Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 00:54:09.221 00:06:00.205 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 00:59:27.397 00:00:00.000 UDP 28.104.0.1:42131 -> 198.28.0.2:53 1 64 1 2025-11-20 00:59:27.396 00:00:00.000 UDP 28.104.0.1:57395 -> 198.28.0.2:53 1 64 1 2025-11-20 00:59:27.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57395 1 80 1 2025-11-20 00:59:27.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42131 1 109 1 2025-11-20 01:00:02.962 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 00:55:09.683 00:05:50.800 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 00:56:07.519 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2256 1 2025-11-20 01:00:27.710 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40442 1 109 1 2025-11-20 01:00:27.710 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35643 1 80 1 2025-11-20 01:00:27.699 00:00:00.000 UDP 28.104.0.1:35643 -> 198.28.0.2:53 1 64 1 2025-11-20 01:00:27.699 00:00:00.000 UDP 28.104.0.1:40442 -> 198.28.0.2:53 1 64 1 2025-11-20 01:01:27.955 00:00:00.000 UDP 28.104.0.1:35055 -> 198.28.0.2:53 1 64 1 2025-11-20 01:01:27.955 00:00:00.000 UDP 28.104.0.1:35727 -> 198.28.0.2:53 1 64 1 2025-11-20 01:01:27.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35727 1 80 1 2025-11-20 01:01:27.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35055 1 109 1 2025-11-20 00:58:00.495 00:05:08.737 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:02:28.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55461 1 109 1 2025-11-20 01:02:28.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40052 1 80 1 2025-11-20 01:02:28.307 00:00:00.000 UDP 28.104.0.1:40052 -> 198.28.0.2:53 1 64 1 2025-11-20 01:02:28.307 00:00:00.000 UDP 28.104.0.1:55461 -> 198.28.0.2:53 1 64 1 2025-11-20 00:58:09.674 00:05:50.861 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 00:58:09.221 00:06:00.580 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 01:03:28.603 00:00:00.000 UDP 28.104.0.1:50763 -> 198.28.0.2:53 1 64 1 2025-11-20 01:03:28.603 00:00:00.000 UDP 28.104.0.1:59939 -> 198.28.0.2:53 1 64 1 2025-11-20 01:03:28.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50763 1 109 1 2025-11-20 01:03:28.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59939 1 80 1 2025-11-20 01:00:00.493 00:05:08.730 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:04:28.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43804 1 109 1 2025-11-20 01:04:28.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37042 1 80 1 2025-11-20 01:04:28.905 00:00:00.000 UDP 28.104.0.1:43804 -> 198.28.0.2:53 1 64 1 2025-11-20 01:04:28.905 00:00:00.000 UDP 28.104.0.1:37042 -> 198.28.0.2:53 1 64 1 2025-11-20 01:05:03.252 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:05:29.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48363 1 109 1 2025-11-20 01:05:29.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33934 1 80 1 2025-11-20 01:05:29.208 00:00:00.000 UDP 28.104.0.1:33934 -> 198.28.0.2:53 1 64 1 2025-11-20 01:05:29.209 00:00:00.000 UDP 28.104.0.1:48363 -> 198.28.0.2:53 1 64 1 2025-11-20 01:01:27.522 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2376 1 2025-11-20 01:01:09.684 00:05:50.800 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 01:01:09.222 00:06:00.206 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 01:06:29.499 00:00:00.000 UDP 28.104.0.1:39154 -> 198.28.0.2:53 1 64 1 2025-11-20 01:06:29.500 00:00:00.000 UDP 28.104.0.1:56209 -> 198.28.0.2:53 1 64 1 2025-11-20 01:06:29.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56209 1 109 1 2025-11-20 01:06:29.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39154 1 80 1 2025-11-20 01:07:29.810 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46618 1 80 1 2025-11-20 01:07:29.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60650 1 109 1 2025-11-20 01:07:29.801 00:00:00.000 UDP 28.104.0.1:60650 -> 198.28.0.2:53 1 64 1 2025-11-20 01:07:29.800 00:00:00.000 UDP 28.104.0.1:46618 -> 198.28.0.2:53 1 64 1 2025-11-20 01:04:00.485 00:05:08.749 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:08:30.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39609 1 109 1 2025-11-20 01:08:30.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41214 1 80 1 2025-11-20 01:08:30.110 00:00:00.000 UDP 28.104.0.1:39609 -> 198.28.0.2:53 1 64 1 2025-11-20 01:08:30.110 00:00:00.000 UDP 28.104.0.1:41214 -> 198.28.0.2:53 1 64 1 2025-11-20 01:04:09.674 00:05:50.861 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 01:09:30.421 00:00:00.000 UDP 28.104.0.1:58384 -> 198.28.0.2:53 1 64 1 2025-11-20 01:09:30.421 00:00:00.000 UDP 28.104.0.1:58489 -> 198.28.0.2:53 1 64 1 2025-11-20 01:09:30.433 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58489 1 80 1 2025-11-20 01:09:30.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58384 1 109 1 2025-11-20 01:10:03.273 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:05:09.224 00:06:00.580 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 01:06:00.495 00:05:08.730 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:10:30.927 00:00:00.000 UDP 28.104.0.1:47139 -> 198.28.0.2:53 1 64 1 2025-11-20 01:10:30.927 00:00:00.000 UDP 28.104.0.1:60864 -> 198.28.0.2:53 1 64 1 2025-11-20 01:10:30.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47139 1 80 1 2025-11-20 01:10:30.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60864 1 109 1 2025-11-20 01:06:47.531 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2400 1 2025-11-20 01:11:31.252 00:00:00.000 UDP 28.104.0.1:50711 -> 198.28.0.2:53 1 64 1 2025-11-20 01:11:31.252 00:00:00.000 UDP 28.104.0.1:48864 -> 198.28.0.2:53 1 64 1 2025-11-20 01:11:31.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48864 1 109 1 2025-11-20 01:11:31.262 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50711 1 80 1 2025-11-20 01:07:09.685 00:05:50.801 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 01:12:31.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40113 1 80 1 2025-11-20 01:12:31.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49730 1 109 1 2025-11-20 01:12:31.563 00:00:00.000 UDP 28.104.0.1:40113 -> 198.28.0.2:53 1 64 1 2025-11-20 01:12:31.563 00:00:00.000 UDP 28.104.0.1:49730 -> 198.28.0.2:53 1 64 1 2025-11-20 01:08:09.223 00:06:00.206 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 01:13:31.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60504 1 109 1 2025-11-20 01:13:31.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34958 1 80 1 2025-11-20 01:13:31.864 00:00:00.000 UDP 28.104.0.1:34958 -> 198.28.0.2:53 1 64 1 2025-11-20 01:13:31.864 00:00:00.000 UDP 28.104.0.1:60504 -> 198.28.0.2:53 1 64 1 2025-11-20 01:10:00.485 00:05:08.751 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:14:32.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52825 1 109 1 2025-11-20 01:14:32.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60796 1 80 1 2025-11-20 01:14:32.183 00:00:00.000 UDP 28.104.0.1:60796 -> 198.28.0.2:53 1 64 1 2025-11-20 01:14:32.183 00:00:00.000 UDP 28.104.0.1:52825 -> 198.28.0.2:53 1 64 1 2025-11-20 01:15:03.302 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:10:09.676 00:05:50.862 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 01:15:32.478 00:00:00.000 UDP 28.104.0.1:41661 -> 198.28.0.2:53 1 64 1 2025-11-20 01:15:32.478 00:00:00.000 UDP 28.104.0.1:33331 -> 198.28.0.2:53 1 64 1 2025-11-20 01:15:32.489 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41661 1 109 1 2025-11-20 01:15:32.489 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33331 1 80 1 2025-11-20 01:12:00.497 00:05:08.731 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:12:07.534 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2972 1 2025-11-20 01:16:32.769 00:00:00.000 UDP 28.104.0.1:37376 -> 198.28.0.2:53 1 64 1 2025-11-20 01:16:32.768 00:00:00.000 UDP 28.104.0.1:58148 -> 198.28.0.2:53 1 64 1 2025-11-20 01:16:32.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37376 1 109 1 2025-11-20 01:16:32.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58148 1 80 1 2025-11-20 01:12:09.224 00:06:00.580 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 01:17:33.064 00:00:00.000 UDP 28.104.0.1:55796 -> 198.28.0.2:53 1 64 1 2025-11-20 01:17:33.064 00:00:00.000 UDP 28.104.0.1:41659 -> 198.28.0.2:53 1 64 1 2025-11-20 01:17:33.075 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55796 1 109 1 2025-11-20 01:17:33.075 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41659 1 80 1 2025-11-20 01:13:09.687 00:05:50.802 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 01:18:33.320 00:00:00.000 UDP 28.104.0.1:48882 -> 198.28.0.2:53 1 64 1 2025-11-20 01:18:33.320 00:00:00.000 UDP 28.104.0.1:46411 -> 198.28.0.2:53 1 64 1 2025-11-20 01:18:33.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46411 1 109 1 2025-11-20 01:18:33.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48882 1 80 1 2025-11-20 01:19:33.613 00:00:00.000 UDP 28.104.0.1:43484 -> 198.28.0.2:53 1 64 1 2025-11-20 01:19:33.614 00:00:00.000 UDP 28.104.0.1:56037 -> 198.28.0.2:53 1 64 1 2025-11-20 01:19:33.624 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43484 1 80 1 2025-11-20 01:19:33.625 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56037 1 109 1 2025-11-20 01:20:03.824 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:16:00.486 00:05:08.752 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:15:09.226 00:06:00.204 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 01:20:33.919 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60011 1 109 1 2025-11-20 01:20:33.919 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56240 1 80 1 2025-11-20 01:20:33.909 00:00:00.000 UDP 28.104.0.1:56240 -> 198.28.0.2:53 1 64 1 2025-11-20 01:20:33.909 00:00:00.000 UDP 28.104.0.1:60011 -> 198.28.0.2:53 1 64 1 2025-11-20 01:16:09.677 00:05:50.862 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 01:21:34.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38450 1 80 1 2025-11-20 01:21:34.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56487 1 109 1 2025-11-20 01:17:27.538 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2692 1 2025-11-20 01:21:34.207 00:00:00.000 UDP 28.104.0.1:56487 -> 198.28.0.2:53 1 64 1 2025-11-20 01:21:34.208 00:00:00.000 UDP 28.104.0.1:38450 -> 198.28.0.2:53 1 64 1 2025-11-20 01:18:00.498 00:05:08.731 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:22:34.503 00:00:00.000 UDP 28.104.0.1:48053 -> 198.28.0.2:53 1 64 1 2025-11-20 01:22:34.503 00:00:00.000 UDP 28.104.0.1:51791 -> 198.28.0.2:53 1 64 1 2025-11-20 01:22:34.513 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51791 1 109 1 2025-11-20 01:22:34.513 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48053 1 80 1 2025-11-20 01:23:34.824 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34796 1 80 1 2025-11-20 01:23:34.824 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57832 1 109 1 2025-11-20 01:23:34.814 00:00:00.000 UDP 28.104.0.1:34796 -> 198.28.0.2:53 1 64 1 2025-11-20 01:23:34.814 00:00:00.000 UDP 28.104.0.1:57832 -> 198.28.0.2:53 1 64 1 2025-11-20 01:19:09.691 00:05:50.798 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 01:19:09.229 00:06:00.576 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 01:24:35.078 00:00:00.000 UDP 28.104.0.1:39579 -> 198.28.0.2:53 1 64 1 2025-11-20 01:24:35.078 00:00:00.000 UDP 28.104.0.1:42046 -> 198.28.0.2:53 1 64 1 2025-11-20 01:24:35.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42046 1 109 1 2025-11-20 01:24:35.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39579 1 80 1 2025-11-20 01:25:03.754 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:25:35.385 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42449 1 109 1 2025-11-20 01:25:35.385 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54906 1 80 1 2025-11-20 01:25:35.376 00:00:00.000 UDP 28.104.0.1:54906 -> 198.28.0.2:53 1 64 1 2025-11-20 01:25:35.376 00:00:00.000 UDP 28.104.0.1:42449 -> 198.28.0.2:53 1 64 1 2025-11-20 01:22:00.489 00:05:08.752 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:26:35.690 00:00:00.000 UDP 28.104.0.1:60526 -> 198.28.0.2:53 1 64 1 2025-11-20 01:26:35.690 00:00:00.000 UDP 28.104.0.1:40523 -> 198.28.0.2:53 1 64 1 2025-11-20 01:26:35.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40523 1 80 1 2025-11-20 01:26:35.701 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60526 1 109 1 2025-11-20 01:22:47.543 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2480 1 2025-11-20 01:22:09.684 00:05:50.858 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 01:22:09.229 00:06:00.201 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 01:27:35.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59735 1 109 1 2025-11-20 01:27:35.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43694 1 80 1 2025-11-20 01:27:35.980 00:00:00.000 UDP 28.104.0.1:43694 -> 198.28.0.2:53 1 64 1 2025-11-20 01:27:35.980 00:00:00.000 UDP 28.104.0.1:59735 -> 198.28.0.2:53 1 64 1 2025-11-20 01:24:00.499 00:05:08.732 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:28:36.295 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55824 1 80 1 2025-11-20 01:28:36.294 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53992 1 109 1 2025-11-20 01:28:36.284 00:00:00.000 UDP 28.104.0.1:53992 -> 198.28.0.2:53 1 64 1 2025-11-20 01:28:36.284 00:00:00.000 UDP 28.104.0.1:55824 -> 198.28.0.2:53 1 64 1 2025-11-20 01:29:36.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32858 1 109 1 2025-11-20 01:29:36.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55187 1 80 1 2025-11-20 01:29:36.585 00:00:00.000 UDP 28.104.0.1:32858 -> 198.28.0.2:53 1 64 1 2025-11-20 01:29:36.585 00:00:00.000 UDP 28.104.0.1:55187 -> 198.28.0.2:53 1 64 1 2025-11-20 01:30:03.911 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:25:09.694 00:05:50.796 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 01:30:36.891 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43915 1 80 1 2025-11-20 01:30:36.891 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57346 1 109 1 2025-11-20 01:30:36.881 00:00:00.000 UDP 28.104.0.1:43915 -> 198.28.0.2:53 1 64 1 2025-11-20 01:30:36.882 00:00:00.000 UDP 28.104.0.1:57346 -> 198.28.0.2:53 1 64 1 2025-11-20 01:26:09.232 00:06:00.575 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 01:31:37.192 00:00:00.000 UDP 28.104.0.1:48421 -> 198.28.0.2:53 1 64 1 2025-11-20 01:31:37.192 00:00:00.000 UDP 28.104.0.1:53745 -> 198.28.0.2:53 1 64 1 2025-11-20 01:31:37.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48421 1 80 1 2025-11-20 01:31:37.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53745 1 109 1 2025-11-20 01:28:00.491 00:05:08.752 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:28:07.545 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2376 1 2025-11-20 01:32:37.802 00:00:00.000 UDP 28.104.0.1:45825 -> 198.28.0.2:53 1 64 1 2025-11-20 01:32:37.802 00:00:00.000 UDP 28.104.0.1:32791 -> 198.28.0.2:53 1 64 1 2025-11-20 01:32:37.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32791 1 109 1 2025-11-20 01:32:37.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45825 1 80 1 2025-11-20 01:28:09.684 00:05:50.859 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 01:33:38.106 00:00:00.000 UDP 28.104.0.1:38604 -> 198.28.0.2:53 1 64 1 2025-11-20 01:33:38.106 00:00:00.000 UDP 28.104.0.1:34301 -> 198.28.0.2:53 1 64 1 2025-11-20 01:33:38.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34301 1 80 1 2025-11-20 01:33:38.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38604 1 109 1 2025-11-20 01:29:09.233 00:06:00.201 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 01:30:00.502 00:05:08.732 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:34:38.358 00:00:00.000 UDP 28.104.0.1:34402 -> 198.28.0.2:53 1 64 1 2025-11-20 01:34:38.358 00:00:00.000 UDP 28.104.0.1:55718 -> 198.28.0.2:53 1 64 1 2025-11-20 01:34:38.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55718 1 109 1 2025-11-20 01:34:38.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34402 1 80 1 2025-11-20 01:35:03.924 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:35:38.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50029 1 109 1 2025-11-20 01:35:38.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56407 1 80 1 2025-11-20 01:35:38.658 00:00:00.000 UDP 28.104.0.1:50029 -> 198.28.0.2:53 1 64 1 2025-11-20 01:35:38.656 00:00:00.000 UDP 28.104.0.1:56407 -> 198.28.0.2:53 1 64 1 2025-11-20 01:31:09.695 00:05:50.797 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 01:36:38.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45567 1 80 1 2025-11-20 01:36:38.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52411 1 109 1 2025-11-20 01:36:38.958 00:00:00.000 UDP 28.104.0.1:45567 -> 198.28.0.2:53 1 64 1 2025-11-20 01:36:38.958 00:00:00.000 UDP 28.104.0.1:52411 -> 198.28.0.2:53 1 64 1 2025-11-20 01:33:27.552 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-20 01:37:39.205 00:00:00.000 UDP 28.104.0.1:33413 -> 198.28.0.2:53 1 64 1 2025-11-20 01:37:39.206 00:00:00.000 UDP 28.104.0.1:45619 -> 198.28.0.2:53 1 64 1 2025-11-20 01:37:39.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45619 1 109 1 2025-11-20 01:37:39.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33413 1 80 1 2025-11-20 01:33:09.233 00:06:00.575 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 01:34:00.493 00:05:08.751 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:38:39.547 00:00:00.000 UDP 28.104.0.1:40815 -> 198.28.0.2:53 1 64 1 2025-11-20 01:38:39.546 00:00:00.000 UDP 28.104.0.1:58073 -> 198.28.0.2:53 1 64 1 2025-11-20 01:38:39.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58073 1 109 1 2025-11-20 01:38:39.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40815 1 80 1 2025-11-20 01:34:09.686 00:05:50.858 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 01:39:39.811 00:00:00.000 UDP 28.104.0.1:47147 -> 198.28.0.2:53 1 64 1 2025-11-20 01:39:39.811 00:00:00.000 UDP 28.104.0.1:50943 -> 198.28.0.2:53 1 64 1 2025-11-20 01:39:39.821 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50943 1 80 1 2025-11-20 01:39:39.821 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47147 1 109 1 2025-11-20 01:40:03.865 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:36:00.503 00:05:08.732 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:40:40.110 00:00:00.000 UDP 28.104.0.1:45844 -> 198.28.0.2:53 1 64 1 2025-11-20 01:40:40.110 00:00:00.000 UDP 28.104.0.1:49759 -> 198.28.0.2:53 1 64 1 2025-11-20 01:40:40.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49759 1 80 1 2025-11-20 01:40:40.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45844 1 109 1 2025-11-20 01:36:09.233 00:06:00.202 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 01:41:40.403 00:00:00.000 UDP 28.104.0.1:60624 -> 198.28.0.2:53 1 64 1 2025-11-20 01:41:40.403 00:00:00.000 UDP 28.104.0.1:52947 -> 198.28.0.2:53 1 64 1 2025-11-20 01:41:40.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52947 1 80 1 2025-11-20 01:41:40.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60624 1 109 1 2025-11-20 01:37:09.697 00:05:50.797 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 01:42:40.722 00:00:00.000 UDP 28.104.0.1:33490 -> 198.28.0.2:53 1 64 1 2025-11-20 01:42:40.722 00:00:00.000 UDP 28.104.0.1:43540 -> 198.28.0.2:53 1 64 1 2025-11-20 01:42:40.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43540 1 80 1 2025-11-20 01:42:40.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33490 1 109 1 2025-11-20 01:38:47.556 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2668 1 2025-11-20 01:43:41.050 00:00:00.000 UDP 28.104.0.1:39592 -> 198.28.0.2:53 1 64 1 2025-11-20 01:43:41.050 00:00:00.000 UDP 28.104.0.1:46403 -> 198.28.0.2:53 1 64 1 2025-11-20 01:43:41.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46403 1 109 1 2025-11-20 01:43:41.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39592 1 80 1 2025-11-20 01:40:00.493 00:05:08.753 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:44:41.344 00:00:00.000 UDP 28.104.0.1:60611 -> 198.28.0.2:53 1 64 1 2025-11-20 01:44:41.344 00:00:00.000 UDP 28.104.0.1:56440 -> 198.28.0.2:53 1 64 1 2025-11-20 01:44:41.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56440 1 80 1 2025-11-20 01:44:41.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60611 1 109 1 2025-11-20 01:40:09.690 00:05:50.857 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 01:45:03.962 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:40:09.234 00:06:00.575 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 01:45:41.640 00:00:00.000 UDP 28.104.0.1:34834 -> 198.28.0.2:53 1 64 1 2025-11-20 01:45:41.640 00:00:00.000 UDP 28.104.0.1:57888 -> 198.28.0.2:53 1 64 1 2025-11-20 01:45:41.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34834 1 80 1 2025-11-20 01:45:41.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57888 1 109 1 2025-11-20 01:42:00.503 00:05:08.734 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:46:41.898 00:00:00.000 UDP 28.104.0.1:46235 -> 198.28.0.2:53 1 64 1 2025-11-20 01:46:41.898 00:00:00.000 UDP 28.104.0.1:35973 -> 198.28.0.2:53 1 64 1 2025-11-20 01:46:41.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46235 1 109 1 2025-11-20 01:46:41.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35973 1 80 1 2025-11-20 01:47:42.202 00:00:00.000 UDP 28.104.0.1:55404 -> 198.28.0.2:53 1 64 1 2025-11-20 01:47:42.202 00:00:00.000 UDP 28.104.0.1:51923 -> 198.28.0.2:53 1 64 1 2025-11-20 01:47:42.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51923 1 109 1 2025-11-20 01:47:42.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55404 1 80 1 2025-11-20 01:43:09.701 00:05:50.797 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 01:43:09.234 00:06:00.202 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 01:44:07.567 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 42 3196 1 2025-11-20 01:48:42.508 00:00:00.000 UDP 28.104.0.1:34084 -> 198.28.0.2:53 1 64 1 2025-11-20 01:48:42.508 00:00:00.000 UDP 28.104.0.1:41960 -> 198.28.0.2:53 1 64 1 2025-11-20 01:48:42.518 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34084 1 109 1 2025-11-20 01:48:42.518 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41960 1 80 1 2025-11-20 01:49:42.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34186 1 109 1 2025-11-20 01:49:42.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58355 1 80 1 2025-11-20 01:49:42.808 00:00:00.000 UDP 28.104.0.1:34186 -> 198.28.0.2:53 1 64 1 2025-11-20 01:49:42.808 00:00:00.000 UDP 28.104.0.1:58355 -> 198.28.0.2:53 1 64 1 2025-11-20 01:50:04.033 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:46:00.497 00:05:08.751 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:50:43.105 00:00:00.000 UDP 28.104.0.1:47102 -> 198.28.0.2:53 1 64 1 2025-11-20 01:50:43.105 00:00:00.000 UDP 28.104.0.1:52699 -> 198.28.0.2:53 1 64 1 2025-11-20 01:50:43.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52699 1 80 1 2025-11-20 01:50:43.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47102 1 109 1 2025-11-20 01:46:09.692 00:05:50.857 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 01:51:43.360 00:00:00.000 UDP 28.104.0.1:51354 -> 198.28.0.2:53 1 64 1 2025-11-20 01:51:43.360 00:00:00.000 UDP 28.104.0.1:39967 -> 198.28.0.2:53 1 64 1 2025-11-20 01:51:43.371 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51354 1 109 1 2025-11-20 01:51:43.371 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39967 1 80 1 2025-11-20 01:47:09.237 00:06:00.575 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 01:48:00.507 00:05:08.731 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:52:43.656 00:00:00.000 UDP 28.104.0.1:36373 -> 198.28.0.2:53 1 64 1 2025-11-20 01:52:43.656 00:00:00.000 UDP 28.104.0.1:47570 -> 198.28.0.2:53 1 64 1 2025-11-20 01:52:43.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47570 1 80 1 2025-11-20 01:52:43.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36373 1 109 1 2025-11-20 01:49:27.570 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2480 1 2025-11-20 01:53:43.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36849 1 80 1 2025-11-20 01:53:43.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32807 1 109 1 2025-11-20 01:53:43.906 00:00:00.000 UDP 28.104.0.1:36849 -> 198.28.0.2:53 1 64 1 2025-11-20 01:53:43.906 00:00:00.000 UDP 28.104.0.1:32807 -> 198.28.0.2:53 1 64 1 2025-11-20 01:49:09.702 00:05:50.797 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 01:54:44.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59389 1 109 1 2025-11-20 01:54:44.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54336 1 80 1 2025-11-20 01:54:44.211 00:00:00.000 UDP 28.104.0.1:59389 -> 198.28.0.2:53 1 64 1 2025-11-20 01:54:44.211 00:00:00.000 UDP 28.104.0.1:54336 -> 198.28.0.2:53 1 64 1 2025-11-20 01:55:04.210 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 01:50:09.237 00:06:00.201 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 01:55:44.519 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50678 1 109 1 2025-11-20 01:55:44.518 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49489 1 80 1 2025-11-20 01:55:44.508 00:00:00.000 UDP 28.104.0.1:49489 -> 198.28.0.2:53 1 64 1 2025-11-20 01:55:44.508 00:00:00.000 UDP 28.104.0.1:50678 -> 198.28.0.2:53 1 64 1 2025-11-20 01:52:00.499 00:05:08.751 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 01:56:44.796 00:00:00.000 UDP 28.104.0.1:41113 -> 198.28.0.2:53 1 64 1 2025-11-20 01:56:44.796 00:00:00.000 UDP 28.104.0.1:45436 -> 198.28.0.2:53 1 64 1 2025-11-20 01:56:44.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45436 1 80 1 2025-11-20 01:56:44.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41113 1 109 1 2025-11-20 01:52:09.692 00:05:50.857 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 01:57:45.091 00:00:00.000 UDP 28.104.0.1:48755 -> 198.28.0.2:53 1 64 1 2025-11-20 01:57:45.091 00:00:00.000 UDP 28.104.0.1:52088 -> 198.28.0.2:53 1 64 1 2025-11-20 01:57:45.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48755 1 109 1 2025-11-20 01:57:45.101 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52088 1 80 1 2025-11-20 01:54:00.508 00:05:08.731 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 01:58:45.361 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46054 1 109 1 2025-11-20 01:58:45.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48819 1 80 1 2025-11-20 01:58:45.350 00:00:00.000 UDP 28.104.0.1:46054 -> 198.28.0.2:53 1 64 1 2025-11-20 01:58:45.351 00:00:00.000 UDP 28.104.0.1:48819 -> 198.28.0.2:53 1 64 1 Summary: total flows: 320, total bytes: 94417, total packets: 1390, avg bps: 193, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 00:54:09 - 2025-11-20 01:59:09 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0050s User: 0.0025s Wall: 0.0041s flows/second: 78798.6 Runtime: 0.0041s