Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 18:55:01.110 00:05:08.905 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:59:15.154 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38799 1 80 1 2025-11-20 18:59:15.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37984 1 109 1 2025-11-20 18:59:15.143 00:00:00.000 UDP 28.104.0.1:38799 -> 198.28.0.2:53 1 64 1 2025-11-20 18:59:15.143 00:00:00.000 UDP 28.104.0.1:37984 -> 198.28.0.2:53 1 64 1 2025-11-20 19:00:15.448 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44166 1 80 1 2025-11-20 19:00:15.448 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46665 1 109 1 2025-11-20 19:00:15.438 00:00:00.000 UDP 28.104.0.1:46665 -> 198.28.0.2:53 1 64 1 2025-11-20 19:00:15.437 00:00:00.000 UDP 28.104.0.1:44166 -> 198.28.0.2:53 1 64 1 2025-11-20 19:00:26.534 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:01:15.731 00:00:00.000 UDP 28.104.0.1:37346 -> 198.28.0.2:53 1 64 1 2025-11-20 19:01:15.731 00:00:00.000 UDP 28.104.0.1:33285 -> 198.28.0.2:53 1 64 1 2025-11-20 19:01:15.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37346 1 109 1 2025-11-20 19:01:15.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33285 1 80 1 2025-11-20 18:57:29.129 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2576 1 2025-11-20 18:57:09.526 00:05:51.584 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:02:16.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53781 1 109 1 2025-11-20 19:02:16.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53208 1 80 1 2025-11-20 18:58:09.516 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:02:16.053 00:00:00.000 UDP 28.104.0.1:53781 -> 198.28.0.2:53 1 64 1 2025-11-20 19:02:16.053 00:00:00.000 UDP 28.104.0.1:53208 -> 198.28.0.2:53 1 64 1 2025-11-20 18:58:10.005 00:05:51.156 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:03:16.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57920 1 109 1 2025-11-20 19:03:16.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38526 1 80 1 2025-11-20 19:03:16.347 00:00:00.000 UDP 28.104.0.1:57920 -> 198.28.0.2:53 1 64 1 2025-11-20 19:03:16.347 00:00:00.000 UDP 28.104.0.1:38526 -> 198.28.0.2:53 1 64 1 2025-11-20 18:59:09.516 00:05:51.604 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:59:09.516 00:06:00.273 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:04:16.636 00:00:00.000 UDP 28.104.0.1:60853 -> 198.28.0.2:53 1 64 1 2025-11-20 19:04:16.637 00:00:00.000 UDP 28.104.0.1:33764 -> 198.28.0.2:53 1 64 1 2025-11-20 19:04:16.646 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60853 1 109 1 2025-11-20 19:04:16.646 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33764 1 80 1 2025-11-20 19:01:01.109 00:05:08.907 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:05:16.941 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33390 1 80 1 2025-11-20 19:05:16.941 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33366 1 109 1 2025-11-20 19:05:16.931 00:00:00.000 UDP 28.104.0.1:33390 -> 198.28.0.2:53 1 64 1 2025-11-20 19:05:16.932 00:00:00.000 UDP 28.104.0.1:33366 -> 198.28.0.2:53 1 64 1 2025-11-20 19:05:26.662 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:06:17.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40659 1 109 1 2025-11-20 19:06:17.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54685 1 80 1 2025-11-20 19:06:17.248 00:00:00.000 UDP 28.104.0.1:40659 -> 198.28.0.2:53 1 64 1 2025-11-20 19:06:17.247 00:00:00.000 UDP 28.104.0.1:54685 -> 198.28.0.2:53 1 64 1 2025-11-20 19:02:49.140 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2376 1 2025-11-20 19:07:17.550 00:00:00.000 UDP 28.104.0.1:38611 -> 198.28.0.2:53 1 64 1 2025-11-20 19:07:17.551 00:00:00.000 UDP 28.104.0.1:43032 -> 198.28.0.2:53 1 64 1 2025-11-20 19:07:17.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43032 1 109 1 2025-11-20 19:07:17.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38611 1 80 1 2025-11-20 19:03:09.529 00:05:51.582 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:04:09.518 00:05:00.668 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:08:17.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57991 1 80 1 2025-11-20 19:08:17.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39366 1 109 1 2025-11-20 19:08:17.848 00:00:00.000 UDP 28.104.0.1:57991 -> 198.28.0.2:53 1 64 1 2025-11-20 19:08:17.848 00:00:00.000 UDP 28.104.0.1:39366 -> 198.28.0.2:53 1 64 1 2025-11-20 19:04:10.008 00:05:51.168 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:09:18.156 00:00:00.000 UDP 28.104.0.1:49482 -> 198.28.0.2:53 1 64 1 2025-11-20 19:09:18.156 00:00:00.000 UDP 28.104.0.1:43698 -> 198.28.0.2:53 1 64 1 2025-11-20 19:09:18.165 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49482 1 109 1 2025-11-20 19:09:18.165 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43698 1 80 1 2025-11-20 19:05:09.518 00:05:51.618 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:10:18.452 00:00:00.000 UDP 28.104.0.1:48316 -> 198.28.0.2:53 1 64 1 2025-11-20 19:10:18.452 00:00:00.000 UDP 28.104.0.1:53626 -> 198.28.0.2:53 1 64 1 2025-11-20 19:10:18.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53626 1 109 1 2025-11-20 19:10:18.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48316 1 80 1 2025-11-20 19:10:26.696 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:06:09.518 00:06:00.273 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:07:01.111 00:05:08.907 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:11:18.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60102 1 80 1 2025-11-20 19:11:18.761 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34751 1 109 1 2025-11-20 19:11:18.752 00:00:00.000 UDP 28.104.0.1:60102 -> 198.28.0.2:53 1 64 1 2025-11-20 19:11:18.751 00:00:00.000 UDP 28.104.0.1:34751 -> 198.28.0.2:53 1 64 1 2025-11-20 19:12:19.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35147 1 80 1 2025-11-20 19:12:19.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59527 1 109 1 2025-11-20 19:08:09.146 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-20 19:12:19.056 00:00:00.000 UDP 28.104.0.1:35147 -> 198.28.0.2:53 1 64 1 2025-11-20 19:12:19.056 00:00:00.000 UDP 28.104.0.1:59527 -> 198.28.0.2:53 1 64 1 2025-11-20 19:13:19.354 00:00:00.000 UDP 28.104.0.1:38817 -> 198.28.0.2:53 1 64 1 2025-11-20 19:13:19.354 00:00:00.000 UDP 28.104.0.1:52043 -> 198.28.0.2:53 1 64 1 2025-11-20 19:13:19.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52043 1 80 1 2025-11-20 19:13:19.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38817 1 109 1 2025-11-20 19:09:09.530 00:05:51.597 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:10:09.521 00:05:00.670 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:14:19.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46250 1 109 1 2025-11-20 19:14:19.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39067 1 80 1 2025-11-20 19:14:19.668 00:00:00.000 UDP 28.104.0.1:46250 -> 198.28.0.2:53 1 64 1 2025-11-20 19:14:19.667 00:00:00.000 UDP 28.104.0.1:39067 -> 198.28.0.2:53 1 64 1 2025-11-20 19:10:10.008 00:05:51.170 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:15:19.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58402 1 109 1 2025-11-20 19:15:19.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59318 1 80 1 2025-11-20 19:15:19.959 00:00:00.000 UDP 28.104.0.1:58402 -> 198.28.0.2:53 1 64 1 2025-11-20 19:15:19.959 00:00:00.000 UDP 28.104.0.1:59318 -> 198.28.0.2:53 1 64 1 2025-11-20 19:15:26.669 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:11:09.520 00:05:51.617 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:16:20.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57147 1 109 1 2025-11-20 19:16:20.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58962 1 80 1 2025-11-20 19:16:20.263 00:00:00.000 UDP 28.104.0.1:58962 -> 198.28.0.2:53 1 64 1 2025-11-20 19:16:20.263 00:00:00.000 UDP 28.104.0.1:57147 -> 198.28.0.2:53 1 64 1 2025-11-20 19:13:01.127 00:05:08.894 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:17:20.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51200 1 109 1 2025-11-20 19:17:20.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39859 1 80 1 2025-11-20 19:17:20.570 00:00:00.000 UDP 28.104.0.1:51200 -> 198.28.0.2:53 1 64 1 2025-11-20 19:17:20.571 00:00:00.000 UDP 28.104.0.1:39859 -> 198.28.0.2:53 1 64 1 2025-11-20 19:13:29.151 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-11-20 19:13:09.520 00:06:00.272 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:18:20.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40788 1 109 1 2025-11-20 19:18:20.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40220 1 80 1 2025-11-20 19:18:20.885 00:00:00.000 UDP 28.104.0.1:40220 -> 198.28.0.2:53 1 64 1 2025-11-20 19:18:20.885 00:00:00.000 UDP 28.104.0.1:40788 -> 198.28.0.2:53 1 64 1 2025-11-20 19:19:21.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34480 1 80 1 2025-11-20 19:19:21.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60668 1 109 1 2025-11-20 19:19:21.188 00:00:00.000 UDP 28.104.0.1:34480 -> 198.28.0.2:53 1 64 1 2025-11-20 19:19:21.188 00:00:00.000 UDP 28.104.0.1:60668 -> 198.28.0.2:53 1 64 1 2025-11-20 19:15:09.530 00:05:51.598 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:16:09.520 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:20:21.480 00:00:00.000 UDP 28.104.0.1:37183 -> 198.28.0.2:53 1 64 1 2025-11-20 19:20:21.480 00:00:00.000 UDP 28.104.0.1:36748 -> 198.28.0.2:53 1 64 1 2025-11-20 19:20:21.491 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37183 1 109 1 2025-11-20 19:20:21.491 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36748 1 80 1 2025-11-20 19:20:27.729 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:16:10.010 00:05:51.168 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:21:21.772 00:00:00.000 UDP 28.104.0.1:46981 -> 198.28.0.2:53 1 64 1 2025-11-20 19:21:21.772 00:00:00.000 UDP 28.104.0.1:50952 -> 198.28.0.2:53 1 64 1 2025-11-20 19:21:21.783 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46981 1 80 1 2025-11-20 19:21:21.783 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50952 1 109 1 2025-11-20 19:17:09.520 00:05:51.618 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:22:22.073 00:00:00.000 UDP 28.104.0.1:40414 -> 198.28.0.2:53 1 64 1 2025-11-20 19:22:22.072 00:00:00.000 UDP 28.104.0.1:44099 -> 198.28.0.2:53 1 64 1 2025-11-20 19:22:22.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44099 1 80 1 2025-11-20 19:22:22.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40414 1 109 1 2025-11-20 19:18:49.155 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 3004 1 2025-11-20 19:19:01.127 00:05:08.893 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:23:22.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53730 1 80 1 2025-11-20 19:23:22.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57689 1 109 1 2025-11-20 19:23:22.369 00:00:00.000 UDP 28.104.0.1:57689 -> 198.28.0.2:53 1 64 1 2025-11-20 19:23:22.369 00:00:00.000 UDP 28.104.0.1:53730 -> 198.28.0.2:53 1 64 1 2025-11-20 19:24:23.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35238 1 109 1 2025-11-20 19:24:23.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42530 1 80 1 2025-11-20 19:24:23.141 00:00:00.000 UDP 28.104.0.1:35238 -> 198.28.0.2:53 1 64 1 2025-11-20 19:24:23.141 00:00:00.000 UDP 28.104.0.1:42530 -> 198.28.0.2:53 1 64 1 2025-11-20 19:20:09.521 00:06:00.272 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:25:23.396 00:00:00.000 UDP 28.104.0.1:41842 -> 198.28.0.2:53 1 64 1 2025-11-20 19:25:23.396 00:00:00.000 UDP 28.104.0.1:37511 -> 198.28.0.2:53 1 64 1 2025-11-20 19:25:23.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41842 1 109 1 2025-11-20 19:25:23.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37511 1 80 1 2025-11-20 19:25:27.037 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:21:09.531 00:05:51.601 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:22:09.521 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:26:23.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52748 1 80 1 2025-11-20 19:26:23.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55835 1 109 1 2025-11-20 19:26:23.687 00:00:00.000 UDP 28.104.0.1:55835 -> 198.28.0.2:53 1 64 1 2025-11-20 19:26:23.687 00:00:00.000 UDP 28.104.0.1:52748 -> 198.28.0.2:53 1 64 1 2025-11-20 19:22:10.011 00:05:51.172 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:27:23.991 00:00:00.000 UDP 28.104.0.1:54297 -> 198.28.0.2:53 1 64 1 2025-11-20 19:27:23.991 00:00:00.000 UDP 28.104.0.1:42127 -> 198.28.0.2:53 1 64 1 2025-11-20 19:27:24.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54297 1 109 1 2025-11-20 19:27:24.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42127 1 80 1 2025-11-20 19:23:09.520 00:05:51.621 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:24:09.160 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 2908 1 2025-11-20 19:28:24.300 00:00:00.000 UDP 28.104.0.1:44537 -> 198.28.0.2:53 1 64 1 2025-11-20 19:28:24.300 00:00:00.000 UDP 28.104.0.1:56764 -> 198.28.0.2:53 1 64 1 2025-11-20 19:28:24.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56764 1 80 1 2025-11-20 19:28:24.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44537 1 109 1 2025-11-20 19:25:01.128 00:05:08.896 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:29:24.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51766 1 109 1 2025-11-20 19:29:24.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40488 1 80 1 2025-11-20 19:29:24.609 00:00:00.000 UDP 28.104.0.1:40488 -> 198.28.0.2:53 1 64 1 2025-11-20 19:29:24.609 00:00:00.000 UDP 28.104.0.1:51766 -> 198.28.0.2:53 1 64 1 2025-11-20 19:30:24.906 00:00:00.000 UDP 28.104.0.1:59407 -> 198.28.0.2:53 1 64 1 2025-11-20 19:30:24.906 00:00:00.000 UDP 28.104.0.1:54784 -> 198.28.0.2:53 1 64 1 2025-11-20 19:30:26.824 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:30:24.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54784 1 80 1 2025-11-20 19:30:24.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59407 1 109 1 2025-11-20 19:31:25.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46093 1 109 1 2025-11-20 19:31:25.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42369 1 80 1 2025-11-20 19:31:25.209 00:00:00.000 UDP 28.104.0.1:42369 -> 198.28.0.2:53 1 64 1 2025-11-20 19:31:25.209 00:00:00.000 UDP 28.104.0.1:46093 -> 198.28.0.2:53 1 64 1 2025-11-20 19:27:09.531 00:05:51.601 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:28:09.525 00:05:00.669 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:27:09.522 00:06:00.276 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:32:25.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45745 1 109 1 2025-11-20 19:32:25.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55617 1 80 1 2025-11-20 19:32:25.504 00:00:00.000 UDP 28.104.0.1:55617 -> 198.28.0.2:53 1 64 1 2025-11-20 19:32:25.504 00:00:00.000 UDP 28.104.0.1:45745 -> 198.28.0.2:53 1 64 1 2025-11-20 19:28:10.014 00:05:51.168 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:33:25.823 00:00:00.000 UDP 28.104.0.1:55588 -> 198.28.0.2:53 1 64 1 2025-11-20 19:33:25.824 00:00:00.000 UDP 28.104.0.1:43302 -> 198.28.0.2:53 1 64 1 2025-11-20 19:33:25.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55588 1 109 1 2025-11-20 19:33:25.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43302 1 80 1 2025-11-20 19:29:29.165 00:05:10.015 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2456 1 2025-11-20 19:29:09.522 00:05:51.620 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:34:26.095 00:00:00.000 UDP 28.104.0.1:46703 -> 198.28.0.2:53 1 64 1 2025-11-20 19:34:26.095 00:00:00.000 UDP 28.104.0.1:39569 -> 198.28.0.2:53 1 64 1 2025-11-20 19:34:26.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46703 1 80 1 2025-11-20 19:34:26.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39569 1 109 1 2025-11-20 19:31:01.132 00:05:08.893 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:35:26.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40748 1 80 1 2025-11-20 19:35:26.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45991 1 109 1 2025-11-20 19:35:27.154 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:35:26.687 00:00:00.000 UDP 28.104.0.1:40748 -> 198.28.0.2:53 1 64 1 2025-11-20 19:35:26.687 00:00:00.000 UDP 28.104.0.1:45991 -> 198.28.0.2:53 1 64 1 2025-11-20 19:36:27.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45713 1 109 1 2025-11-20 19:36:27.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50467 1 80 1 2025-11-20 19:36:27.051 00:00:00.000 UDP 28.104.0.1:50467 -> 198.28.0.2:53 1 64 1 2025-11-20 19:36:27.051 00:00:00.000 UDP 28.104.0.1:45713 -> 198.28.0.2:53 1 64 1 2025-11-20 19:37:27.355 00:00:00.000 UDP 28.104.0.1:52916 -> 198.28.0.2:53 1 64 1 2025-11-20 19:37:27.355 00:00:00.000 UDP 28.104.0.1:44936 -> 198.28.0.2:53 1 64 1 2025-11-20 19:37:27.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52916 1 109 1 2025-11-20 19:37:27.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44936 1 80 1 2025-11-20 19:33:09.532 00:05:51.600 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:34:09.523 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:38:27.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60826 1 80 1 2025-11-20 19:38:27.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35252 1 109 1 2025-11-20 19:38:27.653 00:00:00.000 UDP 28.104.0.1:35252 -> 198.28.0.2:53 1 64 1 2025-11-20 19:38:27.653 00:00:00.000 UDP 28.104.0.1:60826 -> 198.28.0.2:53 1 64 1 2025-11-20 19:34:10.015 00:05:51.168 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:34:49.181 00:05:10.015 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2256 1 2025-11-20 19:34:09.523 00:06:00.276 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:39:27.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46749 1 80 1 2025-11-20 19:39:27.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58651 1 109 1 2025-11-20 19:39:27.951 00:00:00.000 UDP 28.104.0.1:58651 -> 198.28.0.2:53 1 64 1 2025-11-20 19:39:27.951 00:00:00.000 UDP 28.104.0.1:46749 -> 198.28.0.2:53 1 64 1 2025-11-20 19:35:09.523 00:05:51.620 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:40:28.247 00:00:00.000 UDP 28.104.0.1:52462 -> 198.28.0.2:53 1 64 1 2025-11-20 19:40:28.247 00:00:00.000 UDP 28.104.0.1:55195 -> 198.28.0.2:53 1 64 1 2025-11-20 19:40:28.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55195 1 80 1 2025-11-20 19:40:27.579 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:40:28.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52462 1 109 1 2025-11-20 19:37:01.132 00:05:08.897 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:41:28.519 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33713 1 80 1 2025-11-20 19:41:28.518 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58809 1 109 1 2025-11-20 19:41:28.507 00:00:00.000 UDP 28.104.0.1:58809 -> 198.28.0.2:53 1 64 1 2025-11-20 19:41:28.507 00:00:00.000 UDP 28.104.0.1:33713 -> 198.28.0.2:53 1 64 1 2025-11-20 19:42:28.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55624 1 109 1 2025-11-20 19:42:28.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50751 1 80 1 2025-11-20 19:42:28.806 00:00:00.000 UDP 28.104.0.1:55624 -> 198.28.0.2:53 1 64 1 2025-11-20 19:42:28.806 00:00:00.000 UDP 28.104.0.1:50751 -> 198.28.0.2:53 1 64 1 2025-11-20 19:43:29.104 00:00:00.000 UDP 28.104.0.1:60807 -> 198.28.0.2:53 1 64 1 2025-11-20 19:43:29.104 00:00:00.000 UDP 28.104.0.1:40578 -> 198.28.0.2:53 1 64 1 2025-11-20 19:43:29.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60807 1 109 1 2025-11-20 19:43:29.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40578 1 80 1 2025-11-20 19:39:09.533 00:05:51.603 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:40:09.524 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:40:09.196 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 19:44:29.399 00:00:00.000 UDP 28.104.0.1:44206 -> 198.28.0.2:53 1 64 1 2025-11-20 19:44:29.399 00:00:00.000 UDP 28.104.0.1:54523 -> 198.28.0.2:53 1 64 1 2025-11-20 19:44:29.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44206 1 80 1 2025-11-20 19:44:29.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54523 1 109 1 2025-11-20 19:40:10.020 00:05:51.166 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:45:27.352 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:45:29.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60393 1 109 1 2025-11-20 19:45:29.703 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49515 1 80 1 2025-11-20 19:45:29.694 00:00:00.000 UDP 28.104.0.1:49515 -> 198.28.0.2:53 1 64 1 2025-11-20 19:45:29.694 00:00:00.000 UDP 28.104.0.1:60393 -> 198.28.0.2:53 1 64 1 2025-11-20 19:41:09.524 00:05:51.627 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:41:09.524 00:06:00.277 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:46:29.986 00:00:00.000 UDP 28.104.0.1:47060 -> 198.28.0.2:53 1 64 1 2025-11-20 19:46:29.986 00:00:00.000 UDP 28.104.0.1:39658 -> 198.28.0.2:53 1 64 1 2025-11-20 19:46:29.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39658 1 80 1 2025-11-20 19:46:29.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47060 1 109 1 2025-11-20 19:43:01.132 00:05:08.898 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:47:30.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60298 1 80 1 2025-11-20 19:47:30.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42727 1 109 1 2025-11-20 19:47:30.279 00:00:00.000 UDP 28.104.0.1:42727 -> 198.28.0.2:53 1 64 1 2025-11-20 19:47:30.279 00:00:00.000 UDP 28.104.0.1:60298 -> 198.28.0.2:53 1 64 1 2025-11-20 19:48:30.571 00:00:00.000 UDP 28.104.0.1:40871 -> 198.28.0.2:53 1 64 1 2025-11-20 19:48:30.571 00:00:00.000 UDP 28.104.0.1:42485 -> 198.28.0.2:53 1 64 1 2025-11-20 19:48:30.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42485 1 109 1 2025-11-20 19:48:30.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40871 1 80 1 2025-11-20 19:49:31.194 00:00:00.000 UDP 28.104.0.1:38117 -> 198.28.0.2:53 1 64 1 2025-11-20 19:49:31.194 00:00:00.000 UDP 28.104.0.1:51974 -> 198.28.0.2:53 1 64 1 2025-11-20 19:49:31.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38117 1 80 1 2025-11-20 19:49:31.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51974 1 109 1 2025-11-20 19:45:29.205 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 3020 1 2025-11-20 19:45:09.534 00:05:51.604 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:46:09.525 00:05:00.670 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:50:31.495 00:00:00.000 UDP 28.104.0.1:56415 -> 198.28.0.2:53 1 64 1 2025-11-20 19:50:31.495 00:00:00.000 UDP 28.104.0.1:36691 -> 198.28.0.2:53 1 64 1 2025-11-20 19:50:27.541 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:50:31.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36691 1 80 1 2025-11-20 19:50:31.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56415 1 109 1 2025-11-20 19:46:10.021 00:05:51.169 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:51:31.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53420 1 109 1 2025-11-20 19:51:31.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35382 1 80 1 2025-11-20 19:51:31.802 00:00:00.000 UDP 28.104.0.1:35382 -> 198.28.0.2:53 1 64 1 2025-11-20 19:51:31.802 00:00:00.000 UDP 28.104.0.1:53420 -> 198.28.0.2:53 1 64 1 2025-11-20 19:47:09.526 00:05:51.623 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:52:32.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41557 1 109 1 2025-11-20 19:52:32.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35930 1 80 1 2025-11-20 19:52:32.056 00:00:00.000 UDP 28.104.0.1:41557 -> 198.28.0.2:53 1 64 1 2025-11-20 19:52:32.056 00:00:00.000 UDP 28.104.0.1:35930 -> 198.28.0.2:53 1 64 1 2025-11-20 19:49:01.137 00:05:08.893 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:48:09.525 00:06:00.277 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:53:32.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43178 1 80 1 2025-11-20 19:53:32.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34045 1 109 1 2025-11-20 19:53:32.355 00:00:00.000 UDP 28.104.0.1:34045 -> 198.28.0.2:53 1 64 1 2025-11-20 19:53:32.355 00:00:00.000 UDP 28.104.0.1:43178 -> 198.28.0.2:53 1 64 1 2025-11-20 19:54:32.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56616 1 109 1 2025-11-20 19:54:32.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59745 1 80 1 2025-11-20 19:54:32.658 00:00:00.000 UDP 28.104.0.1:56616 -> 198.28.0.2:53 1 64 1 2025-11-20 19:54:32.658 00:00:00.000 UDP 28.104.0.1:59745 -> 198.28.0.2:53 1 64 1 2025-11-20 19:50:49.215 00:05:10.028 OSPF 28.0.2.2:0 -> 224.0.0.5:0 41 3052 1 2025-11-20 19:55:27.716 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:55:32.964 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35257 1 80 1 2025-11-20 19:55:32.964 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39137 1 109 1 2025-11-20 19:55:32.954 00:00:00.000 UDP 28.104.0.1:35257 -> 198.28.0.2:53 1 64 1 2025-11-20 19:55:32.955 00:00:00.000 UDP 28.104.0.1:39137 -> 198.28.0.2:53 1 64 1 2025-11-20 19:51:09.536 00:05:51.602 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:52:09.526 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:56:33.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56295 1 80 1 2025-11-20 19:56:33.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40425 1 109 1 2025-11-20 19:56:33.208 00:00:00.000 UDP 28.104.0.1:56295 -> 198.28.0.2:53 1 64 1 2025-11-20 19:56:33.208 00:00:00.000 UDP 28.104.0.1:40425 -> 198.28.0.2:53 1 64 1 2025-11-20 19:52:10.022 00:05:51.185 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:57:33.513 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43965 1 109 1 2025-11-20 19:57:33.513 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38548 1 80 1 2025-11-20 19:57:33.502 00:00:00.000 UDP 28.104.0.1:43965 -> 198.28.0.2:53 1 64 1 2025-11-20 19:57:33.503 00:00:00.000 UDP 28.104.0.1:38548 -> 198.28.0.2:53 1 64 1 2025-11-20 19:53:09.527 00:05:51.642 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:58:33.850 00:00:00.000 UDP 28.104.0.1:44369 -> 198.28.0.2:53 1 64 1 2025-11-20 19:58:33.850 00:00:00.000 UDP 28.104.0.1:57000 -> 198.28.0.2:53 1 64 1 2025-11-20 19:58:33.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44369 1 109 1 2025-11-20 19:58:33.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57000 1 80 1 Summary: total flows: 321, total bytes: 94456, total packets: 1389, avg bps: 196, avg pps: 0, avg bpp: 68 Time window: 2025-11-20 18:55:01 - 2025-11-20 19:59:01 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0048s User: 0.0019s Wall: 0.0041s flows/second: 77798.0 Runtime: 0.0041s