 1 109 1 2025-10-20 13:36:34.927 00:00:00.000 UDP 28.104.0.1:37481 -> 198.28.0.2:53 1 64 1 2025-10-20 13:36:34.927 00:00:00.000 UDP 28.104.0.1:58574 -> 198.28.0.2:53 1 64 1 2025-10-20 13:37:35.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48650 1 109 1 2025-10-20 13:37:35.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35036 1 80 1 2025-10-20 13:37:35.237 00:00:00.000 UDP 28.104.0.1:35036 -> 198.28.0.2:53 1 64 1 2025-10-20 13:37:35.236 00:00:00.000 UDP 28.104.0.1:48650 -> 198.28.0.2:53 1 64 1 2025-10-20 13:32:54.193 00:05:50.944 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:33:46.638 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2596 1 2025-10-20 13:38:35.528 00:00:00.000 UDP 28.104.0.1:40592 -> 198.28.0.2:53 1 64 1 2025-10-20 13:38:35.528 00:00:00.000 UDP 28.104.0.1:60209 -> 198.28.0.2:53 1 64 1 2025-10-20 13:38:35.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40592 1 80 1 2025-10-20 13:38:35.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60209 1 109 1 2025-10-20 13:33:54.142 00:06:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-20 13:39:35.824 00:00:00.000 UDP 28.104.0.1:36055 -> 198.28.0.2:53 1 64 1 2025-10-20 13:39:35.825 00:00:00.000 UDP 28.104.0.1:53896 -> 198.28.0.2:53 1 64 1 2025-10-20 13:39:35.835 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53896 1 109 1 2025-10-20 13:39:35.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36055 1 80 1 2025-10-20 13:35:45.145 00:05:08.999 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:40:22.696 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:40:36.122 00:00:00.000 UDP 28.104.0.1:51451 -> 198.28.0.2:53 1 64 1 2025-10-20 13:40:36.123 00:00:00.000 UDP 28.104.0.1:60510 -> 198.28.0.2:53 1 64 1 2025-10-20 13:40:36.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51451 1 109 1 2025-10-20 13:40:36.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60510 1 80 1 2025-10-20 13:36:45.186 00:05:08.998 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 13:41:36.415 00:00:00.000 UDP 28.104.0.1:45804 -> 198.28.0.2:53 1 64 1 2025-10-20 13:41:36.415 00:00:00.000 UDP 28.104.0.1:41979 -> 198.28.0.2:53 1 64 1 2025-10-20 13:41:36.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45804 1 80 1 2025-10-20 13:41:36.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41979 1 109 1 2025-10-20 13:36:54.154 00:05:50.983 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 13:37:53.986 00:05:00.159 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:42:37.589 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41820 1 80 1 2025-10-20 13:42:37.587 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58469 1 109 1 2025-10-20 13:42:37.575 00:00:00.000 UDP 28.104.0.1:41820 -> 198.28.0.2:53 1 64 1 2025-10-20 13:42:37.575 00:00:00.000 UDP 28.104.0.1:58469 -> 198.28.0.2:53 1 64 1 2025-10-20 13:39:06.644 00:05:10.001 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2544 1 2025-10-20 13:43:37.870 00:00:00.000 UDP 28.104.0.1:34746 -> 198.28.0.2:53 1 64 1 2025-10-20 13:43:37.870 00:00:00.000 UDP 28.104.0.1:48595 -> 198.28.0.2:53 1 64 1 2025-10-20 13:43:37.880 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48595 1 109 1 2025-10-20 13:43:37.880 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34746 1 80 1 2025-10-20 13:38:54.193 00:05:50.943 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:44:38.180 00:00:00.000 UDP 28.104.0.1:48139 -> 198.28.0.2:53 1 64 1 2025-10-20 13:44:38.180 00:00:00.000 UDP 28.104.0.1:40774 -> 198.28.0.2:53 1 64 1 2025-10-20 13:44:38.190 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48139 1 80 1 2025-10-20 13:44:38.190 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40774 1 109 1 2025-10-20 13:45:22.883 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:45:38.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39855 1 80 1 2025-10-20 13:45:38.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60219 1 109 1 2025-10-20 13:45:38.440 00:00:00.000 UDP 28.104.0.1:60219 -> 198.28.0.2:53 1 64 1 2025-10-20 13:45:38.440 00:00:00.000 UDP 28.104.0.1:39855 -> 198.28.0.2:53 1 64 1 2025-10-20 13:40:54.143 00:06:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-20 13:41:45.146 00:05:08.999 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:46:38.735 00:00:00.000 UDP 28.104.0.1:49553 -> 198.28.0.2:53 1 64 1 2025-10-20 13:46:38.735 00:00:00.000 UDP 28.104.0.1:54098 -> 198.28.0.2:53 1 64 1 2025-10-20 13:46:38.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49553 1 80 1 2025-10-20 13:46:38.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54098 1 109 1 2025-10-20 13:42:45.187 00:05:08.999 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 13:47:39.055 00:00:00.000 UDP 28.104.0.1:50663 -> 198.28.0.2:53 1 64 1 2025-10-20 13:47:39.055 00:00:00.000 UDP 28.104.0.1:40975 -> 198.28.0.2:53 1 64 1 2025-10-20 13:47:39.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50663 1 109 1 2025-10-20 13:47:39.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40975 1 80 1 2025-10-20 13:42:54.154 00:05:50.988 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 13:43:53.986 00:05:00.159 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:44:26.645 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2456 1 2025-10-20 13:48:39.305 00:00:00.000 UDP 28.104.0.1:58801 -> 198.28.0.2:53 1 64 1 2025-10-20 13:48:39.305 00:00:00.000 UDP 28.104.0.1:54456 -> 198.28.0.2:53 1 64 1 2025-10-20 13:48:39.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54456 1 109 1 2025-10-20 13:48:39.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58801 1 80 1 2025-10-20 13:49:39.646 00:00:00.000 UDP 28.104.0.1:34693 -> 198.28.0.2:53 1 64 1 2025-10-20 13:49:39.646 00:00:00.000 UDP 28.104.0.1:56503 -> 198.28.0.2:53 1 64 1 2025-10-20 13:49:39.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56503 1 80 1 2025-10-20 13:49:39.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34693 1 109 1 2025-10-20 13:44:54.194 00:05:50.949 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:50:22.913 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:50:39.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44776 1 80 1 2025-10-20 13:50:39.949 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37066 1 109 1 2025-10-20 13:50:39.937 00:00:00.000 UDP 28.104.0.1:44776 -> 198.28.0.2:53 1 64 1 2025-10-20 13:50:39.937 00:00:00.000 UDP 28.104.0.1:37066 -> 198.28.0.2:53 1 64 1 2025-10-20 13:51:40.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52042 1 109 1 2025-10-20 13:51:40.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52522 1 80 1 2025-10-20 13:51:40.230 00:00:00.000 UDP 28.104.0.1:52042 -> 198.28.0.2:53 1 64 1 2025-10-20 13:51:40.230 00:00:00.000 UDP 28.104.0.1:52522 -> 198.28.0.2:53 1 64 1 2025-10-20 13:47:45.151 00:05:08.995 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:52:40.527 00:00:00.000 UDP 28.104.0.1:41394 -> 198.28.0.2:53 1 64 1 2025-10-20 13:52:40.527 00:00:00.000 UDP 28.104.0.1:51931 -> 198.28.0.2:53 1 64 1 2025-10-20 13:52:40.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51931 1 80 1 2025-10-20 13:52:40.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41394 1 109 1 2025-10-20 13:47:54.145 00:06:00.068 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-20 13:48:45.192 00:05:08.997 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-20 13:53:44.805 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36215 1 80 1 2025-10-20 13:53:44.805 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47398 1 109 1 2025-10-20 13:48:54.155 00:05:50.989 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-20 13:53:44.795 00:00:00.000 UDP 28.104.0.1:47398 -> 198.28.0.2:53 1 64 1 2025-10-20 13:53:44.795 00:00:00.000 UDP 28.104.0.1:36215 -> 198.28.0.2:53 1 64 1 2025-10-20 13:49:53.988 00:05:00.160 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-20 13:49:46.652 00:05:11.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2704 1 2025-10-20 13:54:45.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33296 1 109 1 2025-10-20 13:54:45.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58294 1 80 1 2025-10-20 13:54:45.103 00:00:00.000 UDP 28.104.0.1:58294 -> 198.28.0.2:53 1 64 1 2025-10-20 13:54:45.103 00:00:00.000 UDP 28.104.0.1:33296 -> 198.28.0.2:53 1 64 1 2025-10-20 13:55:23.054 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-20 13:50:54.199 00:05:50.946 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-20 13:55:45.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42374 1 109 1 2025-10-20 13:55:45.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41570 1 80 1 2025-10-20 13:55:45.405 00:00:00.000 UDP 28.104.0.1:42374 -> 198.28.0.2:53 1 64 1 2025-10-20 13:55:45.405 00:00:00.000 UDP 28.104.0.1:41570 -> 198.28.0.2:53 1 64 1 2025-10-20 13:56:45.707 00:00:00.000 UDP 28.104.0.1:34969 -> 198.28.0.2:53 1 64 1 2025-10-20 13:56:45.707 00:00:00.000 UDP 28.104.0.1:43543 -> 198.28.0.2:53 1 64 1 2025-10-20 13:56:45.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43543 1 80 1 2025-10-20 13:56:45.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34969 1 109 1 2025-10-20 13:57:46.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59875 1 109 1 2025-10-20 13:57:46.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41955 1 80 1 2025-10-20 13:57:46.004 00:00:00.000 UDP 28.104.0.1:41955 -> 198.28.0.2:53 1 64 1 2025-10-20 13:57:46.004 00:00:00.000 UDP 28.104.0.1:59875 -> 198.28.0.2:53 1 64 1 2025-10-20 13:53:45.153 00:05:08.994 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-20 13:58:46.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41720 1 80 1 2025-10-20 13:58:46.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50303 1 109 1 2025-10-20 13:58:46.301 00:00:00.000 UDP 28.104.0.1:50303 -> 198.28.0.2:53 1 64 1 2025-10-20 13:58:46.301 00:00:00.000 UDP 28.104.0.1:41720 -> 198.28.0.2:53 1 64 1 Summary: total flows: 321, total bytes: 94344, total packets: 1388, avg bps: 196, avg pps: 0, avg bpp: 67 Time window: 2025-10-20 12:54:45 - 2025-10-20 13:58:54 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0023s User: 0.0045s Wall: 0.0040s flows/second: 80732.2 Runtime: 0.0040s