Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 16:59:06.325 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56143 1 80 1 2025-11-25 16:59:06.325 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34420 1 109 1 2025-11-25 16:59:06.314 00:00:00.000 UDP 28.104.0.1:34420 -> 198.28.0.2:53 1 64 1 2025-11-25 16:59:06.314 00:00:00.000 UDP 28.104.0.1:56143 -> 198.28.0.2:53 1 64 1 2025-11-25 17:00:06.571 00:00:00.000 UDP 28.104.0.1:34697 -> 198.28.0.2:53 1 64 1 2025-11-25 17:00:06.571 00:00:00.000 UDP 28.104.0.1:39558 -> 198.28.0.2:53 1 64 1 2025-11-25 17:00:06.581 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39558 1 109 1 2025-11-25 17:00:06.581 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34697 1 80 1 2025-11-25 17:01:06.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39413 1 80 1 2025-11-25 17:01:06.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57177 1 109 1 2025-11-25 17:01:06.861 00:00:00.000 UDP 28.104.0.1:39413 -> 198.28.0.2:53 1 64 1 2025-11-25 17:01:06.861 00:00:00.000 UDP 28.104.0.1:57177 -> 198.28.0.2:53 1 64 1 2025-11-25 16:56:12.356 00:06:00.354 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 16:57:03.791 00:05:08.577 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:02:07.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45790 1 109 1 2025-11-25 17:02:07.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60698 1 80 1 2025-11-25 16:57:12.457 00:05:51.384 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:02:07.181 00:00:00.000 UDP 28.104.0.1:45790 -> 198.28.0.2:53 1 64 1 2025-11-25 17:02:07.181 00:00:00.000 UDP 28.104.0.1:60698 -> 198.28.0.2:53 1 64 1 2025-11-25 16:57:58.817 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-11-25 16:58:03.800 00:05:08.558 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:02:48.688 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:03:07.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46676 1 80 1 2025-11-25 17:03:07.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35446 1 109 1 2025-11-25 17:03:07.546 00:00:00.000 UDP 28.104.0.1:46676 -> 198.28.0.2:53 1 64 1 2025-11-25 17:03:07.546 00:00:00.000 UDP 28.104.0.1:35446 -> 198.28.0.2:53 1 64 1 2025-11-25 16:59:03.791 00:05:08.677 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:04:07.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34599 1 109 1 2025-11-25 17:04:07.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58864 1 80 1 2025-11-25 17:04:07.845 00:00:00.000 UDP 28.104.0.1:34599 -> 198.28.0.2:53 1 64 1 2025-11-25 17:04:07.845 00:00:00.000 UDP 28.104.0.1:58864 -> 198.28.0.2:53 1 64 1 2025-11-25 16:59:12.357 00:06:00.207 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 17:05:08.160 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51483 1 80 1 2025-11-25 17:05:08.160 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41109 1 109 1 2025-11-25 17:05:08.150 00:00:00.000 UDP 28.104.0.1:51483 -> 198.28.0.2:53 1 64 1 2025-11-25 17:05:08.150 00:00:00.000 UDP 28.104.0.1:41109 -> 198.28.0.2:53 1 64 1 2025-11-25 17:06:08.399 00:00:00.000 UDP 28.104.0.1:41876 -> 198.28.0.2:53 1 64 1 2025-11-25 17:06:08.399 00:00:00.000 UDP 28.104.0.1:36410 -> 198.28.0.2:53 1 64 1 2025-11-25 17:06:08.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36410 1 80 1 2025-11-25 17:06:08.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41876 1 109 1 2025-11-25 17:07:08.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48893 1 80 1 2025-11-25 17:07:08.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40374 1 109 1 2025-11-25 17:07:08.669 00:00:00.000 UDP 28.104.0.1:48893 -> 198.28.0.2:53 1 64 1 2025-11-25 17:07:08.669 00:00:00.000 UDP 28.104.0.1:40374 -> 198.28.0.2:53 1 64 1 2025-11-25 17:03:03.791 00:05:08.577 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:03:18.825 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 2864 1 2025-11-25 17:07:48.517 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:08:08.965 00:00:00.000 UDP 28.104.0.1:44273 -> 198.28.0.2:53 1 64 1 2025-11-25 17:03:12.458 00:05:51.384 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:08:08.965 00:00:00.000 UDP 28.104.0.1:57046 -> 198.28.0.2:53 1 64 1 2025-11-25 17:08:08.974 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44273 1 80 1 2025-11-25 17:08:08.974 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57046 1 109 1 2025-11-25 17:03:12.356 00:06:00.356 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 17:04:03.800 00:05:08.557 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:09:09.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33889 1 109 1 2025-11-25 17:09:09.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39117 1 80 1 2025-11-25 17:05:03.792 00:05:08.678 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:09:09.256 00:00:00.000 UDP 28.104.0.1:33889 -> 198.28.0.2:53 1 64 1 2025-11-25 17:09:09.255 00:00:00.000 UDP 28.104.0.1:39117 -> 198.28.0.2:53 1 64 1 2025-11-25 17:10:09.550 00:00:00.000 UDP 28.104.0.1:44477 -> 198.28.0.2:53 1 64 1 2025-11-25 17:10:09.550 00:00:00.000 UDP 28.104.0.1:49149 -> 198.28.0.2:53 1 64 1 2025-11-25 17:10:09.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44477 1 109 1 2025-11-25 17:10:09.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49149 1 80 1 2025-11-25 17:11:09.888 00:00:00.000 UDP 28.104.0.1:34204 -> 198.28.0.2:53 1 64 1 2025-11-25 17:06:12.358 00:06:00.206 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 17:11:09.888 00:00:00.000 UDP 28.104.0.1:49802 -> 198.28.0.2:53 1 64 1 2025-11-25 17:11:09.899 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49802 1 80 1 2025-11-25 17:11:09.899 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34204 1 109 1 2025-11-25 17:12:10.193 00:00:00.000 UDP 28.104.0.1:37486 -> 198.28.0.2:53 1 64 1 2025-11-25 17:12:10.193 00:00:00.000 UDP 28.104.0.1:36597 -> 198.28.0.2:53 1 64 1 2025-11-25 17:12:10.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37486 1 80 1 2025-11-25 17:12:10.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36597 1 109 1 2025-11-25 17:12:48.746 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:08:38.829 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2336 1 2025-11-25 17:13:10.447 00:00:00.000 UDP 28.104.0.1:53860 -> 198.28.0.2:53 1 64 1 2025-11-25 17:13:10.447 00:00:00.000 UDP 28.104.0.1:44375 -> 198.28.0.2:53 1 64 1 2025-11-25 17:09:03.791 00:05:08.578 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:13:10.457 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44375 1 109 1 2025-11-25 17:13:10.457 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53860 1 80 1 2025-11-25 17:09:12.459 00:05:51.384 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:14:10.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37464 1 80 1 2025-11-25 17:14:10.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43744 1 109 1 2025-11-25 17:14:10.736 00:00:00.000 UDP 28.104.0.1:37464 -> 198.28.0.2:53 1 64 1 2025-11-25 17:14:10.736 00:00:00.000 UDP 28.104.0.1:43744 -> 198.28.0.2:53 1 64 1 2025-11-25 17:10:03.803 00:05:08.558 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:10:12.359 00:06:00.354 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 17:15:10.994 00:00:00.000 UDP 28.104.0.1:59123 -> 198.28.0.2:53 1 64 1 2025-11-25 17:15:10.994 00:00:00.000 UDP 28.104.0.1:39743 -> 198.28.0.2:53 1 64 1 2025-11-25 17:15:11.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59123 1 80 1 2025-11-25 17:15:11.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39743 1 109 1 2025-11-25 17:11:03.792 00:05:08.686 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:16:11.303 00:00:00.000 UDP 28.104.0.1:33039 -> 198.28.0.2:53 1 64 1 2025-11-25 17:16:11.303 00:00:00.000 UDP 28.104.0.1:54828 -> 198.28.0.2:53 1 64 1 2025-11-25 17:16:11.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33039 1 80 1 2025-11-25 17:16:11.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54828 1 109 1 2025-11-25 17:17:11.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35072 1 109 1 2025-11-25 17:17:11.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37670 1 80 1 2025-11-25 17:17:11.559 00:00:00.000 UDP 28.104.0.1:35072 -> 198.28.0.2:53 1 64 1 2025-11-25 17:17:11.559 00:00:00.000 UDP 28.104.0.1:37670 -> 198.28.0.2:53 1 64 1 2025-11-25 17:17:48.989 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:18:11.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45640 1 109 1 2025-11-25 17:18:11.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40320 1 80 1 2025-11-25 17:13:12.360 00:06:00.210 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 17:18:11.855 00:00:00.000 UDP 28.104.0.1:40320 -> 198.28.0.2:53 1 64 1 2025-11-25 17:18:11.855 00:00:00.000 UDP 28.104.0.1:45640 -> 198.28.0.2:53 1 64 1 2025-11-25 17:13:58.840 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2556 1 2025-11-25 17:19:12.143 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59792 1 109 1 2025-11-25 17:19:12.143 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39234 1 80 1 2025-11-25 17:15:03.792 00:05:08.584 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:19:12.133 00:00:00.000 UDP 28.104.0.1:59792 -> 198.28.0.2:53 1 64 1 2025-11-25 17:19:12.133 00:00:00.000 UDP 28.104.0.1:39234 -> 198.28.0.2:53 1 64 1 2025-11-25 17:15:12.467 00:05:51.383 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:20:12.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34776 1 80 1 2025-11-25 17:20:12.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52266 1 109 1 2025-11-25 17:20:12.437 00:00:00.000 UDP 28.104.0.1:52266 -> 198.28.0.2:53 1 64 1 2025-11-25 17:16:03.806 00:05:08.558 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:20:12.436 00:00:00.000 UDP 28.104.0.1:34776 -> 198.28.0.2:53 1 64 1 2025-11-25 17:21:12.747 00:00:00.000 UDP 28.104.0.1:60569 -> 198.28.0.2:53 1 64 1 2025-11-25 17:21:12.747 00:00:00.000 UDP 28.104.0.1:54908 -> 198.28.0.2:53 1 64 1 2025-11-25 17:21:12.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54908 1 80 1 2025-11-25 17:17:03.796 00:05:08.683 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:21:12.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60569 1 109 1 2025-11-25 17:17:12.360 00:06:00.355 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 17:22:13.010 00:00:00.000 UDP 28.104.0.1:37203 -> 198.28.0.2:53 1 64 1 2025-11-25 17:22:13.010 00:00:00.000 UDP 28.104.0.1:57608 -> 198.28.0.2:53 1 64 1 2025-11-25 17:22:13.035 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37203 1 109 1 2025-11-25 17:22:13.034 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57608 1 80 1 2025-11-25 17:22:48.930 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:23:13.349 00:00:00.000 UDP 28.104.0.1:42232 -> 198.28.0.2:53 1 64 1 2025-11-25 17:23:13.349 00:00:00.000 UDP 28.104.0.1:34139 -> 198.28.0.2:53 1 64 1 2025-11-25 17:23:13.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42232 1 109 1 2025-11-25 17:23:13.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34139 1 80 1 2025-11-25 17:19:18.847 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2452 1 2025-11-25 17:24:13.615 00:00:00.000 UDP 28.104.0.1:38585 -> 198.28.0.2:53 1 64 1 2025-11-25 17:24:13.615 00:00:00.000 UDP 28.104.0.1:59201 -> 198.28.0.2:53 1 64 1 2025-11-25 17:24:13.625 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59201 1 109 1 2025-11-25 17:24:13.625 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38585 1 80 1 2025-11-25 17:25:13.902 00:00:00.000 UDP 28.104.0.1:56600 -> 198.28.0.2:53 1 64 1 2025-11-25 17:20:12.365 00:06:00.210 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 17:25:13.902 00:00:00.000 UDP 28.104.0.1:59320 -> 198.28.0.2:53 1 64 1 2025-11-25 17:25:13.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56600 1 80 1 2025-11-25 17:21:03.801 00:05:08.576 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:25:13.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59320 1 109 1 2025-11-25 17:21:12.469 00:05:51.384 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:22:03.810 00:05:08.555 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:26:14.459 00:00:00.000 UDP 28.104.0.1:39671 -> 198.28.0.2:53 1 64 1 2025-11-25 17:26:14.459 00:00:00.000 UDP 28.104.0.1:35047 -> 198.28.0.2:53 1 64 1 2025-11-25 17:26:14.469 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35047 1 109 1 2025-11-25 17:26:14.469 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39671 1 80 1 2025-11-25 17:23:03.801 00:05:08.687 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:27:14.794 00:00:00.000 UDP 28.104.0.1:43261 -> 198.28.0.2:53 1 64 1 2025-11-25 17:27:14.794 00:00:00.000 UDP 28.104.0.1:44862 -> 198.28.0.2:53 1 64 1 2025-11-25 17:27:14.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44862 1 109 1 2025-11-25 17:27:14.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43261 1 80 1 2025-11-25 17:27:49.401 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:28:15.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59060 1 80 1 2025-11-25 17:28:15.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51894 1 109 1 2025-11-25 17:28:15.266 00:00:00.000 UDP 28.104.0.1:51894 -> 198.28.0.2:53 1 64 1 2025-11-25 17:28:15.266 00:00:00.000 UDP 28.104.0.1:59060 -> 198.28.0.2:53 1 64 1 2025-11-25 17:24:38.853 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2680 1 2025-11-25 17:24:12.366 00:06:00.350 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 17:29:15.560 00:00:00.000 UDP 28.104.0.1:52654 -> 198.28.0.2:53 1 64 1 2025-11-25 17:29:15.560 00:00:00.000 UDP 28.104.0.1:46074 -> 198.28.0.2:53 1 64 1 2025-11-25 17:29:15.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52654 1 109 1 2025-11-25 17:29:15.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46074 1 80 1 2025-11-25 17:30:15.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53274 1 80 1 2025-11-25 17:30:15.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37255 1 109 1 2025-11-25 17:30:15.854 00:00:00.000 UDP 28.104.0.1:53274 -> 198.28.0.2:53 1 64 1 2025-11-25 17:30:15.854 00:00:00.000 UDP 28.104.0.1:37255 -> 198.28.0.2:53 1 64 1 2025-11-25 17:27:03.802 00:05:08.576 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:31:16.146 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33563 1 80 1 2025-11-25 17:31:16.146 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50314 1 109 1 2025-11-25 17:31:16.136 00:00:00.000 UDP 28.104.0.1:33563 -> 198.28.0.2:53 1 64 1 2025-11-25 17:31:16.135 00:00:00.000 UDP 28.104.0.1:50314 -> 198.28.0.2:53 1 64 1 2025-11-25 17:27:12.472 00:05:51.381 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:28:03.812 00:05:08.556 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:27:12.366 00:06:00.214 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 17:32:16.442 00:00:00.000 UDP 28.104.0.1:54975 -> 198.28.0.2:53 1 64 1 2025-11-25 17:32:16.441 00:00:00.000 UDP 28.104.0.1:55979 -> 198.28.0.2:53 1 64 1 2025-11-25 17:32:16.452 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55979 1 109 1 2025-11-25 17:32:16.452 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54975 1 80 1 2025-11-25 17:32:49.190 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:29:03.802 00:05:08.686 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:33:16.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42331 1 109 1 2025-11-25 17:33:16.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60132 1 80 1 2025-11-25 17:33:16.736 00:00:00.000 UDP 28.104.0.1:60132 -> 198.28.0.2:53 1 64 1 2025-11-25 17:33:16.736 00:00:00.000 UDP 28.104.0.1:42331 -> 198.28.0.2:53 1 64 1 2025-11-25 17:29:58.857 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 2920 1 2025-11-25 17:34:17.003 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51974 1 80 1 2025-11-25 17:34:17.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57923 1 109 1 2025-11-25 17:34:16.991 00:00:00.000 UDP 28.104.0.1:51974 -> 198.28.0.2:53 1 64 1 2025-11-25 17:34:16.990 00:00:00.000 UDP 28.104.0.1:57923 -> 198.28.0.2:53 1 64 1 2025-11-25 17:35:17.291 00:00:00.000 UDP 28.104.0.1:54979 -> 198.28.0.2:53 1 64 1 2025-11-25 17:35:17.291 00:00:00.000 UDP 28.104.0.1:53660 -> 198.28.0.2:53 1 64 1 2025-11-25 17:35:17.301 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54979 1 80 1 2025-11-25 17:35:17.301 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53660 1 109 1 2025-11-25 17:31:12.367 00:06:00.350 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 17:36:17.584 00:00:00.000 UDP 28.104.0.1:44055 -> 198.28.0.2:53 1 64 1 2025-11-25 17:36:17.584 00:00:00.000 UDP 28.104.0.1:56886 -> 198.28.0.2:53 1 64 1 2025-11-25 17:36:17.594 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44055 1 109 1 2025-11-25 17:36:17.595 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56886 1 80 1 2025-11-25 17:33:03.803 00:05:08.577 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:37:17.884 00:00:00.000 UDP 28.104.0.1:44708 -> 198.28.0.2:53 1 64 1 2025-11-25 17:37:17.884 00:00:00.000 UDP 28.104.0.1:48639 -> 198.28.0.2:53 1 64 1 2025-11-25 17:37:17.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44708 1 80 1 2025-11-25 17:37:17.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48639 1 109 1 2025-11-25 17:37:49.220 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:33:12.482 00:05:51.373 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:34:03.813 00:05:08.556 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:38:18.180 00:00:00.000 UDP 28.104.0.1:52594 -> 198.28.0.2:53 1 64 1 2025-11-25 17:38:18.179 00:00:00.000 UDP 28.104.0.1:48045 -> 198.28.0.2:53 1 64 1 2025-11-25 17:38:18.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52594 1 80 1 2025-11-25 17:38:18.190 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48045 1 109 1 2025-11-25 17:34:12.370 00:06:00.211 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 17:35:03.803 00:05:08.687 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:39:18.473 00:00:00.000 UDP 28.104.0.1:43400 -> 198.28.0.2:53 1 64 1 2025-11-25 17:39:18.474 00:00:00.000 UDP 28.104.0.1:49435 -> 198.28.0.2:53 1 64 1 2025-11-25 17:39:18.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49435 1 109 1 2025-11-25 17:39:18.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43400 1 80 1 2025-11-25 17:35:18.864 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-11-25 17:40:18.772 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46757 1 109 1 2025-11-25 17:40:18.772 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46197 1 80 1 2025-11-25 17:40:18.761 00:00:00.000 UDP 28.104.0.1:46197 -> 198.28.0.2:53 1 64 1 2025-11-25 17:40:18.761 00:00:00.000 UDP 28.104.0.1:46757 -> 198.28.0.2:53 1 64 1 2025-11-25 17:41:19.067 00:00:00.000 UDP 28.104.0.1:35994 -> 198.28.0.2:53 1 64 1 2025-11-25 17:41:19.066 00:00:00.000 UDP 28.104.0.1:45862 -> 198.28.0.2:53 1 64 1 2025-11-25 17:41:19.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45862 1 80 1 2025-11-25 17:41:19.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35994 1 109 1 2025-11-25 17:42:19.374 00:00:00.000 UDP 28.104.0.1:60850 -> 198.28.0.2:53 1 64 1 2025-11-25 17:42:19.373 00:00:00.000 UDP 28.104.0.1:48078 -> 198.28.0.2:53 1 64 1 2025-11-25 17:42:19.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60850 1 109 1 2025-11-25 17:42:19.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48078 1 80 1 2025-11-25 17:42:49.459 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:38:12.369 00:06:00.348 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 17:39:03.806 00:05:08.575 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:43:19.680 00:00:00.000 UDP 28.104.0.1:34276 -> 198.28.0.2:53 1 64 1 2025-11-25 17:43:19.680 00:00:00.000 UDP 28.104.0.1:34494 -> 198.28.0.2:53 1 64 1 2025-11-25 17:43:19.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34276 1 80 1 2025-11-25 17:43:19.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34494 1 109 1 2025-11-25 17:39:12.479 00:05:51.378 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:40:03.814 00:05:08.561 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:44:19.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40496 1 80 1 2025-11-25 17:44:19.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34822 1 109 1 2025-11-25 17:44:19.980 00:00:00.000 UDP 28.104.0.1:40496 -> 198.28.0.2:53 1 64 1 2025-11-25 17:44:19.980 00:00:00.000 UDP 28.104.0.1:34822 -> 198.28.0.2:53 1 64 1 2025-11-25 17:40:38.868 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2636 1 2025-11-25 17:41:03.807 00:05:08.684 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:45:20.290 00:00:00.000 UDP 28.104.0.1:45608 -> 198.28.0.2:53 1 64 1 2025-11-25 17:45:20.290 00:00:00.000 UDP 28.104.0.1:32779 -> 198.28.0.2:53 1 64 1 2025-11-25 17:45:20.300 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32779 1 109 1 2025-11-25 17:45:20.300 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45608 1 80 1 2025-11-25 17:41:12.370 00:06:00.213 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 17:46:20.585 00:00:00.000 UDP 28.104.0.1:33820 -> 198.28.0.2:53 1 64 1 2025-11-25 17:46:20.585 00:00:00.000 UDP 28.104.0.1:34363 -> 198.28.0.2:53 1 64 1 2025-11-25 17:46:20.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34363 1 109 1 2025-11-25 17:46:20.595 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33820 1 80 1 2025-11-25 17:47:20.884 00:00:00.000 UDP 28.104.0.1:38277 -> 198.28.0.2:53 1 64 1 2025-11-25 17:47:20.884 00:00:00.000 UDP 28.104.0.1:48257 -> 198.28.0.2:53 1 64 1 2025-11-25 17:47:20.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38277 1 109 1 2025-11-25 17:47:20.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48257 1 80 1 2025-11-25 17:47:49.528 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:48:21.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33631 1 109 1 2025-11-25 17:48:21.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53235 1 80 1 2025-11-25 17:48:21.191 00:00:00.000 UDP 28.104.0.1:33631 -> 198.28.0.2:53 1 64 1 2025-11-25 17:48:21.191 00:00:00.000 UDP 28.104.0.1:53235 -> 198.28.0.2:53 1 64 1 2025-11-25 17:45:03.808 00:05:08.578 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:49:21.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39288 1 80 1 2025-11-25 17:49:21.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43825 1 109 1 2025-11-25 17:49:21.488 00:00:00.000 UDP 28.104.0.1:39288 -> 198.28.0.2:53 1 64 1 2025-11-25 17:49:21.489 00:00:00.000 UDP 28.104.0.1:43825 -> 198.28.0.2:53 1 64 1 2025-11-25 17:45:12.481 00:05:51.377 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:45:58.877 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-25 17:45:12.375 00:06:00.345 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 17:46:03.818 00:05:08.558 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:50:21.781 00:00:00.000 UDP 28.104.0.1:58887 -> 198.28.0.2:53 1 64 1 2025-11-25 17:50:21.781 00:00:00.000 UDP 28.104.0.1:36232 -> 198.28.0.2:53 1 64 1 2025-11-25 17:50:21.792 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36232 1 80 1 2025-11-25 17:50:21.792 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58887 1 109 1 2025-11-25 17:47:03.808 00:05:08.685 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:51:22.097 00:00:00.000 UDP 28.104.0.1:34873 -> 198.28.0.2:53 1 64 1 2025-11-25 17:51:22.097 00:00:00.000 UDP 28.104.0.1:44337 -> 198.28.0.2:53 1 64 1 2025-11-25 17:51:22.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34873 1 109 1 2025-11-25 17:51:22.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44337 1 80 1 2025-11-25 17:52:22.397 00:00:00.000 UDP 28.104.0.1:54532 -> 198.28.0.2:53 1 64 1 2025-11-25 17:52:22.396 00:00:00.000 UDP 28.104.0.1:42763 -> 198.28.0.2:53 1 64 1 2025-11-25 17:52:22.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54532 1 109 1 2025-11-25 17:52:22.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42763 1 80 1 2025-11-25 17:52:49.661 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:48:12.376 00:06:00.209 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 17:53:22.693 00:00:00.000 UDP 28.104.0.1:59009 -> 198.28.0.2:53 1 64 1 2025-11-25 17:53:22.693 00:00:00.000 UDP 28.104.0.1:53092 -> 198.28.0.2:53 1 64 1 2025-11-25 17:53:22.703 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53092 1 80 1 2025-11-25 17:53:22.703 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59009 1 109 1 2025-11-25 17:54:23.001 00:00:00.000 UDP 28.104.0.1:36409 -> 198.28.0.2:53 1 64 1 2025-11-25 17:54:23.001 00:00:00.000 UDP 28.104.0.1:59631 -> 198.28.0.2:53 1 64 1 2025-11-25 17:54:23.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59631 1 109 1 2025-11-25 17:54:23.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36409 1 80 1 2025-11-25 17:51:03.808 00:05:08.581 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 17:55:23.262 00:00:00.000 UDP 28.104.0.1:51156 -> 198.28.0.2:53 1 64 1 2025-11-25 17:55:23.263 00:00:00.000 UDP 28.104.0.1:44326 -> 198.28.0.2:53 1 64 1 2025-11-25 17:55:23.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44326 1 80 1 2025-11-25 17:55:23.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51156 1 109 1 2025-11-25 17:51:18.878 00:05:10.021 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2892 1 2025-11-25 17:51:12.482 00:05:51.378 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 17:52:03.819 00:05:08.560 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 17:56:23.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45154 1 109 1 2025-11-25 17:56:23.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60686 1 80 1 2025-11-25 17:56:23.558 00:00:00.000 UDP 28.104.0.1:60686 -> 198.28.0.2:53 1 64 1 2025-11-25 17:56:23.558 00:00:00.000 UDP 28.104.0.1:45154 -> 198.28.0.2:53 1 64 1 2025-11-25 17:52:12.378 00:06:00.344 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 17:53:03.810 00:05:08.685 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 17:57:23.856 00:00:00.000 UDP 28.104.0.1:37697 -> 198.28.0.2:53 1 64 1 2025-11-25 17:57:23.856 00:00:00.000 UDP 28.104.0.1:36614 -> 198.28.0.2:53 1 64 1 2025-11-25 17:57:23.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36614 1 80 1 2025-11-25 17:57:23.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37697 1 109 1 2025-11-25 17:57:49.636 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 17:58:24.184 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59952 1 80 1 2025-11-25 17:58:24.184 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40166 1 109 1 2025-11-25 17:58:24.174 00:00:00.000 UDP 28.104.0.1:59952 -> 198.28.0.2:53 1 64 1 2025-11-25 17:58:24.174 00:00:00.000 UDP 28.104.0.1:40166 -> 198.28.0.2:53 1 64 1 Summary: total flows: 320, total bytes: 94689, total packets: 1394, avg bps: 202, avg pps: 0, avg bpp: 67 Time window: 2025-11-25 16:56:12 - 2025-11-25 17:58:24 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0062s User: 0.0018s Wall: 0.0040s flows/second: 80990.7 Runtime: 0.0040s