Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 14:59:20.639 00:00:00.000 UDP 28.104.0.1:37260 -> 198.28.0.2:53 1 64 1 2025-11-26 14:59:20.640 00:00:00.000 UDP 28.104.0.1:43021 -> 198.28.0.2:53 1 64 1 2025-11-26 14:59:20.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43021 1 80 1 2025-11-26 14:59:20.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37260 1 109 1 2025-11-26 15:00:20.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55190 1 109 1 2025-11-26 15:00:20.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38103 1 80 1 2025-11-26 15:00:20.896 00:00:00.000 UDP 28.104.0.1:55190 -> 198.28.0.2:53 1 64 1 2025-11-26 15:00:20.896 00:00:00.000 UDP 28.104.0.1:38103 -> 198.28.0.2:53 1 64 1 2025-11-26 14:56:12.795 00:05:51.423 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:01:21.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37342 1 109 1 2025-11-26 15:01:21.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41499 1 80 1 2025-11-26 15:01:21.192 00:00:00.000 UDP 28.104.0.1:37342 -> 198.28.0.2:53 1 64 1 2025-11-26 15:01:21.192 00:00:00.000 UDP 28.104.0.1:41499 -> 198.28.0.2:53 1 64 1 2025-11-26 14:57:12.783 00:05:51.443 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 14:57:12.872 00:05:51.394 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:02:21.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56543 1 80 1 2025-11-26 15:02:21.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34831 1 109 1 2025-11-26 15:02:21.494 00:00:00.000 UDP 28.104.0.1:56543 -> 198.28.0.2:53 1 64 1 2025-11-26 15:02:21.494 00:00:00.000 UDP 28.104.0.1:34831 -> 198.28.0.2:53 1 64 1 2025-11-26 14:58:12.882 00:05:51.335 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:03:14.978 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 14:59:12.784 00:05:00.472 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 14:59:12.784 00:05:00.363 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:03:21.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38980 1 109 1 2025-11-26 15:03:21.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54958 1 80 1 2025-11-26 15:03:21.757 00:00:00.000 UDP 28.104.0.1:38980 -> 198.28.0.2:53 1 64 1 2025-11-26 15:03:21.757 00:00:00.000 UDP 28.104.0.1:54958 -> 198.28.0.2:53 1 64 1 2025-11-26 14:59:30.450 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2824 1 2025-11-26 15:04:22.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48463 1 80 1 2025-11-26 15:04:22.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43268 1 109 1 2025-11-26 15:04:22.076 00:00:00.000 UDP 28.104.0.1:43268 -> 198.28.0.2:53 1 64 1 2025-11-26 15:04:22.076 00:00:00.000 UDP 28.104.0.1:48463 -> 198.28.0.2:53 1 64 1 2025-11-26 15:05:22.326 00:00:00.000 UDP 28.104.0.1:48797 -> 198.28.0.2:53 1 64 1 2025-11-26 15:05:22.327 00:00:00.000 UDP 28.104.0.1:54524 -> 198.28.0.2:53 1 64 1 2025-11-26 15:05:22.339 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54524 1 109 1 2025-11-26 15:05:22.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48797 1 80 1 2025-11-26 15:06:22.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56191 1 109 1 2025-11-26 15:06:22.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38897 1 80 1 2025-11-26 15:06:22.606 00:00:00.000 UDP 28.104.0.1:56191 -> 198.28.0.2:53 1 64 1 2025-11-26 15:06:22.606 00:00:00.000 UDP 28.104.0.1:38897 -> 198.28.0.2:53 1 64 1 2025-11-26 15:02:12.796 00:05:51.424 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:07:22.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46645 1 80 1 2025-11-26 15:07:22.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43165 1 109 1 2025-11-26 15:07:22.898 00:00:00.000 UDP 28.104.0.1:46645 -> 198.28.0.2:53 1 64 1 2025-11-26 15:07:22.898 00:00:00.000 UDP 28.104.0.1:43165 -> 198.28.0.2:53 1 64 1 2025-11-26 15:03:12.785 00:05:51.444 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 15:03:12.873 00:05:51.396 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:08:15.135 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:08:23.205 00:00:00.000 UDP 28.104.0.1:56882 -> 198.28.0.2:53 1 64 1 2025-11-26 15:08:23.205 00:00:00.000 UDP 28.104.0.1:49710 -> 198.28.0.2:53 1 64 1 2025-11-26 15:08:23.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56882 1 80 1 2025-11-26 15:08:23.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49710 1 109 1 2025-11-26 15:04:50.454 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2620 1 2025-11-26 15:04:12.884 00:05:51.336 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:05:12.786 00:05:00.365 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:05:12.786 00:05:00.473 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 15:09:23.501 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36625 1 80 1 2025-11-26 15:09:23.501 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43065 1 109 1 2025-11-26 15:09:23.492 00:00:00.000 UDP 28.104.0.1:43065 -> 198.28.0.2:53 1 64 1 2025-11-26 15:09:23.492 00:00:00.000 UDP 28.104.0.1:36625 -> 198.28.0.2:53 1 64 1 2025-11-26 15:10:23.795 00:00:00.000 UDP 28.104.0.1:48111 -> 198.28.0.2:53 1 64 1 2025-11-26 15:10:23.795 00:00:00.000 UDP 28.104.0.1:55391 -> 198.28.0.2:53 1 64 1 2025-11-26 15:10:23.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55391 1 109 1 2025-11-26 15:10:23.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48111 1 80 1 2025-11-26 15:11:24.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33441 1 80 1 2025-11-26 15:11:24.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59396 1 109 1 2025-11-26 15:11:24.096 00:00:00.000 UDP 28.104.0.1:59396 -> 198.28.0.2:53 1 64 1 2025-11-26 15:11:24.096 00:00:00.000 UDP 28.104.0.1:33441 -> 198.28.0.2:53 1 64 1 2025-11-26 15:12:24.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35402 1 109 1 2025-11-26 15:12:24.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35714 1 80 1 2025-11-26 15:12:24.391 00:00:00.000 UDP 28.104.0.1:35402 -> 198.28.0.2:53 1 64 1 2025-11-26 15:12:24.391 00:00:00.000 UDP 28.104.0.1:35714 -> 198.28.0.2:53 1 64 1 2025-11-26 15:08:12.797 00:05:51.424 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:13:15.166 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:13:24.661 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47585 1 109 1 2025-11-26 15:13:24.661 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37222 1 80 1 2025-11-26 15:13:24.651 00:00:00.000 UDP 28.104.0.1:47585 -> 198.28.0.2:53 1 64 1 2025-11-26 15:13:24.651 00:00:00.000 UDP 28.104.0.1:37222 -> 198.28.0.2:53 1 64 1 2025-11-26 15:09:12.786 00:05:51.448 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 15:09:12.880 00:05:51.394 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:10:10.460 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2256 1 2025-11-26 15:14:24.944 00:00:00.000 UDP 28.104.0.1:52276 -> 198.28.0.2:53 1 64 1 2025-11-26 15:14:24.944 00:00:00.000 UDP 28.104.0.1:40750 -> 198.28.0.2:53 1 64 1 2025-11-26 15:14:24.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52276 1 80 1 2025-11-26 15:14:24.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40750 1 109 1 2025-11-26 15:10:12.889 00:05:51.336 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:11:12.790 00:05:00.469 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 15:11:12.790 00:05:00.366 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:15:25.250 00:00:00.000 UDP 28.104.0.1:36951 -> 198.28.0.2:53 1 64 1 2025-11-26 15:15:25.250 00:00:00.000 UDP 28.104.0.1:41994 -> 198.28.0.2:53 1 64 1 2025-11-26 15:15:25.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36951 1 80 1 2025-11-26 15:15:25.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41994 1 109 1 2025-11-26 15:16:25.538 00:00:00.000 UDP 28.104.0.1:51594 -> 198.28.0.2:53 1 64 1 2025-11-26 15:16:25.538 00:00:00.000 UDP 28.104.0.1:44093 -> 198.28.0.2:53 1 64 1 2025-11-26 15:16:25.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51594 1 80 1 2025-11-26 15:16:25.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44093 1 109 1 2025-11-26 15:17:25.788 00:00:00.000 UDP 28.104.0.1:47541 -> 198.28.0.2:53 1 64 1 2025-11-26 15:17:25.788 00:00:00.000 UDP 28.104.0.1:38866 -> 198.28.0.2:53 1 64 1 2025-11-26 15:17:25.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38866 1 80 1 2025-11-26 15:17:25.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47541 1 109 1 2025-11-26 15:18:15.630 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:18:26.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58534 1 109 1 2025-11-26 15:18:26.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35070 1 80 1 2025-11-26 15:18:26.061 00:00:00.000 UDP 28.104.0.1:35070 -> 198.28.0.2:53 1 64 1 2025-11-26 15:18:26.061 00:00:00.000 UDP 28.104.0.1:58534 -> 198.28.0.2:53 1 64 1 2025-11-26 15:14:12.800 00:05:51.426 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:19:26.355 00:00:00.000 UDP 28.104.0.1:60345 -> 198.28.0.2:53 1 64 1 2025-11-26 15:19:26.355 00:00:00.000 UDP 28.104.0.1:35668 -> 198.28.0.2:53 1 64 1 2025-11-26 15:19:26.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60345 1 80 1 2025-11-26 15:19:26.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35668 1 109 1 2025-11-26 15:15:30.470 00:05:10.030 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2596 1 2025-11-26 15:15:12.790 00:05:51.446 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 15:15:12.883 00:05:51.394 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:20:26.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49003 1 80 1 2025-11-26 15:20:26.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50542 1 109 1 2025-11-26 15:20:26.649 00:00:00.000 UDP 28.104.0.1:50542 -> 198.28.0.2:53 1 64 1 2025-11-26 15:20:26.649 00:00:00.000 UDP 28.104.0.1:49003 -> 198.28.0.2:53 1 64 1 2025-11-26 15:16:12.893 00:05:51.333 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:17:12.790 00:05:00.472 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 15:17:12.790 00:05:00.366 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:21:26.897 00:00:00.000 UDP 28.104.0.1:48965 -> 198.28.0.2:53 1 64 1 2025-11-26 15:21:26.897 00:00:00.000 UDP 28.104.0.1:50261 -> 198.28.0.2:53 1 64 1 2025-11-26 15:21:26.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48965 1 109 1 2025-11-26 15:21:26.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50261 1 80 1 2025-11-26 15:22:27.169 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37641 1 80 1 2025-11-26 15:22:27.169 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34898 1 109 1 2025-11-26 15:22:27.160 00:00:00.000 UDP 28.104.0.1:37641 -> 198.28.0.2:53 1 64 1 2025-11-26 15:22:27.160 00:00:00.000 UDP 28.104.0.1:34898 -> 198.28.0.2:53 1 64 1 2025-11-26 15:23:15.446 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:23:27.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59316 1 109 1 2025-11-26 15:23:27.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33591 1 80 1 2025-11-26 15:23:27.822 00:00:00.000 UDP 28.104.0.1:59316 -> 198.28.0.2:53 1 64 1 2025-11-26 15:23:27.822 00:00:00.000 UDP 28.104.0.1:33591 -> 198.28.0.2:53 1 64 1 2025-11-26 15:24:28.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58134 1 80 1 2025-11-26 15:24:28.130 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34699 1 109 1 2025-11-26 15:24:28.119 00:00:00.000 UDP 28.104.0.1:58134 -> 198.28.0.2:53 1 64 1 2025-11-26 15:24:28.119 00:00:00.000 UDP 28.104.0.1:34699 -> 198.28.0.2:53 1 64 1 2025-11-26 15:20:50.485 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2696 1 2025-11-26 15:20:12.801 00:05:51.426 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:25:28.370 00:00:00.000 UDP 28.104.0.1:53992 -> 198.28.0.2:53 1 64 1 2025-11-26 15:25:28.370 00:00:00.000 UDP 28.104.0.1:55062 -> 198.28.0.2:53 1 64 1 2025-11-26 15:25:28.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55062 1 80 1 2025-11-26 15:25:28.385 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53992 1 109 1 2025-11-26 15:21:12.791 00:05:51.445 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 15:21:12.884 00:05:51.392 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:26:28.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54524 1 80 1 2025-11-26 15:26:28.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42937 1 109 1 2025-11-26 15:26:28.668 00:00:00.000 UDP 28.104.0.1:54524 -> 198.28.0.2:53 1 64 1 2025-11-26 15:26:28.667 00:00:00.000 UDP 28.104.0.1:42937 -> 198.28.0.2:53 1 64 1 2025-11-26 15:22:12.895 00:05:51.332 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:23:12.791 00:05:00.473 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 15:23:12.791 00:05:00.367 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:27:28.970 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41755 1 80 1 2025-11-26 15:27:28.970 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46705 1 109 1 2025-11-26 15:27:28.960 00:00:00.000 UDP 28.104.0.1:46705 -> 198.28.0.2:53 1 64 1 2025-11-26 15:27:28.960 00:00:00.000 UDP 28.104.0.1:41755 -> 198.28.0.2:53 1 64 1 2025-11-26 15:28:15.588 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:28:29.288 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36095 1 80 1 2025-11-26 15:28:29.290 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46388 1 109 1 2025-11-26 15:28:29.280 00:00:00.000 UDP 28.104.0.1:46388 -> 198.28.0.2:53 1 64 1 2025-11-26 15:28:29.277 00:00:00.000 UDP 28.104.0.1:36095 -> 198.28.0.2:53 1 64 1 2025-11-26 15:29:29.611 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53248 1 80 1 2025-11-26 15:29:29.611 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41695 1 109 1 2025-11-26 15:29:29.600 00:00:00.000 UDP 28.104.0.1:41695 -> 198.28.0.2:53 1 64 1 2025-11-26 15:29:29.600 00:00:00.000 UDP 28.104.0.1:53248 -> 198.28.0.2:53 1 64 1 2025-11-26 15:26:10.495 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2800 1 2025-11-26 15:30:29.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52324 1 80 1 2025-11-26 15:30:29.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34269 1 109 1 2025-11-26 15:30:29.896 00:00:00.000 UDP 28.104.0.1:34269 -> 198.28.0.2:53 1 64 1 2025-11-26 15:30:29.896 00:00:00.000 UDP 28.104.0.1:52324 -> 198.28.0.2:53 1 64 1 2025-11-26 15:26:12.802 00:05:51.426 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:31:30.159 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41339 1 109 1 2025-11-26 15:31:30.159 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44760 1 80 1 2025-11-26 15:31:30.149 00:00:00.000 UDP 28.104.0.1:41339 -> 198.28.0.2:53 1 64 1 2025-11-26 15:31:30.149 00:00:00.000 UDP 28.104.0.1:44760 -> 198.28.0.2:53 1 64 1 2025-11-26 15:27:12.803 00:05:51.436 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 15:27:12.885 00:05:51.394 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:32:30.441 00:00:00.000 UDP 28.104.0.1:54436 -> 198.28.0.2:53 1 64 1 2025-11-26 15:32:30.441 00:00:00.000 UDP 28.104.0.1:37972 -> 198.28.0.2:53 1 64 1 2025-11-26 15:32:30.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37972 1 109 1 2025-11-26 15:32:30.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54436 1 80 1 2025-11-26 15:28:12.894 00:05:51.334 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:29:12.795 00:05:00.382 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:33:15.837 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:29:12.794 00:05:00.474 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 15:33:30.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52054 1 109 1 2025-11-26 15:33:30.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48449 1 80 1 2025-11-26 15:33:30.739 00:00:00.000 UDP 28.104.0.1:52054 -> 198.28.0.2:53 1 64 1 2025-11-26 15:33:30.739 00:00:00.000 UDP 28.104.0.1:48449 -> 198.28.0.2:53 1 64 1 2025-11-26 15:34:31.054 00:00:00.000 UDP 28.104.0.1:55625 -> 198.28.0.2:53 1 64 1 2025-11-26 15:34:31.055 00:00:00.000 UDP 28.104.0.1:34522 -> 198.28.0.2:53 1 64 1 2025-11-26 15:34:31.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55625 1 109 1 2025-11-26 15:34:31.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34522 1 80 1 2025-11-26 15:35:31.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44001 1 109 1 2025-11-26 15:35:31.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60635 1 80 1 2025-11-26 15:35:31.348 00:00:00.000 UDP 28.104.0.1:44001 -> 198.28.0.2:53 1 64 1 2025-11-26 15:35:31.348 00:00:00.000 UDP 28.104.0.1:60635 -> 198.28.0.2:53 1 64 1 2025-11-26 15:31:30.505 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2496 1 2025-11-26 15:36:31.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47155 1 80 1 2025-11-26 15:36:31.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51154 1 109 1 2025-11-26 15:36:31.642 00:00:00.000 UDP 28.104.0.1:51154 -> 198.28.0.2:53 1 64 1 2025-11-26 15:36:31.641 00:00:00.000 UDP 28.104.0.1:47155 -> 198.28.0.2:53 1 64 1 2025-11-26 15:32:12.805 00:05:51.423 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:37:31.934 00:00:00.000 UDP 28.104.0.1:48692 -> 198.28.0.2:53 1 64 1 2025-11-26 15:37:31.934 00:00:00.000 UDP 28.104.0.1:42486 -> 198.28.0.2:53 1 64 1 2025-11-26 15:37:31.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48692 1 109 1 2025-11-26 15:37:31.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42486 1 80 1 2025-11-26 15:33:12.797 00:05:51.443 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 15:33:12.886 00:05:51.394 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:38:15.628 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:38:32.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43454 1 80 1 2025-11-26 15:38:32.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38511 1 109 1 2025-11-26 15:38:32.234 00:00:00.000 UDP 28.104.0.1:43454 -> 198.28.0.2:53 1 64 1 2025-11-26 15:38:32.234 00:00:00.000 UDP 28.104.0.1:38511 -> 198.28.0.2:53 1 64 1 2025-11-26 15:34:12.897 00:05:51.334 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:35:12.797 00:05:00.473 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 15:35:12.797 00:05:00.383 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:39:32.485 00:00:00.000 UDP 28.104.0.1:36007 -> 198.28.0.2:53 1 64 1 2025-11-26 15:39:32.485 00:00:00.000 UDP 28.104.0.1:34972 -> 198.28.0.2:53 1 64 1 2025-11-26 15:39:32.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36007 1 80 1 2025-11-26 15:39:32.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34972 1 109 1 2025-11-26 15:40:32.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40159 1 109 1 2025-11-26 15:40:32.792 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34900 1 80 1 2025-11-26 15:40:32.782 00:00:00.000 UDP 28.104.0.1:40159 -> 198.28.0.2:53 1 64 1 2025-11-26 15:40:32.782 00:00:00.000 UDP 28.104.0.1:34900 -> 198.28.0.2:53 1 64 1 2025-11-26 15:36:50.511 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2516 1 2025-11-26 15:41:33.105 00:00:00.000 UDP 28.104.0.1:52677 -> 198.28.0.2:53 1 64 1 2025-11-26 15:41:33.105 00:00:00.000 UDP 28.104.0.1:47005 -> 198.28.0.2:53 1 64 1 2025-11-26 15:41:33.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47005 1 109 1 2025-11-26 15:41:33.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52677 1 80 1 2025-11-26 15:42:33.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54871 1 109 1 2025-11-26 15:42:33.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57892 1 80 1 2025-11-26 15:42:33.400 00:00:00.000 UDP 28.104.0.1:54871 -> 198.28.0.2:53 1 64 1 2025-11-26 15:42:33.400 00:00:00.000 UDP 28.104.0.1:57892 -> 198.28.0.2:53 1 64 1 2025-11-26 15:38:12.808 00:05:51.423 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:43:16.025 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:43:33.650 00:00:00.000 UDP 28.104.0.1:33359 -> 198.28.0.2:53 1 64 1 2025-11-26 15:43:33.650 00:00:00.000 UDP 28.104.0.1:57780 -> 198.28.0.2:53 1 64 1 2025-11-26 15:43:33.660 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57780 1 80 1 2025-11-26 15:43:33.660 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33359 1 109 1 2025-11-26 15:39:12.800 00:05:51.443 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 15:39:12.890 00:05:51.393 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:44:33.948 00:00:00.000 UDP 28.104.0.1:47204 -> 198.28.0.2:53 1 64 1 2025-11-26 15:44:33.948 00:00:00.000 UDP 28.104.0.1:50457 -> 198.28.0.2:53 1 64 1 2025-11-26 15:44:33.960 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47204 1 80 1 2025-11-26 15:44:33.960 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50457 1 109 1 2025-11-26 15:40:12.900 00:05:51.333 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:41:12.802 00:05:00.379 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:41:12.802 00:05:00.470 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 15:45:34.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54485 1 80 1 2025-11-26 15:45:34.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55608 1 109 1 2025-11-26 15:45:34.250 00:00:00.000 UDP 28.104.0.1:55608 -> 198.28.0.2:53 1 64 1 2025-11-26 15:45:34.250 00:00:00.000 UDP 28.104.0.1:54485 -> 198.28.0.2:53 1 64 1 2025-11-26 15:42:10.522 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2404 1 2025-11-26 15:46:34.552 00:00:00.000 UDP 28.104.0.1:44763 -> 198.28.0.2:53 1 64 1 2025-11-26 15:46:34.552 00:00:00.000 UDP 28.104.0.1:46996 -> 198.28.0.2:53 1 64 1 2025-11-26 15:46:34.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44763 1 109 1 2025-11-26 15:46:34.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46996 1 80 1 2025-11-26 15:47:34.846 00:00:00.000 UDP 28.104.0.1:59051 -> 198.28.0.2:53 1 64 1 2025-11-26 15:47:34.846 00:00:00.000 UDP 28.104.0.1:59634 -> 198.28.0.2:53 1 64 1 2025-11-26 15:47:34.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59634 1 109 1 2025-11-26 15:47:34.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59051 1 80 1 2025-11-26 15:48:15.782 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:48:35.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45110 1 109 1 2025-11-26 15:48:35.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43773 1 80 1 2025-11-26 15:48:35.225 00:00:00.000 UDP 28.104.0.1:43773 -> 198.28.0.2:53 1 64 1 2025-11-26 15:48:35.225 00:00:00.000 UDP 28.104.0.1:45110 -> 198.28.0.2:53 1 64 1 2025-11-26 15:44:12.815 00:05:51.419 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:49:35.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34123 1 80 1 2025-11-26 15:49:35.489 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55368 1 109 1 2025-11-26 15:49:35.479 00:00:00.000 UDP 28.104.0.1:55368 -> 198.28.0.2:53 1 64 1 2025-11-26 15:49:35.479 00:00:00.000 UDP 28.104.0.1:34123 -> 198.28.0.2:53 1 64 1 2025-11-26 15:45:12.804 00:05:51.439 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 15:45:12.889 00:05:51.394 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:50:35.787 00:00:00.000 UDP 28.104.0.1:38539 -> 198.28.0.2:53 1 64 1 2025-11-26 15:50:35.787 00:00:00.000 UDP 28.104.0.1:41459 -> 198.28.0.2:53 1 64 1 2025-11-26 15:50:35.797 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41459 1 80 1 2025-11-26 15:50:35.797 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38539 1 109 1 2025-11-26 15:46:12.899 00:05:51.336 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:47:12.805 00:05:00.467 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 15:47:12.805 00:05:00.399 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:51:36.092 00:00:00.000 UDP 28.104.0.1:53166 -> 198.28.0.2:53 1 64 1 2025-11-26 15:51:36.093 00:00:00.000 UDP 28.104.0.1:36967 -> 198.28.0.2:53 1 64 1 2025-11-26 15:51:36.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36967 1 109 1 2025-11-26 15:51:36.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53166 1 80 1 2025-11-26 15:47:30.530 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2760 1 2025-11-26 15:52:36.386 00:00:00.000 UDP 28.104.0.1:41867 -> 198.28.0.2:53 1 64 1 2025-11-26 15:52:36.386 00:00:00.000 UDP 28.104.0.1:34495 -> 198.28.0.2:53 1 64 1 2025-11-26 15:52:36.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34495 1 80 1 2025-11-26 15:52:36.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41867 1 109 1 2025-11-26 15:53:15.994 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:53:36.679 00:00:00.000 UDP 28.104.0.1:37332 -> 198.28.0.2:53 1 64 1 2025-11-26 15:53:36.679 00:00:00.000 UDP 28.104.0.1:54134 -> 198.28.0.2:53 1 64 1 2025-11-26 15:53:36.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37332 1 109 1 2025-11-26 15:53:36.688 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54134 1 80 1 2025-11-26 15:54:36.933 00:00:00.000 UDP 28.104.0.1:34653 -> 198.28.0.2:53 1 64 1 2025-11-26 15:54:36.933 00:00:00.000 UDP 28.104.0.1:44809 -> 198.28.0.2:53 1 64 1 2025-11-26 15:54:36.942 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34653 1 80 1 2025-11-26 15:54:36.942 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44809 1 109 1 2025-11-26 15:50:12.815 00:05:51.419 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-26 15:55:37.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46931 1 80 1 2025-11-26 15:55:37.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44525 1 109 1 2025-11-26 15:55:37.245 00:00:00.000 UDP 28.104.0.1:44525 -> 198.28.0.2:53 1 64 1 2025-11-26 15:55:37.246 00:00:00.000 UDP 28.104.0.1:46931 -> 198.28.0.2:53 1 64 1 2025-11-26 15:51:12.891 00:05:51.394 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-26 15:51:12.807 00:05:51.438 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-26 15:56:37.539 00:00:00.000 UDP 28.104.0.1:35817 -> 198.28.0.2:53 1 64 1 2025-11-26 15:56:37.539 00:00:00.000 UDP 28.104.0.1:42177 -> 198.28.0.2:53 1 64 1 2025-11-26 15:56:37.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35817 1 109 1 2025-11-26 15:56:37.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42177 1 80 1 2025-11-26 15:52:50.535 00:05:10.012 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2560 1 2025-11-26 15:52:12.900 00:05:51.335 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-26 15:53:12.806 00:05:00.468 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-26 15:53:12.806 00:05:00.402 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-26 15:57:37.829 00:00:00.000 UDP 28.104.0.1:59126 -> 198.28.0.2:53 1 64 1 2025-11-26 15:57:37.829 00:00:00.000 UDP 28.104.0.1:33844 -> 198.28.0.2:53 1 64 1 2025-11-26 15:57:37.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33844 1 109 1 2025-11-26 15:57:37.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59126 1 80 1 2025-11-26 15:58:16.217 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-26 15:58:38.127 00:00:00.000 UDP 28.104.0.1:60724 -> 198.28.0.2:53 1 64 1 2025-11-26 15:58:38.127 00:00:00.000 UDP 28.104.0.1:34148 -> 198.28.0.2:53 1 64 1 2025-11-26 15:58:38.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34148 1 109 1 2025-11-26 15:58:38.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60724 1 80 1 Summary: total flows: 323, total bytes: 94852, total packets: 1396, avg bps: 202, avg pps: 0, avg bpp: 67 Time window: 2025-11-26 14:56:12 - 2025-11-26 15:58:38 Total flows processed: 323, passed: 323, Blocks skipped: 0, Bytes read: 33656 Sys: 0.0061s User: 0.0020s Wall: 0.0038s flows/second: 85425.3 Runtime: 0.0038s