Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 08:59:36.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33662 1 80 1 2025-11-25 08:59:36.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59005 1 109 1 2025-11-25 08:59:36.309 00:00:00.000 UDP 28.104.0.1:59005 -> 198.28.0.2:53 1 64 1 2025-11-25 08:59:36.309 00:00:00.000 UDP 28.104.0.1:33662 -> 198.28.0.2:53 1 64 1 2025-11-25 09:00:36.611 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57579 1 80 1 2025-11-25 09:00:36.611 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59358 1 109 1 2025-11-25 09:00:36.601 00:00:00.000 UDP 28.104.0.1:59358 -> 198.28.0.2:53 1 64 1 2025-11-25 09:00:36.601 00:00:00.000 UDP 28.104.0.1:57579 -> 198.28.0.2:53 1 64 1 2025-11-25 08:57:03.570 00:05:08.623 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 08:56:12.182 00:06:00.179 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 09:01:36.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50616 1 109 1 2025-11-25 09:01:36.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42726 1 80 1 2025-11-25 09:01:36.891 00:00:00.000 UDP 28.104.0.1:50616 -> 198.28.0.2:53 1 64 1 2025-11-25 09:01:36.891 00:00:00.000 UDP 28.104.0.1:42726 -> 198.28.0.2:53 1 64 1 2025-11-25 08:57:12.284 00:05:51.344 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 08:58:03.581 00:05:08.602 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 08:58:18.143 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 2840 1 2025-11-25 09:02:38.824 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:02:37.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43915 1 80 1 2025-11-25 09:02:37.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49696 1 109 1 2025-11-25 09:02:37.210 00:00:00.000 UDP 28.104.0.1:43915 -> 198.28.0.2:53 1 64 1 2025-11-25 09:02:37.210 00:00:00.000 UDP 28.104.0.1:49696 -> 198.28.0.2:53 1 64 1 2025-11-25 08:59:03.572 00:05:08.732 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:03:37.482 00:00:00.000 UDP 28.104.0.1:36734 -> 198.28.0.2:53 1 64 1 2025-11-25 09:03:37.481 00:00:00.000 UDP 28.104.0.1:58424 -> 198.28.0.2:53 1 64 1 2025-11-25 09:03:37.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36734 1 80 1 2025-11-25 09:03:37.491 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58424 1 109 1 2025-11-25 09:04:37.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35589 1 109 1 2025-11-25 09:04:37.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50031 1 80 1 2025-11-25 09:04:37.736 00:00:00.000 UDP 28.104.0.1:35589 -> 198.28.0.2:53 1 64 1 2025-11-25 09:04:37.736 00:00:00.000 UDP 28.104.0.1:50031 -> 198.28.0.2:53 1 64 1 2025-11-25 09:00:12.182 00:06:00.365 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 09:05:38.054 00:00:00.000 UDP 28.104.0.1:35106 -> 198.28.0.2:53 1 64 1 2025-11-25 09:05:38.054 00:00:00.000 UDP 28.104.0.1:39339 -> 198.28.0.2:53 1 64 1 2025-11-25 09:05:38.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39339 1 109 1 2025-11-25 09:05:38.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35106 1 80 1 2025-11-25 09:06:38.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37186 1 109 1 2025-11-25 09:06:38.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60523 1 80 1 2025-11-25 09:06:38.353 00:00:00.000 UDP 28.104.0.1:60523 -> 198.28.0.2:53 1 64 1 2025-11-25 09:06:38.353 00:00:00.000 UDP 28.104.0.1:37186 -> 198.28.0.2:53 1 64 1 2025-11-25 09:03:03.578 00:05:08.617 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 09:07:38.634 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59590 1 80 1 2025-11-25 09:07:38.634 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39291 1 109 1 2025-11-25 09:07:38.624 00:00:00.000 UDP 28.104.0.1:39291 -> 198.28.0.2:53 1 64 1 2025-11-25 09:07:38.624 00:00:00.000 UDP 28.104.0.1:59590 -> 198.28.0.2:53 1 64 1 2025-11-25 09:07:39.054 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:03:38.148 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2620 1 2025-11-25 09:03:12.294 00:05:51.336 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:04:03.589 00:05:08.597 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 09:03:12.183 00:06:00.179 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 09:08:38.927 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50436 1 109 1 2025-11-25 09:08:38.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40318 1 80 1 2025-11-25 09:08:38.918 00:00:00.000 UDP 28.104.0.1:50436 -> 198.28.0.2:53 1 64 1 2025-11-25 09:08:38.917 00:00:00.000 UDP 28.104.0.1:40318 -> 198.28.0.2:53 1 64 1 2025-11-25 09:05:03.578 00:05:08.730 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:09:39.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32997 1 109 1 2025-11-25 09:09:39.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52191 1 80 1 2025-11-25 09:09:39.247 00:00:00.000 UDP 28.104.0.1:52191 -> 198.28.0.2:53 1 64 1 2025-11-25 09:09:39.247 00:00:00.000 UDP 28.104.0.1:32997 -> 198.28.0.2:53 1 64 1 2025-11-25 09:10:39.541 00:00:00.000 UDP 28.104.0.1:52052 -> 198.28.0.2:53 1 64 1 2025-11-25 09:10:39.541 00:00:00.000 UDP 28.104.0.1:52401 -> 198.28.0.2:53 1 64 1 2025-11-25 09:10:39.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52052 1 109 1 2025-11-25 09:10:39.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52401 1 80 1 2025-11-25 09:11:39.796 00:00:00.000 UDP 28.104.0.1:46851 -> 198.28.0.2:53 1 64 1 2025-11-25 09:11:39.796 00:00:00.000 UDP 28.104.0.1:58393 -> 198.28.0.2:53 1 64 1 2025-11-25 09:11:39.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58393 1 80 1 2025-11-25 09:11:39.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46851 1 109 1 2025-11-25 09:07:12.186 00:06:00.365 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 09:12:40.058 00:00:00.000 UDP 28.104.0.1:35684 -> 198.28.0.2:53 1 64 1 2025-11-25 09:12:40.055 00:00:00.000 UDP 28.104.0.1:48331 -> 198.28.0.2:53 1 64 1 2025-11-25 09:12:40.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35684 1 109 1 2025-11-25 09:12:39.059 00:00:00.035 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:12:40.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48331 1 80 1 2025-11-25 09:08:58.154 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 32 2176 1 2025-11-25 09:09:03.579 00:05:08.619 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 09:13:40.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59467 1 109 1 2025-11-25 09:13:40.369 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49024 1 80 1 2025-11-25 09:13:40.357 00:00:00.000 UDP 28.104.0.1:59467 -> 198.28.0.2:53 1 64 1 2025-11-25 09:13:40.357 00:00:00.000 UDP 28.104.0.1:49024 -> 198.28.0.2:53 1 64 1 2025-11-25 09:09:12.298 00:05:51.332 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:10:03.589 00:05:08.600 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 09:14:40.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57639 1 109 1 2025-11-25 09:14:40.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36171 1 80 1 2025-11-25 09:14:40.652 00:00:00.000 UDP 28.104.0.1:57639 -> 198.28.0.2:53 1 64 1 2025-11-25 09:14:40.652 00:00:00.000 UDP 28.104.0.1:36171 -> 198.28.0.2:53 1 64 1 2025-11-25 09:10:12.186 00:06:00.177 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 09:11:03.579 00:05:08.732 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:15:40.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39733 1 109 1 2025-11-25 09:15:40.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52965 1 80 1 2025-11-25 09:15:40.941 00:00:00.000 UDP 28.104.0.1:52965 -> 198.28.0.2:53 1 64 1 2025-11-25 09:15:40.941 00:00:00.000 UDP 28.104.0.1:39733 -> 198.28.0.2:53 1 64 1 2025-11-25 09:16:41.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38729 1 80 1 2025-11-25 09:16:41.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59276 1 109 1 2025-11-25 09:16:41.236 00:00:00.000 UDP 28.104.0.1:59276 -> 198.28.0.2:53 1 64 1 2025-11-25 09:16:41.237 00:00:00.000 UDP 28.104.0.1:38729 -> 198.28.0.2:53 1 64 1 2025-11-25 09:17:39.123 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:17:41.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38641 1 109 1 2025-11-25 09:17:41.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48645 1 80 1 2025-11-25 09:17:41.535 00:00:00.000 UDP 28.104.0.1:48645 -> 198.28.0.2:53 1 64 1 2025-11-25 09:17:41.535 00:00:00.000 UDP 28.104.0.1:38641 -> 198.28.0.2:53 1 64 1 2025-11-25 09:14:18.160 00:05:10.021 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2596 1 2025-11-25 09:18:41.841 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45316 1 80 1 2025-11-25 09:18:41.841 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57164 1 109 1 2025-11-25 09:18:41.831 00:00:00.000 UDP 28.104.0.1:57164 -> 198.28.0.2:53 1 64 1 2025-11-25 09:18:41.831 00:00:00.000 UDP 28.104.0.1:45316 -> 198.28.0.2:53 1 64 1 2025-11-25 09:14:12.188 00:06:00.364 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 09:15:03.582 00:05:08.620 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 09:19:42.126 00:00:00.000 UDP 28.104.0.1:48027 -> 198.28.0.2:53 1 64 1 2025-11-25 09:19:42.126 00:00:00.000 UDP 28.104.0.1:39813 -> 198.28.0.2:53 1 64 1 2025-11-25 09:19:42.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39813 1 109 1 2025-11-25 09:19:42.136 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48027 1 80 1 2025-11-25 09:15:12.301 00:05:51.330 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:16:03.591 00:05:08.600 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 09:20:42.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39418 1 80 1 2025-11-25 09:20:42.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34180 1 109 1 2025-11-25 09:20:42.420 00:00:00.000 UDP 28.104.0.1:34180 -> 198.28.0.2:53 1 64 1 2025-11-25 09:20:42.420 00:00:00.000 UDP 28.104.0.1:39418 -> 198.28.0.2:53 1 64 1 2025-11-25 09:17:03.581 00:05:08.732 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:21:42.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55126 1 80 1 2025-11-25 09:21:42.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37573 1 109 1 2025-11-25 09:21:42.712 00:00:00.000 UDP 28.104.0.1:55126 -> 198.28.0.2:53 1 64 1 2025-11-25 09:21:42.712 00:00:00.000 UDP 28.104.0.1:37573 -> 198.28.0.2:53 1 64 1 2025-11-25 09:17:12.191 00:06:00.175 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 09:22:39.169 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:22:43.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53946 1 109 1 2025-11-25 09:22:43.019 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50853 1 80 1 2025-11-25 09:22:43.004 00:00:00.000 UDP 28.104.0.1:53946 -> 198.28.0.2:53 1 64 1 2025-11-25 09:22:43.004 00:00:00.000 UDP 28.104.0.1:50853 -> 198.28.0.2:53 1 64 1 2025-11-25 09:23:43.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36098 1 109 1 2025-11-25 09:23:43.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42262 1 80 1 2025-11-25 09:23:43.306 00:00:00.000 UDP 28.104.0.1:36098 -> 198.28.0.2:53 1 64 1 2025-11-25 09:23:43.306 00:00:00.000 UDP 28.104.0.1:42262 -> 198.28.0.2:53 1 64 1 2025-11-25 09:19:38.168 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2536 1 2025-11-25 09:24:43.600 00:00:00.000 UDP 28.104.0.1:38899 -> 198.28.0.2:53 1 64 1 2025-11-25 09:24:43.600 00:00:00.000 UDP 28.104.0.1:55569 -> 198.28.0.2:53 1 64 1 2025-11-25 09:24:43.610 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55569 1 109 1 2025-11-25 09:24:43.610 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38899 1 80 1 2025-11-25 09:21:03.580 00:05:08.621 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 09:25:43.903 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53828 1 80 1 2025-11-25 09:25:43.903 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56168 1 109 1 2025-11-25 09:25:43.892 00:00:00.000 UDP 28.104.0.1:56168 -> 198.28.0.2:53 1 64 1 2025-11-25 09:25:43.892 00:00:00.000 UDP 28.104.0.1:53828 -> 198.28.0.2:53 1 64 1 2025-11-25 09:21:12.303 00:05:51.329 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:21:12.190 00:06:00.364 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 09:22:03.590 00:05:08.601 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 09:26:44.175 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48339 1 109 1 2025-11-25 09:26:44.175 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46563 1 80 1 2025-11-25 09:26:44.165 00:00:00.000 UDP 28.104.0.1:48339 -> 198.28.0.2:53 1 64 1 2025-11-25 09:26:44.165 00:00:00.000 UDP 28.104.0.1:46563 -> 198.28.0.2:53 1 64 1 2025-11-25 09:23:03.581 00:05:08.733 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:27:39.484 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:27:44.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57806 1 109 1 2025-11-25 09:27:44.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47396 1 80 1 2025-11-25 09:27:44.457 00:00:00.000 UDP 28.104.0.1:47396 -> 198.28.0.2:53 1 64 1 2025-11-25 09:27:44.457 00:00:00.000 UDP 28.104.0.1:57806 -> 198.28.0.2:53 1 64 1 2025-11-25 09:28:44.710 00:00:00.000 UDP 28.104.0.1:45290 -> 198.28.0.2:53 1 64 1 2025-11-25 09:28:44.710 00:00:00.000 UDP 28.104.0.1:53839 -> 198.28.0.2:53 1 64 1 2025-11-25 09:28:44.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53839 1 80 1 2025-11-25 09:28:44.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45290 1 109 1 2025-11-25 09:24:58.172 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 2924 1 2025-11-25 09:24:12.191 00:06:00.178 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 09:29:44.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38183 1 109 1 2025-11-25 09:29:44.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46542 1 80 1 2025-11-25 09:29:44.957 00:00:00.000 UDP 28.104.0.1:46542 -> 198.28.0.2:53 1 64 1 2025-11-25 09:29:44.957 00:00:00.000 UDP 28.104.0.1:38183 -> 198.28.0.2:53 1 64 1 2025-11-25 09:30:45.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58613 1 109 1 2025-11-25 09:30:45.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40723 1 80 1 2025-11-25 09:30:45.256 00:00:00.000 UDP 28.104.0.1:40723 -> 198.28.0.2:53 1 64 1 2025-11-25 09:30:45.256 00:00:00.000 UDP 28.104.0.1:58613 -> 198.28.0.2:53 1 64 1 2025-11-25 09:27:03.582 00:05:08.620 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 09:31:45.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37977 1 109 1 2025-11-25 09:31:45.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45115 1 80 1 2025-11-25 09:31:45.553 00:00:00.000 UDP 28.104.0.1:37977 -> 198.28.0.2:53 1 64 1 2025-11-25 09:31:45.552 00:00:00.000 UDP 28.104.0.1:45115 -> 198.28.0.2:53 1 64 1 2025-11-25 09:27:12.303 00:05:51.330 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:28:03.592 00:05:08.600 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 09:32:39.542 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:32:45.850 00:00:00.000 UDP 28.104.0.1:32812 -> 198.28.0.2:53 1 64 1 2025-11-25 09:32:45.850 00:00:00.000 UDP 28.104.0.1:43742 -> 198.28.0.2:53 1 64 1 2025-11-25 09:32:45.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43742 1 80 1 2025-11-25 09:32:45.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32812 1 109 1 2025-11-25 09:29:03.582 00:05:08.734 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:28:12.191 00:06:00.367 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 09:33:46.169 00:00:00.000 UDP 28.104.0.1:40228 -> 198.28.0.2:53 1 64 1 2025-11-25 09:33:46.169 00:00:00.000 UDP 28.104.0.1:38968 -> 198.28.0.2:53 1 64 1 2025-11-25 09:33:46.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40228 1 109 1 2025-11-25 09:33:46.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38968 1 80 1 2025-11-25 09:30:18.176 00:05:10.053 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-11-25 09:34:46.478 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57488 1 80 1 2025-11-25 09:34:46.478 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34046 1 109 1 2025-11-25 09:34:46.469 00:00:00.000 UDP 28.104.0.1:34046 -> 198.28.0.2:53 1 64 1 2025-11-25 09:34:46.469 00:00:00.000 UDP 28.104.0.1:57488 -> 198.28.0.2:53 1 64 1 2025-11-25 09:35:46.718 00:00:00.000 UDP 28.104.0.1:55375 -> 198.28.0.2:53 1 64 1 2025-11-25 09:35:46.718 00:00:00.000 UDP 28.104.0.1:39960 -> 198.28.0.2:53 1 64 1 2025-11-25 09:35:46.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55375 1 80 1 2025-11-25 09:35:46.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39960 1 109 1 2025-11-25 09:31:12.192 00:06:00.178 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 09:36:46.988 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36031 1 109 1 2025-11-25 09:36:46.988 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36964 1 80 1 2025-11-25 09:36:46.976 00:00:00.000 UDP 28.104.0.1:36031 -> 198.28.0.2:53 1 64 1 2025-11-25 09:36:46.976 00:00:00.000 UDP 28.104.0.1:36964 -> 198.28.0.2:53 1 64 1 2025-11-25 09:33:03.582 00:05:08.620 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 09:37:39.614 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:37:47.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40579 1 80 1 2025-11-25 09:37:47.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55332 1 109 1 2025-11-25 09:37:47.268 00:00:00.000 UDP 28.104.0.1:40579 -> 198.28.0.2:53 1 64 1 2025-11-25 09:37:47.267 00:00:00.000 UDP 28.104.0.1:55332 -> 198.28.0.2:53 1 64 1 2025-11-25 09:33:12.306 00:05:51.330 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:34:03.595 00:05:08.599 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 09:38:47.533 00:00:00.000 UDP 28.104.0.1:34365 -> 198.28.0.2:53 1 64 1 2025-11-25 09:38:47.533 00:00:00.000 UDP 28.104.0.1:60977 -> 198.28.0.2:53 1 64 1 2025-11-25 09:38:47.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60977 1 109 1 2025-11-25 09:38:47.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34365 1 80 1 2025-11-25 09:35:03.586 00:05:08.738 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:39:47.842 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40455 1 80 1 2025-11-25 09:39:47.842 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41331 1 109 1 2025-11-25 09:39:47.831 00:00:00.000 UDP 28.104.0.1:41331 -> 198.28.0.2:53 1 64 1 2025-11-25 09:39:47.832 00:00:00.000 UDP 28.104.0.1:40455 -> 198.28.0.2:53 1 64 1 2025-11-25 09:35:38.185 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2500 1 2025-11-25 09:35:12.193 00:06:00.369 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 09:40:48.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59000 1 80 1 2025-11-25 09:40:48.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59988 1 109 1 2025-11-25 09:40:48.127 00:00:00.000 UDP 28.104.0.1:59988 -> 198.28.0.2:53 1 64 1 2025-11-25 09:40:48.127 00:00:00.000 UDP 28.104.0.1:59000 -> 198.28.0.2:53 1 64 1 2025-11-25 09:41:48.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48319 1 109 1 2025-11-25 09:41:48.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40978 1 80 1 2025-11-25 09:41:48.422 00:00:00.000 UDP 28.104.0.1:40978 -> 198.28.0.2:53 1 64 1 2025-11-25 09:41:48.422 00:00:00.000 UDP 28.104.0.1:48319 -> 198.28.0.2:53 1 64 1 2025-11-25 09:42:39.702 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:42:48.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42972 1 80 1 2025-11-25 09:42:48.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60854 1 109 1 2025-11-25 09:42:48.712 00:00:00.000 UDP 28.104.0.1:60854 -> 198.28.0.2:53 1 64 1 2025-11-25 09:42:48.712 00:00:00.000 UDP 28.104.0.1:42972 -> 198.28.0.2:53 1 64 1 2025-11-25 09:38:12.192 00:06:00.178 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 09:39:03.587 00:05:08.618 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 09:43:49.003 00:00:00.000 UDP 28.104.0.1:36048 -> 198.28.0.2:53 1 64 1 2025-11-25 09:43:49.004 00:00:00.000 UDP 28.104.0.1:50387 -> 198.28.0.2:53 1 64 1 2025-11-25 09:43:49.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36048 1 80 1 2025-11-25 09:43:49.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50387 1 109 1 2025-11-25 09:39:12.308 00:05:51.328 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:40:03.596 00:05:08.598 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 09:44:49.306 00:00:00.000 UDP 28.104.0.1:43803 -> 198.28.0.2:53 1 64 1 2025-11-25 09:44:49.306 00:00:00.000 UDP 28.104.0.1:38111 -> 198.28.0.2:53 1 64 1 2025-11-25 09:44:49.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38111 1 80 1 2025-11-25 09:44:49.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43803 1 109 1 2025-11-25 09:40:58.191 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-25 09:41:03.586 00:05:08.733 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:45:49.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48669 1 80 1 2025-11-25 09:45:49.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34809 1 109 1 2025-11-25 09:45:49.555 00:00:00.000 UDP 28.104.0.1:34809 -> 198.28.0.2:53 1 64 1 2025-11-25 09:45:49.555 00:00:00.000 UDP 28.104.0.1:48669 -> 198.28.0.2:53 1 64 1 2025-11-25 09:46:49.808 00:00:00.000 UDP 28.104.0.1:51734 -> 198.28.0.2:53 1 64 1 2025-11-25 09:46:49.808 00:00:00.000 UDP 28.104.0.1:34501 -> 198.28.0.2:53 1 64 1 2025-11-25 09:46:49.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34501 1 80 1 2025-11-25 09:46:49.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51734 1 109 1 2025-11-25 09:42:12.194 00:06:00.368 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 09:47:39.867 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:47:50.102 00:00:00.000 UDP 28.104.0.1:45681 -> 198.28.0.2:53 1 64 1 2025-11-25 09:47:50.102 00:00:00.000 UDP 28.104.0.1:45065 -> 198.28.0.2:53 1 64 1 2025-11-25 09:47:50.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45681 1 80 1 2025-11-25 09:47:50.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45065 1 109 1 2025-11-25 09:48:50.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37570 1 109 1 2025-11-25 09:48:50.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60586 1 80 1 2025-11-25 09:48:50.354 00:00:00.000 UDP 28.104.0.1:37570 -> 198.28.0.2:53 1 64 1 2025-11-25 09:48:50.354 00:00:00.000 UDP 28.104.0.1:60586 -> 198.28.0.2:53 1 64 1 2025-11-25 09:45:03.586 00:05:08.619 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 09:49:50.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47237 1 109 1 2025-11-25 09:49:50.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57275 1 80 1 2025-11-25 09:49:50.650 00:00:00.000 UDP 28.104.0.1:47237 -> 198.28.0.2:53 1 64 1 2025-11-25 09:49:50.650 00:00:00.000 UDP 28.104.0.1:57275 -> 198.28.0.2:53 1 64 1 2025-11-25 09:45:12.309 00:05:51.330 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:46:03.596 00:05:08.599 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 09:45:12.193 00:06:00.187 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 09:46:18.200 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2892 1 2025-11-25 09:50:50.897 00:00:00.000 UDP 28.104.0.1:52159 -> 198.28.0.2:53 1 64 1 2025-11-25 09:50:50.897 00:00:00.000 UDP 28.104.0.1:37977 -> 198.28.0.2:53 1 64 1 2025-11-25 09:50:50.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52159 1 80 1 2025-11-25 09:50:50.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37977 1 109 1 2025-11-25 09:47:03.588 00:05:08.733 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:51:51.198 00:00:00.000 UDP 28.104.0.1:45542 -> 198.28.0.2:53 1 64 1 2025-11-25 09:51:51.198 00:00:00.000 UDP 28.104.0.1:44165 -> 198.28.0.2:53 1 64 1 2025-11-25 09:51:51.208 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45542 1 80 1 2025-11-25 09:51:51.208 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44165 1 109 1 2025-11-25 09:52:39.962 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:52:51.494 00:00:00.000 UDP 28.104.0.1:34066 -> 198.28.0.2:53 1 64 1 2025-11-25 09:52:51.494 00:00:00.000 UDP 28.104.0.1:58962 -> 198.28.0.2:53 1 64 1 2025-11-25 09:52:51.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34066 1 80 1 2025-11-25 09:52:51.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58962 1 109 1 2025-11-25 09:53:51.786 00:00:00.000 UDP 28.104.0.1:48554 -> 198.28.0.2:53 1 64 1 2025-11-25 09:53:51.786 00:00:00.000 UDP 28.104.0.1:34568 -> 198.28.0.2:53 1 64 1 2025-11-25 09:53:51.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34568 1 109 1 2025-11-25 09:53:51.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48554 1 80 1 2025-11-25 09:49:12.195 00:06:00.367 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 09:54:52.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38008 1 109 1 2025-11-25 09:54:52.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39017 1 80 1 2025-11-25 09:54:52.094 00:00:00.000 UDP 28.104.0.1:39017 -> 198.28.0.2:53 1 64 1 2025-11-25 09:54:52.094 00:00:00.000 UDP 28.104.0.1:38008 -> 198.28.0.2:53 1 64 1 2025-11-25 09:51:03.589 00:05:08.619 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 09:51:38.210 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2608 1 2025-11-25 09:55:52.385 00:00:00.000 UDP 28.104.0.1:58639 -> 198.28.0.2:53 1 64 1 2025-11-25 09:55:52.385 00:00:00.000 UDP 28.104.0.1:45483 -> 198.28.0.2:53 1 64 1 2025-11-25 09:55:52.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58639 1 80 1 2025-11-25 09:55:52.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45483 1 109 1 2025-11-25 09:51:12.310 00:05:51.331 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 09:52:03.599 00:05:08.599 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 09:56:52.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35619 1 109 1 2025-11-25 09:56:52.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45168 1 80 1 2025-11-25 09:56:52.674 00:00:00.000 UDP 28.104.0.1:45168 -> 198.28.0.2:53 1 64 1 2025-11-25 09:56:52.674 00:00:00.000 UDP 28.104.0.1:35619 -> 198.28.0.2:53 1 64 1 2025-11-25 09:52:12.195 00:06:00.187 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 09:53:03.588 00:05:08.733 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 09:57:40.069 00:00:00.037 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 09:57:52.977 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45456 1 80 1 2025-11-25 09:57:52.977 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47002 1 109 1 2025-11-25 09:57:52.967 00:00:00.000 UDP 28.104.0.1:45456 -> 198.28.0.2:53 1 64 1 2025-11-25 09:57:52.967 00:00:00.000 UDP 28.104.0.1:47002 -> 198.28.0.2:53 1 64 1 2025-11-25 09:58:53.263 00:00:00.000 UDP 28.104.0.1:54217 -> 198.28.0.2:53 1 64 1 2025-11-25 09:58:53.263 00:00:00.000 UDP 28.104.0.1:57455 -> 198.28.0.2:53 1 64 1 2025-11-25 09:58:53.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57455 1 80 1 2025-11-25 09:58:53.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54217 1 109 1 Summary: total flows: 320, total bytes: 94549, total packets: 1393, avg bps: 201, avg pps: 0, avg bpp: 67 Time window: 2025-11-25 08:56:12 - 2025-11-25 09:58:53 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0039s User: 0.0039s Wall: 0.0036s flows/second: 88762.5 Runtime: 0.0036s