Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 08:54:09.366 00:06:00.581 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 08:59:21.231 00:00:00.000 UDP 28.104.0.1:48577 -> 198.28.0.2:53 1 64 1 2025-11-20 08:59:21.233 00:00:00.000 UDP 28.104.0.1:50671 -> 198.28.0.2:53 1 64 1 2025-11-20 08:59:21.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48577 1 80 1 2025-11-20 08:59:21.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50671 1 109 1 2025-11-20 08:55:09.836 00:05:50.898 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 08:55:58.234 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2692 1 2025-11-20 09:00:12.700 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:00:21.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44225 1 109 1 2025-11-20 09:00:21.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42072 1 80 1 2025-11-20 09:00:21.534 00:00:00.000 UDP 28.104.0.1:42072 -> 198.28.0.2:53 1 64 1 2025-11-20 09:00:21.534 00:00:00.000 UDP 28.104.0.1:44225 -> 198.28.0.2:53 1 64 1 2025-11-20 09:01:21.781 00:00:00.000 UDP 28.104.0.1:34352 -> 198.28.0.2:53 1 64 1 2025-11-20 09:01:21.780 00:00:00.000 UDP 28.104.0.1:38758 -> 198.28.0.2:53 1 64 1 2025-11-20 09:01:21.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38758 1 109 1 2025-11-20 09:01:21.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34352 1 80 1 2025-11-20 08:57:09.367 00:06:00.216 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 08:58:00.730 00:05:08.648 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:02:22.093 00:00:00.000 UDP 28.104.0.1:54231 -> 198.28.0.2:53 1 64 1 2025-11-20 09:02:22.093 00:00:00.000 UDP 28.104.0.1:42898 -> 198.28.0.2:53 1 64 1 2025-11-20 09:02:22.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54231 1 80 1 2025-11-20 09:02:22.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42898 1 109 1 2025-11-20 08:58:09.826 00:05:50.961 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:03:22.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34916 1 80 1 2025-11-20 09:03:22.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51079 1 109 1 2025-11-20 09:03:22.390 00:00:00.000 UDP 28.104.0.1:34916 -> 198.28.0.2:53 1 64 1 2025-11-20 09:03:22.391 00:00:00.000 UDP 28.104.0.1:51079 -> 198.28.0.2:53 1 64 1 2025-11-20 09:00:00.740 00:05:08.629 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:04:22.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36783 1 80 1 2025-11-20 09:04:22.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59775 1 109 1 2025-11-20 09:04:22.727 00:00:00.000 UDP 28.104.0.1:36783 -> 198.28.0.2:53 1 64 1 2025-11-20 09:04:22.727 00:00:00.000 UDP 28.104.0.1:59775 -> 198.28.0.2:53 1 64 1 2025-11-20 09:05:12.906 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:05:23.048 00:00:00.000 UDP 28.104.0.1:42934 -> 198.28.0.2:53 1 64 1 2025-11-20 09:05:23.048 00:00:00.000 UDP 28.104.0.1:58797 -> 198.28.0.2:53 1 64 1 2025-11-20 09:05:23.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42934 1 109 1 2025-11-20 09:05:23.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58797 1 80 1 2025-11-20 09:01:18.242 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2400 1 2025-11-20 09:01:09.836 00:05:50.914 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:01:09.370 00:06:00.582 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:06:23.300 00:00:00.000 UDP 28.104.0.1:60129 -> 198.28.0.2:53 1 64 1 2025-11-20 09:06:23.300 00:00:00.000 UDP 28.104.0.1:40427 -> 198.28.0.2:53 1 64 1 2025-11-20 09:06:23.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60129 1 109 1 2025-11-20 09:06:23.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40427 1 80 1 2025-11-20 09:07:23.602 00:00:00.000 UDP 28.104.0.1:42599 -> 198.28.0.2:53 1 64 1 2025-11-20 09:07:23.602 00:00:00.000 UDP 28.104.0.1:43289 -> 198.28.0.2:53 1 64 1 2025-11-20 09:07:23.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43289 1 80 1 2025-11-20 09:07:23.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42599 1 109 1 2025-11-20 09:04:00.737 00:05:08.643 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:08:23.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59221 1 109 1 2025-11-20 09:08:23.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39708 1 80 1 2025-11-20 09:08:23.909 00:00:00.000 UDP 28.104.0.1:59221 -> 198.28.0.2:53 1 64 1 2025-11-20 09:08:23.909 00:00:00.000 UDP 28.104.0.1:39708 -> 198.28.0.2:53 1 64 1 2025-11-20 09:04:09.826 00:05:50.975 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:04:09.368 00:06:00.216 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:09:29.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44180 1 80 1 2025-11-20 09:09:29.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51071 1 109 1 2025-11-20 09:09:29.784 00:00:00.000 UDP 28.104.0.1:51071 -> 198.28.0.2:53 1 64 1 2025-11-20 09:09:29.784 00:00:00.000 UDP 28.104.0.1:44180 -> 198.28.0.2:53 1 64 1 2025-11-20 09:10:12.874 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:06:00.760 00:05:08.609 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:10:30.086 00:00:00.000 UDP 28.104.0.1:41383 -> 198.28.0.2:53 1 64 1 2025-11-20 09:10:30.085 00:00:00.000 UDP 28.104.0.1:40373 -> 198.28.0.2:53 1 64 1 2025-11-20 09:10:30.095 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41383 1 80 1 2025-11-20 09:10:30.095 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40373 1 109 1 2025-11-20 09:06:38.245 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2376 1 2025-11-20 09:11:30.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56202 1 80 1 2025-11-20 09:11:30.352 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47154 1 109 1 2025-11-20 09:11:30.341 00:00:00.000 UDP 28.104.0.1:47154 -> 198.28.0.2:53 1 64 1 2025-11-20 09:11:30.341 00:00:00.000 UDP 28.104.0.1:56202 -> 198.28.0.2:53 1 64 1 2025-11-20 09:07:09.841 00:05:50.911 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:12:30.646 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53298 1 109 1 2025-11-20 09:12:30.646 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37830 1 80 1 2025-11-20 09:12:30.638 00:00:00.000 UDP 28.104.0.1:37830 -> 198.28.0.2:53 1 64 1 2025-11-20 09:12:30.638 00:00:00.000 UDP 28.104.0.1:53298 -> 198.28.0.2:53 1 64 1 2025-11-20 09:08:09.369 00:06:00.585 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:13:30.891 00:00:00.000 UDP 28.104.0.1:44766 -> 198.28.0.2:53 1 64 1 2025-11-20 09:13:30.892 00:00:00.000 UDP 28.104.0.1:59353 -> 198.28.0.2:53 1 64 1 2025-11-20 09:13:30.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59353 1 109 1 2025-11-20 09:13:30.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44766 1 80 1 2025-11-20 09:10:00.751 00:05:08.630 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:14:31.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41467 1 80 1 2025-11-20 09:14:31.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35397 1 109 1 2025-11-20 09:14:31.192 00:00:00.000 UDP 28.104.0.1:41467 -> 198.28.0.2:53 1 64 1 2025-11-20 09:14:31.192 00:00:00.000 UDP 28.104.0.1:35397 -> 198.28.0.2:53 1 64 1 2025-11-20 09:10:09.831 00:05:50.973 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:15:13.055 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:15:31.448 00:00:00.000 UDP 28.104.0.1:53492 -> 198.28.0.2:53 1 64 1 2025-11-20 09:15:31.448 00:00:00.000 UDP 28.104.0.1:39023 -> 198.28.0.2:53 1 64 1 2025-11-20 09:15:31.460 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53492 1 80 1 2025-11-20 09:15:31.460 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39023 1 109 1 2025-11-20 09:11:58.249 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2400 1 2025-11-20 09:11:09.369 00:06:00.217 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:12:00.760 00:05:08.611 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:16:31.749 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49104 1 80 1 2025-11-20 09:16:31.749 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52547 1 109 1 2025-11-20 09:16:31.739 00:00:00.000 UDP 28.104.0.1:52547 -> 198.28.0.2:53 1 64 1 2025-11-20 09:16:31.738 00:00:00.000 UDP 28.104.0.1:49104 -> 198.28.0.2:53 1 64 1 2025-11-20 09:17:32.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35980 1 80 1 2025-11-20 09:17:32.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47813 1 109 1 2025-11-20 09:17:32.059 00:00:00.000 UDP 28.104.0.1:35980 -> 198.28.0.2:53 1 64 1 2025-11-20 09:17:32.059 00:00:00.000 UDP 28.104.0.1:47813 -> 198.28.0.2:53 1 64 1 2025-11-20 09:13:09.839 00:05:50.914 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:18:32.405 00:00:00.000 UDP 28.104.0.1:56807 -> 198.28.0.2:53 1 64 1 2025-11-20 09:18:32.405 00:00:00.000 UDP 28.104.0.1:40160 -> 198.28.0.2:53 1 64 1 2025-11-20 09:18:32.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40160 1 80 1 2025-11-20 09:18:32.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56807 1 109 1 2025-11-20 09:19:32.698 00:00:00.000 UDP 28.104.0.1:32790 -> 198.28.0.2:53 1 64 1 2025-11-20 09:19:32.698 00:00:00.000 UDP 28.104.0.1:41957 -> 198.28.0.2:53 1 64 1 2025-11-20 09:19:32.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32790 1 80 1 2025-11-20 09:19:32.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41957 1 109 1 2025-11-20 09:15:09.371 00:06:00.583 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:20:13.054 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:16:00.751 00:05:08.632 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:20:32.956 00:00:00.000 UDP 28.104.0.1:54493 -> 198.28.0.2:53 1 64 1 2025-11-20 09:20:32.956 00:00:00.000 UDP 28.104.0.1:34284 -> 198.28.0.2:53 1 64 1 2025-11-20 09:20:32.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54493 1 80 1 2025-11-20 09:20:32.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34284 1 109 1 2025-11-20 09:16:09.831 00:05:50.982 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:21:33.268 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35565 1 80 1 2025-11-20 09:21:33.268 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56259 1 109 1 2025-11-20 09:21:33.258 00:00:00.000 UDP 28.104.0.1:56259 -> 198.28.0.2:53 1 64 1 2025-11-20 09:17:18.253 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2988 1 2025-11-20 09:21:33.259 00:00:00.000 UDP 28.104.0.1:35565 -> 198.28.0.2:53 1 64 1 2025-11-20 09:18:00.762 00:05:08.612 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:22:33.555 00:00:00.000 UDP 28.104.0.1:45129 -> 198.28.0.2:53 1 64 1 2025-11-20 09:22:33.555 00:00:00.000 UDP 28.104.0.1:46291 -> 198.28.0.2:53 1 64 1 2025-11-20 09:22:33.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45129 1 80 1 2025-11-20 09:22:33.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46291 1 109 1 2025-11-20 09:18:09.373 00:06:00.215 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:23:33.853 00:00:00.000 UDP 28.104.0.1:56944 -> 198.28.0.2:53 1 64 1 2025-11-20 09:23:33.852 00:00:00.000 UDP 28.104.0.1:54390 -> 198.28.0.2:53 1 64 1 2025-11-20 09:23:33.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56944 1 80 1 2025-11-20 09:23:33.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54390 1 109 1 2025-11-20 09:19:09.840 00:05:50.922 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:24:34.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40958 1 80 1 2025-11-20 09:24:34.176 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48903 1 109 1 2025-11-20 09:24:34.165 00:00:00.000 UDP 28.104.0.1:48903 -> 198.28.0.2:53 1 64 1 2025-11-20 09:24:34.165 00:00:00.000 UDP 28.104.0.1:40958 -> 198.28.0.2:53 1 64 1 2025-11-20 09:25:13.299 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:25:34.460 00:00:00.000 UDP 28.104.0.1:42184 -> 198.28.0.2:53 1 64 1 2025-11-20 09:25:34.458 00:00:00.000 UDP 28.104.0.1:53009 -> 198.28.0.2:53 1 64 1 2025-11-20 09:25:34.468 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53009 1 80 1 2025-11-20 09:25:34.469 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42184 1 109 1 2025-11-20 09:22:00.762 00:05:08.623 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:26:34.754 00:00:00.000 UDP 28.104.0.1:58179 -> 198.28.0.2:53 1 64 1 2025-11-20 09:26:34.754 00:00:00.000 UDP 28.104.0.1:55680 -> 198.28.0.2:53 1 64 1 2025-11-20 09:26:34.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58179 1 109 1 2025-11-20 09:26:34.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55680 1 80 1 2025-11-20 09:22:38.257 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2828 1 2025-11-20 09:22:09.831 00:05:51.000 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:22:09.374 00:06:00.581 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:27:35.058 00:00:00.000 UDP 28.104.0.1:50717 -> 198.28.0.2:53 1 64 1 2025-11-20 09:27:35.059 00:00:00.000 UDP 28.104.0.1:58246 -> 198.28.0.2:53 1 64 1 2025-11-20 09:27:35.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58246 1 109 1 2025-11-20 09:27:35.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50717 1 80 1 2025-11-20 09:24:00.771 00:05:08.603 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:28:35.350 00:00:00.000 UDP 28.104.0.1:36408 -> 198.28.0.2:53 1 64 1 2025-11-20 09:28:35.350 00:00:00.000 UDP 28.104.0.1:45254 -> 198.28.0.2:53 1 64 1 2025-11-20 09:28:35.359 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45254 1 109 1 2025-11-20 09:28:35.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36408 1 80 1 2025-11-20 09:29:35.650 00:00:00.000 UDP 28.104.0.1:50758 -> 198.28.0.2:53 1 64 1 2025-11-20 09:29:35.649 00:00:00.000 UDP 28.104.0.1:44573 -> 198.28.0.2:53 1 64 1 2025-11-20 09:29:35.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44573 1 109 1 2025-11-20 09:29:35.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50758 1 80 1 2025-11-20 09:25:09.841 00:05:50.941 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:25:09.374 00:06:00.214 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:30:13.254 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:30:35.938 00:00:00.000 UDP 28.104.0.1:40262 -> 198.28.0.2:53 1 64 1 2025-11-20 09:30:35.938 00:00:00.000 UDP 28.104.0.1:43733 -> 198.28.0.2:53 1 64 1 2025-11-20 09:30:35.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40262 1 109 1 2025-11-20 09:30:35.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43733 1 80 1 2025-11-20 09:31:36.231 00:00:00.000 UDP 28.104.0.1:46896 -> 198.28.0.2:53 1 64 1 2025-11-20 09:31:36.231 00:00:00.000 UDP 28.104.0.1:41915 -> 198.28.0.2:53 1 64 1 2025-11-20 09:31:36.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41915 1 80 1 2025-11-20 09:31:36.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46896 1 109 1 2025-11-20 09:28:00.782 00:05:08.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:27:58.262 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2480 1 2025-11-20 09:32:36.929 00:00:00.000 UDP 28.104.0.1:37481 -> 198.28.0.2:53 1 64 1 2025-11-20 09:32:36.929 00:00:00.000 UDP 28.104.0.1:42179 -> 198.28.0.2:53 1 64 1 2025-11-20 09:32:36.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37481 1 109 1 2025-11-20 09:32:36.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42179 1 80 1 2025-11-20 09:28:09.832 00:05:51.001 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:33:37.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35060 1 80 1 2025-11-20 09:33:37.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46435 1 109 1 2025-11-20 09:33:37.241 00:00:00.000 UDP 28.104.0.1:35060 -> 198.28.0.2:53 1 64 1 2025-11-20 09:33:37.241 00:00:00.000 UDP 28.104.0.1:46435 -> 198.28.0.2:53 1 64 1 2025-11-20 09:29:09.375 00:06:00.580 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:30:00.792 00:05:08.585 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:34:37.538 00:00:00.000 UDP 28.104.0.1:46350 -> 198.28.0.2:53 1 64 1 2025-11-20 09:34:37.538 00:00:00.000 UDP 28.104.0.1:36733 -> 198.28.0.2:53 1 64 1 2025-11-20 09:34:37.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46350 1 80 1 2025-11-20 09:34:37.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36733 1 109 1 2025-11-20 09:35:13.403 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:35:37.902 00:00:00.000 UDP 28.104.0.1:51901 -> 198.28.0.2:53 1 64 1 2025-11-20 09:35:37.902 00:00:00.000 UDP 28.104.0.1:52197 -> 198.28.0.2:53 1 64 1 2025-11-20 09:35:37.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52197 1 109 1 2025-11-20 09:35:37.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51901 1 80 1 2025-11-20 09:31:09.843 00:05:50.941 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:36:38.265 00:00:00.000 UDP 28.104.0.1:36307 -> 198.28.0.2:53 1 64 1 2025-11-20 09:36:38.264 00:00:00.000 UDP 28.104.0.1:43947 -> 198.28.0.2:53 1 64 1 2025-11-20 09:36:38.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36307 1 80 1 2025-11-20 09:36:38.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43947 1 109 1 2025-11-20 09:32:09.376 00:06:00.214 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:33:18.269 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-20 09:37:38.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48506 1 80 1 2025-11-20 09:37:38.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59958 1 109 1 2025-11-20 09:37:38.564 00:00:00.000 UDP 28.104.0.1:48506 -> 198.28.0.2:53 1 64 1 2025-11-20 09:37:38.564 00:00:00.000 UDP 28.104.0.1:59958 -> 198.28.0.2:53 1 64 1 2025-11-20 09:34:00.783 00:05:08.606 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:38:38.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35005 1 109 1 2025-11-20 09:38:38.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54857 1 80 1 2025-11-20 09:38:38.863 00:00:00.000 UDP 28.104.0.1:35005 -> 198.28.0.2:53 1 64 1 2025-11-20 09:38:38.862 00:00:00.000 UDP 28.104.0.1:54857 -> 198.28.0.2:53 1 64 1 2025-11-20 09:34:09.834 00:05:51.002 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:39:39.196 00:00:00.000 UDP 28.104.0.1:38686 -> 198.28.0.2:53 1 64 1 2025-11-20 09:39:39.196 00:00:00.000 UDP 28.104.0.1:50155 -> 198.28.0.2:53 1 64 1 2025-11-20 09:39:39.206 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50155 1 80 1 2025-11-20 09:39:39.206 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38686 1 109 1 2025-11-20 09:40:13.523 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:36:00.794 00:05:08.585 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:40:39.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40678 1 80 1 2025-11-20 09:40:39.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38470 1 109 1 2025-11-20 09:40:39.454 00:00:00.000 UDP 28.104.0.1:40678 -> 198.28.0.2:53 1 64 1 2025-11-20 09:40:39.454 00:00:00.000 UDP 28.104.0.1:38470 -> 198.28.0.2:53 1 64 1 2025-11-20 09:36:09.378 00:06:00.579 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:41:39.755 00:00:00.000 UDP 28.104.0.1:60363 -> 198.28.0.2:53 1 64 1 2025-11-20 09:41:39.756 00:00:00.000 UDP 28.104.0.1:56411 -> 198.28.0.2:53 1 64 1 2025-11-20 09:41:39.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60363 1 109 1 2025-11-20 09:41:39.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56411 1 80 1 2025-11-20 09:37:09.843 00:05:50.944 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:42:40.069 00:00:00.000 UDP 28.104.0.1:51051 -> 198.28.0.2:53 1 64 1 2025-11-20 09:42:40.069 00:00:00.000 UDP 28.104.0.1:54518 -> 198.28.0.2:53 1 64 1 2025-11-20 09:42:40.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51051 1 80 1 2025-11-20 09:42:40.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54518 1 109 1 2025-11-20 09:38:38.272 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 09:43:40.397 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40799 1 80 1 2025-11-20 09:43:40.397 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52444 1 109 1 2025-11-20 09:43:40.388 00:00:00.000 UDP 28.104.0.1:40799 -> 198.28.0.2:53 1 64 1 2025-11-20 09:43:40.388 00:00:00.000 UDP 28.104.0.1:52444 -> 198.28.0.2:53 1 64 1 2025-11-20 09:40:00.786 00:05:08.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:39:09.379 00:06:00.216 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:44:40.677 00:00:00.000 UDP 28.104.0.1:55189 -> 198.28.0.2:53 1 64 1 2025-11-20 09:44:40.677 00:00:00.000 UDP 28.104.0.1:34864 -> 198.28.0.2:53 1 64 1 2025-11-20 09:44:40.687 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34864 1 80 1 2025-11-20 09:44:40.688 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55189 1 109 1 2025-11-20 09:40:09.834 00:05:51.005 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:45:13.750 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:45:40.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54274 1 109 1 2025-11-20 09:45:40.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45004 1 80 1 2025-11-20 09:45:40.981 00:00:00.000 UDP 28.104.0.1:54274 -> 198.28.0.2:53 1 64 1 2025-11-20 09:45:40.982 00:00:00.000 UDP 28.104.0.1:45004 -> 198.28.0.2:53 1 64 1 2025-11-20 09:42:00.795 00:05:08.585 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:46:41.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58868 1 109 1 2025-11-20 09:46:41.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36546 1 80 1 2025-11-20 09:46:41.275 00:00:00.000 UDP 28.104.0.1:58868 -> 198.28.0.2:53 1 64 1 2025-11-20 09:46:41.275 00:00:00.000 UDP 28.104.0.1:36546 -> 198.28.0.2:53 1 64 1 2025-11-20 09:47:41.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49207 1 80 1 2025-11-20 09:47:41.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37343 1 109 1 2025-11-20 09:47:41.566 00:00:00.000 UDP 28.104.0.1:37343 -> 198.28.0.2:53 1 64 1 2025-11-20 09:47:41.566 00:00:00.000 UDP 28.104.0.1:49207 -> 198.28.0.2:53 1 64 1 2025-11-20 09:43:09.844 00:05:50.945 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:43:58.276 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2616 1 2025-11-20 09:43:09.379 00:06:00.579 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:48:41.860 00:00:00.000 UDP 28.104.0.1:38839 -> 198.28.0.2:53 1 64 1 2025-11-20 09:48:41.860 00:00:00.000 UDP 28.104.0.1:58131 -> 198.28.0.2:53 1 64 1 2025-11-20 09:48:41.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58131 1 109 1 2025-11-20 09:48:41.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38839 1 80 1 2025-11-20 09:49:42.171 00:00:00.000 UDP 28.104.0.1:40052 -> 198.28.0.2:53 1 64 1 2025-11-20 09:49:42.171 00:00:00.000 UDP 28.104.0.1:58208 -> 198.28.0.2:53 1 64 1 2025-11-20 09:49:42.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40052 1 109 1 2025-11-20 09:49:42.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58208 1 80 1 2025-11-20 09:50:13.791 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:46:00.789 00:05:08.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:50:42.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45322 1 109 1 2025-11-20 09:50:42.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54164 1 80 1 2025-11-20 09:50:42.464 00:00:00.000 UDP 28.104.0.1:45322 -> 198.28.0.2:53 1 64 1 2025-11-20 09:50:42.464 00:00:00.000 UDP 28.104.0.1:54164 -> 198.28.0.2:53 1 64 1 2025-11-20 09:46:09.836 00:05:51.004 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:46:09.381 00:06:00.216 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:51:42.756 00:00:00.000 UDP 28.104.0.1:36612 -> 198.28.0.2:53 1 64 1 2025-11-20 09:51:42.756 00:00:00.000 UDP 28.104.0.1:33687 -> 198.28.0.2:53 1 64 1 2025-11-20 09:51:42.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36612 1 109 1 2025-11-20 09:51:42.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33687 1 80 1 2025-11-20 09:48:00.802 00:05:08.581 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:52:43.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50604 1 109 1 2025-11-20 09:52:43.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53974 1 80 1 2025-11-20 09:52:43.011 00:00:00.000 UDP 28.104.0.1:50604 -> 198.28.0.2:53 1 64 1 2025-11-20 09:52:43.011 00:00:00.000 UDP 28.104.0.1:53974 -> 198.28.0.2:53 1 64 1 2025-11-20 09:49:18.278 00:05:10.050 OSPF 28.0.2.2:0 -> 224.0.0.5:0 42 3240 1 2025-11-20 09:53:43.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55749 1 80 1 2025-11-20 09:53:43.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40024 1 109 1 2025-11-20 09:53:43.305 00:00:00.000 UDP 28.104.0.1:55749 -> 198.28.0.2:53 1 64 1 2025-11-20 09:53:43.305 00:00:00.000 UDP 28.104.0.1:40024 -> 198.28.0.2:53 1 64 1 2025-11-20 09:49:09.846 00:05:50.946 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:54:43.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40790 1 109 1 2025-11-20 09:54:43.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42329 1 80 1 2025-11-20 09:54:43.560 00:00:00.000 UDP 28.104.0.1:40790 -> 198.28.0.2:53 1 64 1 2025-11-20 09:54:43.560 00:00:00.000 UDP 28.104.0.1:42329 -> 198.28.0.2:53 1 64 1 2025-11-20 09:55:13.833 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:50:09.383 00:06:00.577 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:55:43.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32770 1 80 1 2025-11-20 09:55:43.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53939 1 109 1 2025-11-20 09:55:43.852 00:00:00.000 UDP 28.104.0.1:53939 -> 198.28.0.2:53 1 64 1 2025-11-20 09:55:43.852 00:00:00.000 UDP 28.104.0.1:32770 -> 198.28.0.2:53 1 64 1 2025-11-20 09:52:00.790 00:05:08.606 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:56:44.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59125 1 109 1 2025-11-20 09:56:44.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50371 1 80 1 2025-11-20 09:56:44.164 00:00:00.000 UDP 28.104.0.1:59125 -> 198.28.0.2:53 1 64 1 2025-11-20 09:56:44.164 00:00:00.000 UDP 28.104.0.1:50371 -> 198.28.0.2:53 1 64 1 2025-11-20 09:52:09.840 00:05:51.001 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:57:44.421 00:00:00.000 UDP 28.104.0.1:41091 -> 198.28.0.2:53 1 64 1 2025-11-20 09:57:44.421 00:00:00.000 UDP 28.104.0.1:36130 -> 198.28.0.2:53 1 64 1 2025-11-20 09:57:44.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41091 1 80 1 2025-11-20 09:57:44.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36130 1 109 1 2025-11-20 09:54:00.801 00:05:08.585 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:53:09.384 00:06:00.217 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:58:44.717 00:00:00.000 UDP 28.104.0.1:42800 -> 198.28.0.2:53 1 64 1 2025-11-20 09:58:44.717 00:00:00.000 UDP 28.104.0.1:49200 -> 198.28.0.2:53 1 64 1 2025-11-20 09:54:38.284 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-11-20 09:58:44.727 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42800 1 109 1 2025-11-20 09:58:44.727 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49200 1 80 1 Summary: total flows: 322, total bytes: 98138, total packets: 1446, avg bps: 199, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 08:54:09 - 2025-11-20 09:59:48 Total flows processed: 322, passed: 322, Blocks skipped: 0, Bytes read: 33552 Sys: 0.0036s User: 0.0012s Wall: 0.0035s flows/second: 90727.3 Runtime: 0.0036s