Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 04:59:10.946 00:00:00.000 UDP 28.104.0.1:50696 -> 198.28.0.2:53 1 64 1 2025-11-16 04:59:10.946 00:00:00.000 UDP 28.104.0.1:34795 -> 198.28.0.2:53 1 64 1 2025-11-16 04:59:10.957 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50696 1 109 1 2025-11-16 04:59:10.957 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34795 1 80 1 2025-11-16 04:55:29.904 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2576 1 2025-11-16 04:55:07.452 00:05:50.918 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:00:11.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59420 1 80 1 2025-11-16 05:00:11.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47393 1 109 1 2025-11-16 05:00:11.240 00:00:00.000 UDP 28.104.0.1:47393 -> 198.28.0.2:53 1 64 1 2025-11-16 05:00:11.240 00:00:00.000 UDP 28.104.0.1:59420 -> 198.28.0.2:53 1 64 1 2025-11-16 04:56:58.359 00:05:09.280 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:01:11.531 00:00:00.000 UDP 28.104.0.1:57801 -> 198.28.0.2:53 1 64 1 2025-11-16 05:01:11.531 00:00:00.000 UDP 28.104.0.1:41433 -> 198.28.0.2:53 1 64 1 2025-11-16 05:01:11.543 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57801 1 80 1 2025-11-16 05:01:11.543 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41433 1 109 1 2025-11-16 05:02:11.826 00:00:00.000 UDP 28.104.0.1:56410 -> 198.28.0.2:53 1 64 1 2025-11-16 05:02:11.826 00:00:00.000 UDP 28.104.0.1:44918 -> 198.28.0.2:53 1 64 1 2025-11-16 05:02:11.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56410 1 109 1 2025-11-16 05:02:11.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44918 1 80 1 2025-11-16 05:03:12.566 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:03:12.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36055 1 109 1 2025-11-16 05:03:12.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37583 1 80 1 2025-11-16 05:03:12.095 00:00:00.000 UDP 28.104.0.1:37583 -> 198.28.0.2:53 1 64 1 2025-11-16 05:03:12.095 00:00:00.000 UDP 28.104.0.1:36055 -> 198.28.0.2:53 1 64 1 2025-11-16 04:59:07.464 00:05:50.897 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 04:59:07.453 00:06:00.312 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-16 04:59:58.409 00:05:09.220 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 04:59:07.453 00:06:00.003 TCP 28.154.0.1:179 -> 28.155.0.1:36643 7 497 1 2025-11-16 05:04:12.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33780 1 109 1 2025-11-16 05:04:12.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39982 1 80 1 2025-11-16 05:04:12.379 00:00:00.000 UDP 28.104.0.1:39982 -> 198.28.0.2:53 1 64 1 2025-11-16 05:04:12.379 00:00:00.000 UDP 28.104.0.1:33780 -> 198.28.0.2:53 1 64 1 2025-11-16 05:00:49.916 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-16 05:05:12.684 00:00:00.000 UDP 28.104.0.1:59207 -> 198.28.0.2:53 1 64 1 2025-11-16 05:05:12.684 00:00:00.000 UDP 28.104.0.1:49418 -> 198.28.0.2:53 1 64 1 2025-11-16 05:05:12.695 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59207 1 80 1 2025-11-16 05:05:12.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49418 1 109 1 2025-11-16 05:01:07.454 00:05:50.918 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:06:12.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36032 1 80 1 2025-11-16 05:06:12.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57210 1 109 1 2025-11-16 05:06:12.985 00:00:00.000 UDP 28.104.0.1:57210 -> 198.28.0.2:53 1 64 1 2025-11-16 05:06:12.985 00:00:00.000 UDP 28.104.0.1:36032 -> 198.28.0.2:53 1 64 1 2025-11-16 05:02:58.360 00:05:09.280 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:07:13.250 00:00:00.000 UDP 28.104.0.1:35709 -> 198.28.0.2:53 1 64 1 2025-11-16 05:07:13.250 00:00:00.000 UDP 28.104.0.1:34597 -> 198.28.0.2:53 1 64 1 2025-11-16 05:07:13.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35709 1 109 1 2025-11-16 05:07:13.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34597 1 80 1 2025-11-16 05:08:12.599 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:08:13.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50308 1 109 1 2025-11-16 05:08:13.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55047 1 80 1 2025-11-16 05:08:13.544 00:00:00.000 UDP 28.104.0.1:50308 -> 198.28.0.2:53 1 64 1 2025-11-16 05:08:13.544 00:00:00.000 UDP 28.104.0.1:55047 -> 198.28.0.2:53 1 64 1 2025-11-16 05:09:13.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46520 1 80 1 2025-11-16 05:09:13.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34611 1 109 1 2025-11-16 05:09:13.839 00:00:00.000 UDP 28.104.0.1:34611 -> 198.28.0.2:53 1 64 1 2025-11-16 05:09:13.839 00:00:00.000 UDP 28.104.0.1:46520 -> 198.28.0.2:53 1 64 1 2025-11-16 05:05:07.467 00:05:50.896 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 05:05:58.412 00:05:09.229 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 05:10:14.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38000 1 109 1 2025-11-16 05:10:14.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44282 1 80 1 2025-11-16 05:10:14.138 00:00:00.000 UDP 28.104.0.1:44282 -> 198.28.0.2:53 1 64 1 2025-11-16 05:10:14.138 00:00:00.000 UDP 28.104.0.1:38000 -> 198.28.0.2:53 1 64 1 2025-11-16 05:06:09.926 00:05:10.012 OSPF 28.0.2.2:0 -> 224.0.0.5:0 32 2176 1 2025-11-16 05:06:07.456 00:06:00.310 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-16 05:06:07.456 00:06:00.002 TCP 28.154.0.1:179 -> 28.155.0.1:36643 7 497 1 2025-11-16 05:11:14.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44432 1 109 1 2025-11-16 05:11:14.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52482 1 80 1 2025-11-16 05:11:14.398 00:00:00.000 UDP 28.104.0.1:44432 -> 198.28.0.2:53 1 64 1 2025-11-16 05:11:14.398 00:00:00.000 UDP 28.104.0.1:52482 -> 198.28.0.2:53 1 64 1 2025-11-16 05:07:07.457 00:05:50.916 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:12:14.695 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51019 1 80 1 2025-11-16 05:12:14.693 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34676 1 109 1 2025-11-16 05:12:14.684 00:00:00.000 UDP 28.104.0.1:34676 -> 198.28.0.2:53 1 64 1 2025-11-16 05:12:14.684 00:00:00.000 UDP 28.104.0.1:51019 -> 198.28.0.2:53 1 64 1 2025-11-16 05:08:58.361 00:05:09.300 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:13:12.646 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:13:14.989 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50516 1 109 1 2025-11-16 05:13:14.990 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52849 1 80 1 2025-11-16 05:13:14.979 00:00:00.000 UDP 28.104.0.1:50516 -> 198.28.0.2:53 1 64 1 2025-11-16 05:13:14.979 00:00:00.000 UDP 28.104.0.1:52849 -> 198.28.0.2:53 1 64 1 2025-11-16 05:14:15.267 00:00:00.000 UDP 28.104.0.1:38167 -> 198.28.0.2:53 1 64 1 2025-11-16 05:14:15.267 00:00:00.000 UDP 28.104.0.1:51921 -> 198.28.0.2:53 1 64 1 2025-11-16 05:14:15.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38167 1 109 1 2025-11-16 05:14:15.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51921 1 80 1 2025-11-16 05:15:15.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47762 1 80 1 2025-11-16 05:15:15.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55193 1 109 1 2025-11-16 05:15:15.527 00:00:00.000 UDP 28.104.0.1:55193 -> 198.28.0.2:53 1 64 1 2025-11-16 05:15:15.527 00:00:00.000 UDP 28.104.0.1:47762 -> 198.28.0.2:53 1 64 1 2025-11-16 05:11:29.937 00:05:10.034 OSPF 28.0.2.2:0 -> 224.0.0.5:0 41 3084 1 2025-11-16 05:11:07.468 00:05:50.897 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 05:11:58.413 00:05:09.230 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 05:16:15.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48550 1 80 1 2025-11-16 05:16:15.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50720 1 109 1 2025-11-16 05:16:15.818 00:00:00.000 UDP 28.104.0.1:50720 -> 198.28.0.2:53 1 64 1 2025-11-16 05:16:15.818 00:00:00.000 UDP 28.104.0.1:48550 -> 198.28.0.2:53 1 64 1 2025-11-16 05:17:16.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33677 1 80 1 2025-11-16 05:17:16.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42884 1 109 1 2025-11-16 05:17:16.117 00:00:00.000 UDP 28.104.0.1:42884 -> 198.28.0.2:53 1 64 1 2025-11-16 05:17:16.117 00:00:00.000 UDP 28.104.0.1:33677 -> 198.28.0.2:53 1 64 1 2025-11-16 05:13:07.458 00:05:50.916 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:13:07.459 00:06:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 7 497 1 2025-11-16 05:13:07.459 00:06:00.311 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-16 05:18:12.833 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:18:16.413 00:00:00.000 UDP 28.104.0.1:37173 -> 198.28.0.2:53 1 64 1 2025-11-16 05:18:16.413 00:00:00.000 UDP 28.104.0.1:43260 -> 198.28.0.2:53 1 64 1 2025-11-16 05:18:16.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43260 1 80 1 2025-11-16 05:18:16.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37173 1 109 1 2025-11-16 05:14:58.363 00:05:09.290 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:19:16.676 00:00:00.000 UDP 28.104.0.1:33011 -> 198.28.0.2:53 1 64 1 2025-11-16 05:19:16.676 00:00:00.000 UDP 28.104.0.1:50383 -> 198.28.0.2:53 1 64 1 2025-11-16 05:19:16.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50383 1 109 1 2025-11-16 05:19:16.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33011 1 80 1 2025-11-16 05:20:16.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50258 1 80 1 2025-11-16 05:20:16.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51915 1 109 1 2025-11-16 05:20:16.971 00:00:00.000 UDP 28.104.0.1:50258 -> 198.28.0.2:53 1 64 1 2025-11-16 05:20:16.971 00:00:00.000 UDP 28.104.0.1:51915 -> 198.28.0.2:53 1 64 1 2025-11-16 05:16:49.949 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2732 1 2025-11-16 05:21:17.270 00:00:00.000 UDP 28.104.0.1:47513 -> 198.28.0.2:53 1 64 1 2025-11-16 05:21:17.270 00:00:00.000 UDP 28.104.0.1:53758 -> 198.28.0.2:53 1 64 1 2025-11-16 05:21:17.279 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53758 1 109 1 2025-11-16 05:21:17.279 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47513 1 80 1 2025-11-16 05:17:07.469 00:05:50.896 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 05:17:58.415 00:05:09.231 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 05:22:18.176 00:00:00.000 UDP 28.104.0.1:34594 -> 198.28.0.2:53 1 64 1 2025-11-16 05:22:18.176 00:00:00.000 UDP 28.104.0.1:52990 -> 198.28.0.2:53 1 64 1 2025-11-16 05:22:18.187 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34594 1 109 1 2025-11-16 05:22:18.187 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52990 1 80 1 2025-11-16 05:23:12.935 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:23:18.479 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46999 1 109 1 2025-11-16 05:23:18.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58180 1 80 1 2025-11-16 05:23:18.468 00:00:00.000 UDP 28.104.0.1:58180 -> 198.28.0.2:53 1 64 1 2025-11-16 05:23:18.468 00:00:00.000 UDP 28.104.0.1:46999 -> 198.28.0.2:53 1 64 1 2025-11-16 05:19:07.460 00:05:50.920 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:24:18.780 00:00:00.000 UDP 28.104.0.1:57613 -> 198.28.0.2:53 1 64 1 2025-11-16 05:24:18.784 00:00:00.000 UDP 28.104.0.1:54237 -> 198.28.0.2:53 1 64 1 2025-11-16 05:24:18.792 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57613 1 80 1 2025-11-16 05:24:18.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54237 1 109 1 2025-11-16 05:20:07.460 00:06:00.310 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-16 05:20:07.460 00:06:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 7 497 1 2025-11-16 05:20:58.364 00:05:09.292 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:25:19.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38597 1 109 1 2025-11-16 05:25:19.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33825 1 80 1 2025-11-16 05:25:19.095 00:00:00.000 UDP 28.104.0.1:38597 -> 198.28.0.2:53 1 64 1 2025-11-16 05:25:19.095 00:00:00.000 UDP 28.104.0.1:33825 -> 198.28.0.2:53 1 64 1 2025-11-16 05:26:19.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42281 1 80 1 2025-11-16 05:26:19.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45977 1 109 1 2025-11-16 05:26:19.392 00:00:00.000 UDP 28.104.0.1:42281 -> 198.28.0.2:53 1 64 1 2025-11-16 05:22:09.956 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2560 1 2025-11-16 05:26:19.392 00:00:00.000 UDP 28.104.0.1:45977 -> 198.28.0.2:53 1 64 1 2025-11-16 05:27:19.640 00:00:00.000 UDP 28.104.0.1:43715 -> 198.28.0.2:53 1 64 1 2025-11-16 05:27:19.640 00:00:00.000 UDP 28.104.0.1:39108 -> 198.28.0.2:53 1 64 1 2025-11-16 05:27:19.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39108 1 80 1 2025-11-16 05:27:19.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43715 1 109 1 2025-11-16 05:23:07.471 00:05:50.898 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 05:23:58.416 00:05:09.233 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 05:28:12.858 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:28:19.941 00:00:00.000 UDP 28.104.0.1:60753 -> 198.28.0.2:53 1 64 1 2025-11-16 05:28:19.941 00:00:00.000 UDP 28.104.0.1:56955 -> 198.28.0.2:53 1 64 1 2025-11-16 05:28:19.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60753 1 109 1 2025-11-16 05:28:19.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56955 1 80 1 2025-11-16 05:29:20.208 00:00:00.000 UDP 28.104.0.1:60355 -> 198.28.0.2:53 1 64 1 2025-11-16 05:29:20.209 00:00:00.000 UDP 28.104.0.1:45522 -> 198.28.0.2:53 1 64 1 2025-11-16 05:29:20.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45522 1 109 1 2025-11-16 05:29:20.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60355 1 80 1 2025-11-16 05:25:07.460 00:05:50.918 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:30:20.500 00:00:00.000 UDP 28.104.0.1:54856 -> 198.28.0.2:53 1 64 1 2025-11-16 05:30:20.501 00:00:00.000 UDP 28.104.0.1:33101 -> 198.28.0.2:53 1 64 1 2025-11-16 05:30:20.511 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33101 1 109 1 2025-11-16 05:30:20.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54856 1 80 1 2025-11-16 05:26:58.368 00:05:09.291 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:31:20.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37495 1 109 1 2025-11-16 05:31:20.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45106 1 80 1 2025-11-16 05:31:20.788 00:00:00.000 UDP 28.104.0.1:45106 -> 198.28.0.2:53 1 64 1 2025-11-16 05:31:20.787 00:00:00.000 UDP 28.104.0.1:37495 -> 198.28.0.2:53 1 64 1 2025-11-16 05:27:29.961 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2456 1 2025-11-16 05:27:07.462 00:06:00.315 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-16 05:27:07.462 00:06:00.002 TCP 28.154.0.1:179 -> 28.155.0.1:36643 7 497 1 2025-11-16 05:32:21.380 00:00:00.000 UDP 28.104.0.1:60337 -> 198.28.0.2:53 1 64 1 2025-11-16 05:32:21.380 00:00:00.000 UDP 28.104.0.1:43818 -> 198.28.0.2:53 1 64 1 2025-11-16 05:32:21.390 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60337 1 80 1 2025-11-16 05:32:21.390 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43818 1 109 1 2025-11-16 05:33:12.870 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:33:21.694 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42165 1 80 1 2025-11-16 05:33:21.694 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50754 1 109 1 2025-11-16 05:33:21.684 00:00:00.000 UDP 28.104.0.1:42165 -> 198.28.0.2:53 1 64 1 2025-11-16 05:33:21.684 00:00:00.000 UDP 28.104.0.1:50754 -> 198.28.0.2:53 1 64 1 2025-11-16 05:29:07.472 00:05:50.897 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 05:29:58.418 00:05:09.231 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 05:34:21.983 00:00:00.000 UDP 28.104.0.1:56032 -> 198.28.0.2:53 1 64 1 2025-11-16 05:34:21.983 00:00:00.000 UDP 28.104.0.1:57958 -> 198.28.0.2:53 1 64 1 2025-11-16 05:34:21.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57958 1 109 1 2025-11-16 05:34:21.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56032 1 80 1 2025-11-16 05:35:22.286 00:00:00.000 UDP 28.104.0.1:36336 -> 198.28.0.2:53 1 64 1 2025-11-16 05:35:22.286 00:00:00.000 UDP 28.104.0.1:40703 -> 198.28.0.2:53 1 64 1 2025-11-16 05:35:22.298 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36336 1 109 1 2025-11-16 05:35:22.298 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40703 1 80 1 2025-11-16 05:31:07.462 00:05:50.917 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:36:22.579 00:00:00.000 UDP 28.104.0.1:36289 -> 198.28.0.2:53 1 64 1 2025-11-16 05:36:22.579 00:00:00.000 UDP 28.104.0.1:35263 -> 198.28.0.2:53 1 64 1 2025-11-16 05:36:22.591 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36289 1 80 1 2025-11-16 05:36:22.591 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35263 1 109 1 2025-11-16 05:32:49.970 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2256 1 2025-11-16 05:32:58.368 00:05:09.292 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:37:22.873 00:00:00.000 UDP 28.104.0.1:36168 -> 198.28.0.2:53 1 64 1 2025-11-16 05:37:22.873 00:00:00.000 UDP 28.104.0.1:57592 -> 198.28.0.2:53 1 64 1 2025-11-16 05:37:22.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36168 1 80 1 2025-11-16 05:37:22.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57592 1 109 1 2025-11-16 05:38:13.032 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:38:23.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60621 1 80 1 2025-11-16 05:38:23.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60172 1 109 1 2025-11-16 05:38:23.183 00:00:00.000 UDP 28.104.0.1:60172 -> 198.28.0.2:53 1 64 1 2025-11-16 05:38:23.183 00:00:00.000 UDP 28.104.0.1:60621 -> 198.28.0.2:53 1 64 1 2025-11-16 05:34:07.465 00:06:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 7 497 1 2025-11-16 05:34:07.465 00:06:00.312 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-16 05:39:23.476 00:00:00.000 UDP 28.104.0.1:46281 -> 198.28.0.2:53 1 64 1 2025-11-16 05:39:23.476 00:00:00.000 UDP 28.104.0.1:44739 -> 198.28.0.2:53 1 64 1 2025-11-16 05:39:23.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46281 1 80 1 2025-11-16 05:39:23.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44739 1 109 1 2025-11-16 05:35:07.474 00:05:50.896 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 05:35:58.419 00:05:09.232 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 05:40:23.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59787 1 109 1 2025-11-16 05:40:23.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55425 1 80 1 2025-11-16 05:40:23.728 00:00:00.000 UDP 28.104.0.1:55425 -> 198.28.0.2:53 1 64 1 2025-11-16 05:40:23.728 00:00:00.000 UDP 28.104.0.1:59787 -> 198.28.0.2:53 1 64 1 2025-11-16 05:41:24.049 00:00:00.000 UDP 28.104.0.1:57865 -> 198.28.0.2:53 1 64 1 2025-11-16 05:41:24.049 00:00:00.000 UDP 28.104.0.1:33532 -> 198.28.0.2:53 1 64 1 2025-11-16 05:41:24.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57865 1 80 1 2025-11-16 05:41:24.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33532 1 109 1 2025-11-16 05:37:07.464 00:05:50.916 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:38:09.978 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-16 05:42:24.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40184 1 80 1 2025-11-16 05:42:24.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42965 1 109 1 2025-11-16 05:42:24.355 00:00:00.000 UDP 28.104.0.1:40184 -> 198.28.0.2:53 1 64 1 2025-11-16 05:42:24.355 00:00:00.000 UDP 28.104.0.1:42965 -> 198.28.0.2:53 1 64 1 2025-11-16 05:38:58.369 00:05:09.293 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:43:13.190 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:43:24.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33480 1 109 1 2025-11-16 05:43:24.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59817 1 80 1 2025-11-16 05:43:24.657 00:00:00.000 UDP 28.104.0.1:59817 -> 198.28.0.2:53 1 64 1 2025-11-16 05:43:24.657 00:00:00.000 UDP 28.104.0.1:33480 -> 198.28.0.2:53 1 64 1 2025-11-16 05:44:24.931 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57072 1 109 1 2025-11-16 05:44:24.931 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52444 1 80 1 2025-11-16 05:44:24.921 00:00:00.000 UDP 28.104.0.1:52444 -> 198.28.0.2:53 1 64 1 2025-11-16 05:44:24.921 00:00:00.000 UDP 28.104.0.1:57072 -> 198.28.0.2:53 1 64 1 2025-11-16 05:45:25.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53122 1 109 1 2025-11-16 05:45:25.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40886 1 80 1 2025-11-16 05:45:25.753 00:00:00.000 UDP 28.104.0.1:53122 -> 198.28.0.2:53 1 64 1 2025-11-16 05:45:25.753 00:00:00.000 UDP 28.104.0.1:40886 -> 198.28.0.2:53 1 64 1 2025-11-16 05:41:07.475 00:05:50.896 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 05:41:07.465 00:06:00.321 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-16 05:41:58.420 00:05:09.233 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 05:41:07.465 00:06:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 7 497 1 2025-11-16 05:46:26.077 00:00:00.000 UDP 28.104.0.1:35868 -> 198.28.0.2:53 1 64 1 2025-11-16 05:46:26.077 00:00:00.000 UDP 28.104.0.1:60830 -> 198.28.0.2:53 1 64 1 2025-11-16 05:46:26.087 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60830 1 109 1 2025-11-16 05:46:26.087 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35868 1 80 1 2025-11-16 05:47:26.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50807 1 80 1 2025-11-16 05:47:26.382 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46369 1 109 1 2025-11-16 05:47:26.370 00:00:00.000 UDP 28.104.0.1:50807 -> 198.28.0.2:53 1 64 1 2025-11-16 05:47:26.371 00:00:00.000 UDP 28.104.0.1:46369 -> 198.28.0.2:53 1 64 1 2025-11-16 05:43:29.980 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 41 3172 1 2025-11-16 05:43:07.465 00:05:50.916 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:48:13.274 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:48:26.696 00:00:00.000 UDP 28.104.0.1:58869 -> 198.28.0.2:53 1 64 1 2025-11-16 05:48:26.696 00:00:00.000 UDP 28.104.0.1:42292 -> 198.28.0.2:53 1 64 1 2025-11-16 05:48:26.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58869 1 80 1 2025-11-16 05:48:26.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42292 1 109 1 2025-11-16 05:44:58.370 00:05:09.293 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:49:27.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54825 1 80 1 2025-11-16 05:49:27.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40673 1 109 1 2025-11-16 05:49:27.004 00:00:00.000 UDP 28.104.0.1:54825 -> 198.28.0.2:53 1 64 1 2025-11-16 05:49:27.005 00:00:00.000 UDP 28.104.0.1:40673 -> 198.28.0.2:53 1 64 1 2025-11-16 05:50:27.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56937 1 109 1 2025-11-16 05:50:27.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33053 1 80 1 2025-11-16 05:50:27.307 00:00:00.000 UDP 28.104.0.1:33053 -> 198.28.0.2:53 1 64 1 2025-11-16 05:50:27.307 00:00:00.000 UDP 28.104.0.1:56937 -> 198.28.0.2:53 1 64 1 2025-11-16 05:51:27.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48625 1 109 1 2025-11-16 05:51:27.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34847 1 80 1 2025-11-16 05:51:27.611 00:00:00.000 UDP 28.104.0.1:34847 -> 198.28.0.2:53 1 64 1 2025-11-16 05:51:27.611 00:00:00.000 UDP 28.104.0.1:48625 -> 198.28.0.2:53 1 64 1 2025-11-16 05:47:07.477 00:05:50.897 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 05:47:58.422 00:05:09.234 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 05:52:27.931 00:00:00.000 UDP 28.104.0.1:45843 -> 198.28.0.2:53 1 64 1 2025-11-16 05:52:27.931 00:00:00.000 UDP 28.104.0.1:38878 -> 198.28.0.2:53 1 64 1 2025-11-16 05:52:27.943 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45843 1 109 1 2025-11-16 05:52:27.942 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38878 1 80 1 2025-11-16 05:48:49.984 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2772 1 2025-11-16 05:48:07.466 00:06:00.322 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-16 05:48:07.466 00:06:00.004 TCP 28.154.0.1:179 -> 28.155.0.1:36643 11 705 1 2025-11-16 05:53:14.010 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:53:28.279 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57052 1 80 1 2025-11-16 05:53:28.279 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55610 1 109 1 2025-11-16 05:53:28.269 00:00:00.000 UDP 28.104.0.1:57052 -> 198.28.0.2:53 1 64 1 2025-11-16 05:53:28.269 00:00:00.000 UDP 28.104.0.1:55610 -> 198.28.0.2:53 1 64 1 2025-11-16 05:49:07.467 00:05:50.915 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 05:54:28.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43985 1 80 1 2025-11-16 05:54:28.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39660 1 109 1 2025-11-16 05:54:28.566 00:00:00.000 UDP 28.104.0.1:39660 -> 198.28.0.2:53 1 64 1 2025-11-16 05:54:28.566 00:00:00.000 UDP 28.104.0.1:43985 -> 198.28.0.2:53 1 64 1 2025-11-16 05:50:58.371 00:05:09.294 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 05:55:28.876 00:00:00.000 UDP 28.104.0.1:44078 -> 198.28.0.2:53 1 64 1 2025-11-16 05:55:28.876 00:00:00.000 UDP 28.104.0.1:38835 -> 198.28.0.2:53 1 64 1 2025-11-16 05:55:28.887 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44078 1 80 1 2025-11-16 05:55:28.888 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38835 1 109 1 2025-11-16 05:56:29.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50774 1 109 1 2025-11-16 05:56:29.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37243 1 80 1 2025-11-16 05:56:29.180 00:00:00.000 UDP 28.104.0.1:50774 -> 198.28.0.2:53 1 64 1 2025-11-16 05:56:29.180 00:00:00.000 UDP 28.104.0.1:37243 -> 198.28.0.2:53 1 64 1 2025-11-16 05:57:32.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56941 1 80 1 2025-11-16 05:57:32.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50357 1 109 1 2025-11-16 05:57:32.912 00:00:00.000 UDP 28.104.0.1:56941 -> 198.28.0.2:53 1 64 1 2025-11-16 05:57:32.912 00:00:00.000 UDP 28.104.0.1:50357 -> 198.28.0.2:53 1 64 1 2025-11-16 05:53:07.478 00:05:50.896 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 05:53:58.423 00:05:09.240 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 05:58:13.706 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 05:54:09.988 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2520 1 2025-11-16 05:58:33.239 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58402 1 109 1 2025-11-16 05:58:33.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58803 1 80 1 2025-11-16 05:58:33.225 00:00:00.000 UDP 28.104.0.1:58402 -> 198.28.0.2:53 1 64 1 2025-11-16 05:58:33.225 00:00:00.000 UDP 28.104.0.1:58803 -> 198.28.0.2:53 1 64 1 Summary: total flows: 320, total bytes: 93580, total packets: 1363, avg bps: 194, avg pps: 0, avg bpp: 68 Time window: 2025-11-16 04:55:07 - 2025-11-16 05:59:19 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0055s User: 0.0022s Wall: 0.0039s flows/second: 81221.0 Runtime: 0.0040s