Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 12:58:56.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40208 1 109 1 2025-11-20 12:58:56.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51776 1 80 1 2025-11-20 12:58:56.463 00:00:00.000 UDP 28.104.0.1:51776 -> 198.28.0.2:53 1 64 1 2025-11-20 12:58:56.463 00:00:00.000 UDP 28.104.0.1:40208 -> 198.28.0.2:53 1 64 1 2025-11-20 12:55:38.544 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2256 1 2025-11-20 12:59:56.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53138 1 109 1 2025-11-20 12:59:56.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49222 1 80 1 2025-11-20 12:59:56.770 00:00:00.000 UDP 28.104.0.1:49222 -> 198.28.0.2:53 1 64 1 2025-11-20 12:59:56.770 00:00:00.000 UDP 28.104.0.1:53138 -> 198.28.0.2:53 1 64 1 2025-11-20 12:55:09.902 00:05:50.997 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 12:55:09.431 00:06:00.232 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:00:19.316 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:00:57.092 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59147 1 80 1 2025-11-20 13:00:57.092 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41334 1 109 1 2025-11-20 13:00:57.081 00:00:00.000 UDP 28.104.0.1:59147 -> 198.28.0.2:53 1 64 1 2025-11-20 13:00:57.081 00:00:00.000 UDP 28.104.0.1:41334 -> 198.28.0.2:53 1 64 1 2025-11-20 13:01:57.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55264 1 80 1 2025-11-20 13:01:57.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43626 1 109 1 2025-11-20 13:01:57.380 00:00:00.000 UDP 28.104.0.1:43626 -> 198.28.0.2:53 1 64 1 2025-11-20 13:01:57.380 00:00:00.000 UDP 28.104.0.1:55264 -> 198.28.0.2:53 1 64 1 2025-11-20 12:58:00.899 00:05:08.543 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 12:58:09.432 00:05:00.601 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:02:57.683 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44329 1 109 1 2025-11-20 13:02:57.683 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37158 1 80 1 2025-11-20 13:02:57.672 00:00:00.000 UDP 28.104.0.1:37158 -> 198.28.0.2:53 1 64 1 2025-11-20 13:02:57.672 00:00:00.000 UDP 28.104.0.1:44329 -> 198.28.0.2:53 1 64 1 2025-11-20 12:58:09.892 00:05:51.060 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:03:57.970 00:00:00.000 UDP 28.104.0.1:34486 -> 198.28.0.2:53 1 64 1 2025-11-20 13:03:57.970 00:00:00.000 UDP 28.104.0.1:43924 -> 198.28.0.2:53 1 64 1 2025-11-20 13:03:57.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43924 1 109 1 2025-11-20 13:03:57.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34486 1 80 1 2025-11-20 13:00:00.909 00:05:08.523 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:04:58.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58069 1 109 1 2025-11-20 13:04:58.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50447 1 80 1 2025-11-20 13:04:58.225 00:00:00.000 UDP 28.104.0.1:58069 -> 198.28.0.2:53 1 64 1 2025-11-20 13:04:58.225 00:00:00.000 UDP 28.104.0.1:50447 -> 198.28.0.2:53 1 64 1 2025-11-20 13:00:58.548 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2400 1 2025-11-20 13:05:19.341 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:05:58.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53377 1 109 1 2025-11-20 13:05:58.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49648 1 80 1 2025-11-20 13:05:58.477 00:00:00.000 UDP 28.104.0.1:53377 -> 198.28.0.2:53 1 64 1 2025-11-20 13:05:58.477 00:00:00.000 UDP 28.104.0.1:49648 -> 198.28.0.2:53 1 64 1 2025-11-20 13:01:09.907 00:05:50.993 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:06:58.785 00:00:00.000 UDP 28.104.0.1:50738 -> 198.28.0.2:53 1 64 1 2025-11-20 13:06:58.785 00:00:00.000 UDP 28.104.0.1:44793 -> 198.28.0.2:53 1 64 1 2025-11-20 13:06:58.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44793 1 80 1 2025-11-20 13:06:58.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50738 1 109 1 2025-11-20 13:02:09.432 00:06:00.234 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:07:59.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51421 1 80 1 2025-11-20 13:07:59.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36940 1 109 1 2025-11-20 13:07:59.100 00:00:00.000 UDP 28.104.0.1:36940 -> 198.28.0.2:53 1 64 1 2025-11-20 13:07:59.100 00:00:00.000 UDP 28.104.0.1:51421 -> 198.28.0.2:53 1 64 1 2025-11-20 13:04:00.900 00:05:08.544 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:04:09.434 00:05:00.600 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:04:09.896 00:05:51.055 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:08:59.402 00:00:00.000 UDP 28.104.0.1:33975 -> 198.28.0.2:53 1 64 1 2025-11-20 13:08:59.402 00:00:00.000 UDP 28.104.0.1:60604 -> 198.28.0.2:53 1 64 1 2025-11-20 13:08:59.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33975 1 80 1 2025-11-20 13:08:59.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60604 1 109 1 2025-11-20 13:09:59.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36013 1 109 1 2025-11-20 13:09:59.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41425 1 80 1 2025-11-20 13:09:59.696 00:00:00.000 UDP 28.104.0.1:41425 -> 198.28.0.2:53 1 64 1 2025-11-20 13:09:59.696 00:00:00.000 UDP 28.104.0.1:36013 -> 198.28.0.2:53 1 64 1 2025-11-20 13:06:00.910 00:05:08.524 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:10:19.522 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:06:18.558 00:05:10.012 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2940 1 2025-11-20 13:10:59.965 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40260 1 80 1 2025-11-20 13:10:59.965 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35765 1 109 1 2025-11-20 13:10:59.954 00:00:00.000 UDP 28.104.0.1:40260 -> 198.28.0.2:53 1 64 1 2025-11-20 13:10:59.954 00:00:00.000 UDP 28.104.0.1:35765 -> 198.28.0.2:53 1 64 1 2025-11-20 13:07:09.910 00:05:50.991 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:12:00.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59085 1 109 1 2025-11-20 13:12:00.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56582 1 80 1 2025-11-20 13:12:00.252 00:00:00.000 UDP 28.104.0.1:59085 -> 198.28.0.2:53 1 64 1 2025-11-20 13:12:00.252 00:00:00.000 UDP 28.104.0.1:56582 -> 198.28.0.2:53 1 64 1 2025-11-20 13:13:00.565 00:00:00.000 UDP 28.104.0.1:44201 -> 198.28.0.2:53 1 64 1 2025-11-20 13:13:00.564 00:00:00.000 UDP 28.104.0.1:50484 -> 198.28.0.2:53 1 64 1 2025-11-20 13:13:00.579 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50484 1 109 1 2025-11-20 13:13:00.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44201 1 80 1 2025-11-20 13:14:00.868 00:00:00.000 UDP 28.104.0.1:52923 -> 198.28.0.2:53 1 64 1 2025-11-20 13:14:00.868 00:00:00.000 UDP 28.104.0.1:40150 -> 198.28.0.2:53 1 64 1 2025-11-20 13:14:00.877 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40150 1 109 1 2025-11-20 13:14:00.877 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52923 1 80 1 2025-11-20 13:10:09.434 00:05:00.599 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:09:09.434 00:06:00.236 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:10:00.901 00:05:08.545 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:15:01.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42303 1 109 1 2025-11-20 13:15:01.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34822 1 80 1 2025-11-20 13:10:09.898 00:05:51.061 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:15:01.604 00:00:00.000 UDP 28.104.0.1:34822 -> 198.28.0.2:53 1 64 1 2025-11-20 13:15:01.605 00:00:00.000 UDP 28.104.0.1:42303 -> 198.28.0.2:53 1 64 1 2025-11-20 13:15:19.552 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:11:38.570 00:05:10.024 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2892 1 2025-11-20 13:16:01.904 00:00:00.000 UDP 28.104.0.1:50479 -> 198.28.0.2:53 1 64 1 2025-11-20 13:16:01.904 00:00:00.000 UDP 28.104.0.1:51456 -> 198.28.0.2:53 1 64 1 2025-11-20 13:16:01.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51456 1 109 1 2025-11-20 13:16:01.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50479 1 80 1 2025-11-20 13:12:00.911 00:05:08.526 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:17:02.206 00:00:00.000 UDP 28.104.0.1:39336 -> 198.28.0.2:53 1 64 1 2025-11-20 13:17:02.206 00:00:00.000 UDP 28.104.0.1:60411 -> 198.28.0.2:53 1 64 1 2025-11-20 13:17:02.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60411 1 109 1 2025-11-20 13:17:02.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39336 1 80 1 2025-11-20 13:18:03.239 00:00:00.000 UDP 28.104.0.1:41977 -> 198.28.0.2:53 1 64 1 2025-11-20 13:18:03.239 00:00:00.000 UDP 28.104.0.1:42125 -> 198.28.0.2:53 1 64 1 2025-11-20 13:13:09.911 00:05:50.997 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:18:03.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41977 1 80 1 2025-11-20 13:18:03.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42125 1 109 1 2025-11-20 13:19:03.540 00:00:00.000 UDP 28.104.0.1:51804 -> 198.28.0.2:53 1 64 1 2025-11-20 13:19:03.540 00:00:00.000 UDP 28.104.0.1:36735 -> 198.28.0.2:53 1 64 1 2025-11-20 13:19:03.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51804 1 109 1 2025-11-20 13:19:03.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36735 1 80 1 2025-11-20 13:20:03.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52642 1 109 1 2025-11-20 13:20:03.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49753 1 80 1 2025-11-20 13:20:03.794 00:00:00.000 UDP 28.104.0.1:52642 -> 198.28.0.2:53 1 64 1 2025-11-20 13:20:03.794 00:00:00.000 UDP 28.104.0.1:49753 -> 198.28.0.2:53 1 64 1 2025-11-20 13:16:00.909 00:05:08.538 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:16:09.435 00:05:00.600 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:20:19.736 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:16:09.901 00:05:51.058 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:21:04.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46361 1 109 1 2025-11-20 13:21:04.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39308 1 80 1 2025-11-20 13:21:04.098 00:00:00.000 UDP 28.104.0.1:39308 -> 198.28.0.2:53 1 64 1 2025-11-20 13:21:04.098 00:00:00.000 UDP 28.104.0.1:46361 -> 198.28.0.2:53 1 64 1 2025-11-20 13:16:09.435 00:06:00.237 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:16:58.593 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2432 1 2025-11-20 13:22:04.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40499 1 109 1 2025-11-20 13:22:04.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56923 1 80 1 2025-11-20 13:22:04.391 00:00:00.000 UDP 28.104.0.1:40499 -> 198.28.0.2:53 1 64 1 2025-11-20 13:22:04.390 00:00:00.000 UDP 28.104.0.1:56923 -> 198.28.0.2:53 1 64 1 2025-11-20 13:18:00.919 00:05:08.517 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:23:04.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56473 1 80 1 2025-11-20 13:23:04.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48082 1 109 1 2025-11-20 13:23:04.679 00:00:00.000 UDP 28.104.0.1:56473 -> 198.28.0.2:53 1 64 1 2025-11-20 13:23:04.679 00:00:00.000 UDP 28.104.0.1:48082 -> 198.28.0.2:53 1 64 1 2025-11-20 13:19:09.914 00:05:50.997 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:24:04.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43138 1 109 1 2025-11-20 13:24:04.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35144 1 80 1 2025-11-20 13:24:04.982 00:00:00.000 UDP 28.104.0.1:35144 -> 198.28.0.2:53 1 64 1 2025-11-20 13:24:04.982 00:00:00.000 UDP 28.104.0.1:43138 -> 198.28.0.2:53 1 64 1 2025-11-20 13:25:05.291 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44192 1 109 1 2025-11-20 13:25:05.290 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60149 1 80 1 2025-11-20 13:25:05.280 00:00:00.000 UDP 28.104.0.1:60149 -> 198.28.0.2:53 1 64 1 2025-11-20 13:25:05.281 00:00:00.000 UDP 28.104.0.1:44192 -> 198.28.0.2:53 1 64 1 2025-11-20 13:25:19.698 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:26:05.579 00:00:00.000 UDP 28.104.0.1:59506 -> 198.28.0.2:53 1 64 1 2025-11-20 13:26:05.579 00:00:00.000 UDP 28.104.0.1:57343 -> 198.28.0.2:53 1 64 1 2025-11-20 13:26:05.591 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57343 1 80 1 2025-11-20 13:26:05.591 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59506 1 109 1 2025-11-20 13:22:00.910 00:05:08.539 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:22:09.437 00:05:00.600 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:22:18.602 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2376 1 2025-11-20 13:22:09.904 00:05:51.057 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:27:05.927 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51567 1 80 1 2025-11-20 13:27:05.927 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50376 1 109 1 2025-11-20 13:27:05.916 00:00:00.000 UDP 28.104.0.1:51567 -> 198.28.0.2:53 1 64 1 2025-11-20 13:27:05.917 00:00:00.000 UDP 28.104.0.1:50376 -> 198.28.0.2:53 1 64 1 2025-11-20 13:28:06.249 00:00:00.000 UDP 28.104.0.1:53788 -> 198.28.0.2:53 1 64 1 2025-11-20 13:28:06.249 00:00:00.000 UDP 28.104.0.1:45367 -> 198.28.0.2:53 1 64 1 2025-11-20 13:28:06.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45367 1 109 1 2025-11-20 13:28:06.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53788 1 80 1 2025-11-20 13:24:00.920 00:05:08.518 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:23:09.436 00:06:00.243 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:29:06.545 00:00:00.000 UDP 28.104.0.1:53089 -> 198.28.0.2:53 1 64 1 2025-11-20 13:29:06.545 00:00:00.000 UDP 28.104.0.1:35143 -> 198.28.0.2:53 1 64 1 2025-11-20 13:29:06.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53089 1 80 1 2025-11-20 13:29:06.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35143 1 109 1 2025-11-20 13:25:09.915 00:05:50.996 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:30:06.846 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37560 1 109 1 2025-11-20 13:30:06.846 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56432 1 80 1 2025-11-20 13:30:06.836 00:00:00.000 UDP 28.104.0.1:56432 -> 198.28.0.2:53 1 64 1 2025-11-20 13:30:06.836 00:00:00.000 UDP 28.104.0.1:37560 -> 198.28.0.2:53 1 64 1 2025-11-20 13:30:20.124 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:31:07.136 00:00:00.000 UDP 28.104.0.1:42975 -> 198.28.0.2:53 1 64 1 2025-11-20 13:31:07.136 00:00:00.000 UDP 28.104.0.1:33682 -> 198.28.0.2:53 1 64 1 2025-11-20 13:31:07.146 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33682 1 109 1 2025-11-20 13:31:07.146 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42975 1 80 1 2025-11-20 13:27:38.609 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 13:32:07.386 00:00:00.000 UDP 28.104.0.1:42347 -> 198.28.0.2:53 1 64 1 2025-11-20 13:32:07.386 00:00:00.000 UDP 28.104.0.1:32928 -> 198.28.0.2:53 1 64 1 2025-11-20 13:32:07.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42347 1 109 1 2025-11-20 13:32:07.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32928 1 80 1 2025-11-20 13:28:00.911 00:05:08.540 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:28:09.438 00:05:00.624 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:28:09.906 00:05:51.059 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:33:07.683 00:00:00.000 UDP 28.104.0.1:45335 -> 198.28.0.2:53 1 64 1 2025-11-20 13:33:07.683 00:00:00.000 UDP 28.104.0.1:49122 -> 198.28.0.2:53 1 64 1 2025-11-20 13:33:07.692 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49122 1 80 1 2025-11-20 13:33:07.692 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45335 1 109 1 2025-11-20 13:34:07.987 00:00:00.000 UDP 28.104.0.1:41643 -> 198.28.0.2:53 1 64 1 2025-11-20 13:34:07.987 00:00:00.000 UDP 28.104.0.1:54946 -> 198.28.0.2:53 1 64 1 2025-11-20 13:34:07.996 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54946 1 80 1 2025-11-20 13:34:07.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41643 1 109 1 2025-11-20 13:30:00.922 00:05:08.520 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:35:08.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50890 1 80 1 2025-11-20 13:35:08.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51918 1 109 1 2025-11-20 13:35:08.310 00:00:00.000 UDP 28.104.0.1:50890 -> 198.28.0.2:53 1 64 1 2025-11-20 13:35:08.310 00:00:00.000 UDP 28.104.0.1:51918 -> 198.28.0.2:53 1 64 1 2025-11-20 13:30:09.439 00:06:00.242 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:35:20.271 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:31:09.917 00:05:50.998 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:36:08.602 00:00:00.000 UDP 28.104.0.1:53288 -> 198.28.0.2:53 1 64 1 2025-11-20 13:36:08.602 00:00:00.000 UDP 28.104.0.1:37556 -> 198.28.0.2:53 1 64 1 2025-11-20 13:36:08.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53288 1 80 1 2025-11-20 13:36:08.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37556 1 109 1 2025-11-20 13:37:08.899 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60983 1 109 1 2025-11-20 13:37:08.899 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59813 1 80 1 2025-11-20 13:37:08.890 00:00:00.000 UDP 28.104.0.1:59813 -> 198.28.0.2:53 1 64 1 2025-11-20 13:37:08.890 00:00:00.000 UDP 28.104.0.1:60983 -> 198.28.0.2:53 1 64 1 2025-11-20 13:32:58.611 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2760 1 2025-11-20 13:34:00.914 00:05:08.539 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:38:09.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40672 1 80 1 2025-11-20 13:38:09.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41591 1 109 1 2025-11-20 13:38:09.200 00:00:00.000 UDP 28.104.0.1:40672 -> 198.28.0.2:53 1 64 1 2025-11-20 13:34:09.442 00:05:00.633 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:38:09.200 00:00:00.000 UDP 28.104.0.1:41591 -> 198.28.0.2:53 1 64 1 2025-11-20 13:34:09.907 00:05:51.058 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:39:09.508 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54073 1 109 1 2025-11-20 13:39:09.508 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46417 1 80 1 2025-11-20 13:39:09.499 00:00:00.000 UDP 28.104.0.1:54073 -> 198.28.0.2:53 1 64 1 2025-11-20 13:39:09.499 00:00:00.000 UDP 28.104.0.1:46417 -> 198.28.0.2:53 1 64 1 2025-11-20 13:36:00.929 00:05:08.513 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:40:09.793 00:00:00.000 UDP 28.104.0.1:52866 -> 198.28.0.2:53 1 64 1 2025-11-20 13:40:09.793 00:00:00.000 UDP 28.104.0.1:56666 -> 198.28.0.2:53 1 64 1 2025-11-20 13:40:09.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56666 1 80 1 2025-11-20 13:40:09.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52866 1 109 1 2025-11-20 13:40:20.358 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:41:10.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49106 1 80 1 2025-11-20 13:41:10.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45718 1 109 1 2025-11-20 13:41:10.098 00:00:00.000 UDP 28.104.0.1:45718 -> 198.28.0.2:53 1 64 1 2025-11-20 13:41:10.098 00:00:00.000 UDP 28.104.0.1:49106 -> 198.28.0.2:53 1 64 1 2025-11-20 13:37:09.919 00:05:50.996 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:42:10.390 00:00:00.000 UDP 28.104.0.1:48843 -> 198.28.0.2:53 1 64 1 2025-11-20 13:42:10.390 00:00:00.000 UDP 28.104.0.1:36922 -> 198.28.0.2:53 1 64 1 2025-11-20 13:37:09.443 00:06:00.240 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:42:10.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36922 1 109 1 2025-11-20 13:42:10.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48843 1 80 1 2025-11-20 13:38:18.616 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 3032 1 2025-11-20 13:43:10.640 00:00:00.000 UDP 28.104.0.1:39479 -> 198.28.0.2:53 1 64 1 2025-11-20 13:43:10.639 00:00:00.000 UDP 28.104.0.1:45646 -> 198.28.0.2:53 1 64 1 2025-11-20 13:43:10.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45646 1 109 1 2025-11-20 13:43:10.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39479 1 80 1 2025-11-20 13:40:09.442 00:05:00.634 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:44:10.942 00:00:00.000 UDP 28.104.0.1:41628 -> 198.28.0.2:53 1 64 1 2025-11-20 13:44:10.942 00:00:00.000 UDP 28.104.0.1:57688 -> 198.28.0.2:53 1 64 1 2025-11-20 13:44:10.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41628 1 109 1 2025-11-20 13:40:00.916 00:05:08.538 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:44:10.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57688 1 80 1 2025-11-20 13:40:09.910 00:05:51.056 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:45:11.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47141 1 80 1 2025-11-20 13:45:11.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59471 1 109 1 2025-11-20 13:45:11.244 00:00:00.000 UDP 28.104.0.1:59471 -> 198.28.0.2:53 1 64 1 2025-11-20 13:45:11.243 00:00:00.000 UDP 28.104.0.1:47141 -> 198.28.0.2:53 1 64 1 2025-11-20 13:45:20.260 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:46:11.531 00:00:00.000 UDP 28.104.0.1:55494 -> 198.28.0.2:53 1 64 1 2025-11-20 13:46:11.531 00:00:00.000 UDP 28.104.0.1:58829 -> 198.28.0.2:53 1 64 1 2025-11-20 13:42:00.926 00:05:08.518 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:46:11.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55494 1 109 1 2025-11-20 13:46:11.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58829 1 80 1 2025-11-20 13:47:11.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52178 1 80 1 2025-11-20 13:47:11.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36070 1 109 1 2025-11-20 13:47:11.823 00:00:00.000 UDP 28.104.0.1:52178 -> 198.28.0.2:53 1 64 1 2025-11-20 13:47:11.823 00:00:00.000 UDP 28.104.0.1:36070 -> 198.28.0.2:53 1 64 1 2025-11-20 13:43:38.618 00:05:10.029 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-11-20 13:43:09.921 00:05:50.995 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:48:12.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49421 1 109 1 2025-11-20 13:48:12.121 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33423 1 80 1 2025-11-20 13:48:12.111 00:00:00.000 UDP 28.104.0.1:49421 -> 198.28.0.2:53 1 64 1 2025-11-20 13:48:12.110 00:00:00.000 UDP 28.104.0.1:33423 -> 198.28.0.2:53 1 64 1 2025-11-20 13:49:12.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56980 1 80 1 2025-11-20 13:49:12.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45719 1 109 1 2025-11-20 13:44:09.444 00:06:00.241 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:49:12.404 00:00:00.000 UDP 28.104.0.1:45719 -> 198.28.0.2:53 1 64 1 2025-11-20 13:49:12.404 00:00:00.000 UDP 28.104.0.1:56980 -> 198.28.0.2:53 1 64 1 2025-11-20 13:50:12.698 00:00:00.000 UDP 28.104.0.1:37346 -> 198.28.0.2:53 1 64 1 2025-11-20 13:46:09.444 00:05:00.635 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:50:12.698 00:00:00.000 UDP 28.104.0.1:34393 -> 198.28.0.2:53 1 64 1 2025-11-20 13:50:12.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37346 1 109 1 2025-11-20 13:46:00.916 00:05:08.539 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:50:12.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34393 1 80 1 2025-11-20 13:50:20.245 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:46:09.912 00:05:51.069 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:51:13.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56933 1 109 1 2025-11-20 13:51:13.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40530 1 80 1 2025-11-20 13:51:12.991 00:00:00.000 UDP 28.104.0.1:56933 -> 198.28.0.2:53 1 64 1 2025-11-20 13:51:12.991 00:00:00.000 UDP 28.104.0.1:40530 -> 198.28.0.2:53 1 64 1 2025-11-20 13:52:13.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36591 1 109 1 2025-11-20 13:52:13.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41757 1 80 1 2025-11-20 13:48:00.926 00:05:08.518 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:52:13.250 00:00:00.000 UDP 28.104.0.1:41757 -> 198.28.0.2:53 1 64 1 2025-11-20 13:52:13.250 00:00:00.000 UDP 28.104.0.1:36591 -> 198.28.0.2:53 1 64 1 2025-11-20 13:53:13.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44910 1 109 1 2025-11-20 13:53:13.555 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55144 1 80 1 2025-11-20 13:53:13.545 00:00:00.000 UDP 28.104.0.1:44910 -> 198.28.0.2:53 1 64 1 2025-11-20 13:53:13.545 00:00:00.000 UDP 28.104.0.1:55144 -> 198.28.0.2:53 1 64 1 2025-11-20 13:48:58.624 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-20 13:49:09.923 00:05:50.996 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:54:13.834 00:00:00.000 UDP 28.104.0.1:41456 -> 198.28.0.2:53 1 64 1 2025-11-20 13:54:13.834 00:00:00.000 UDP 28.104.0.1:58189 -> 198.28.0.2:53 1 64 1 2025-11-20 13:54:13.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41456 1 80 1 2025-11-20 13:54:13.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58189 1 109 1 2025-11-20 13:55:14.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48938 1 109 1 2025-11-20 13:55:14.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43377 1 80 1 2025-11-20 13:55:14.128 00:00:00.000 UDP 28.104.0.1:43377 -> 198.28.0.2:53 1 64 1 2025-11-20 13:55:14.127 00:00:00.000 UDP 28.104.0.1:48938 -> 198.28.0.2:53 1 64 1 2025-11-20 13:55:20.441 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:52:00.920 00:05:08.535 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:52:09.444 00:05:00.642 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:51:09.445 00:06:00.242 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:56:14.426 00:00:00.000 UDP 28.104.0.1:41131 -> 198.28.0.2:53 1 64 1 2025-11-20 13:56:14.426 00:00:00.000 UDP 28.104.0.1:57135 -> 198.28.0.2:53 1 64 1 2025-11-20 13:56:14.435 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57135 1 109 1 2025-11-20 13:56:14.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41131 1 80 1 2025-11-20 13:52:09.913 00:05:51.056 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:57:14.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59952 1 80 1 2025-11-20 13:57:14.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37998 1 109 1 2025-11-20 13:57:14.718 00:00:00.000 UDP 28.104.0.1:59952 -> 198.28.0.2:53 1 64 1 2025-11-20 13:57:14.719 00:00:00.000 UDP 28.104.0.1:37998 -> 198.28.0.2:53 1 64 1 2025-11-20 13:54:00.929 00:05:08.517 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:58:15.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38163 1 80 1 2025-11-20 13:58:15.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46597 1 109 1 2025-11-20 13:58:15.041 00:00:00.000 UDP 28.104.0.1:46597 -> 198.28.0.2:53 1 64 1 2025-11-20 13:58:15.041 00:00:00.000 UDP 28.104.0.1:38163 -> 198.28.0.2:53 1 64 1 2025-11-20 13:54:18.634 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 Summary: total flows: 323, total bytes: 97157, total packets: 1432, avg bps: 201, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 12:55:09 - 2025-11-20 13:59:28 Total flows processed: 323, passed: 323, Blocks skipped: 0, Bytes read: 33656 Sys: 0.0044s User: 0.0026s Wall: 0.0040s flows/second: 80506.3 Runtime: 0.0040s