Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 18:58:13.317 00:01:00.560 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-27 18:58:13.317 00:01:00.476 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-27 18:59:48.898 00:00:00.000 UDP 28.104.0.1:35042 -> 198.28.0.2:53 1 64 1 2025-11-27 18:59:48.898 00:00:00.000 UDP 28.104.0.1:49573 -> 198.28.0.2:53 1 64 1 2025-11-27 18:59:48.911 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35042 1 109 1 2025-11-27 18:59:48.911 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49573 1 80 1 2025-11-27 18:56:04.752 00:05:08.577 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:00:49.201 00:00:00.000 UDP 28.104.0.1:45204 -> 198.28.0.2:53 1 64 1 2025-11-27 19:00:49.201 00:00:00.000 UDP 28.104.0.1:59971 -> 198.28.0.2:53 1 64 1 2025-11-27 19:00:49.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45204 1 109 1 2025-11-27 19:00:49.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59971 1 80 1 2025-11-27 18:57:04.763 00:05:08.556 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 18:57:04.803 00:05:08.751 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:01:49.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51740 1 109 1 2025-11-27 19:01:49.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32801 1 80 1 2025-11-27 19:01:49.495 00:00:00.000 UDP 28.104.0.1:32801 -> 198.28.0.2:53 1 64 1 2025-11-27 19:01:49.495 00:00:00.000 UDP 28.104.0.1:51740 -> 198.28.0.2:53 1 64 1 2025-11-27 18:57:52.649 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 2956 1 2025-11-27 18:58:04.755 00:05:08.808 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:00:13.318 00:02:00.562 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-27 19:00:13.318 00:02:00.476 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-27 19:02:49.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45101 1 80 1 2025-11-27 19:02:49.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46102 1 109 1 2025-11-27 19:02:49.790 00:00:00.000 UDP 28.104.0.1:45101 -> 198.28.0.2:53 1 64 1 2025-11-27 19:02:49.790 00:00:00.000 UDP 28.104.0.1:46102 -> 198.28.0.2:53 1 64 1 2025-11-27 19:03:48.826 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:03:50.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41942 1 80 1 2025-11-27 19:03:50.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37599 1 109 1 2025-11-27 19:03:50.059 00:00:00.000 UDP 28.104.0.1:37599 -> 198.28.0.2:53 1 64 1 2025-11-27 19:03:50.059 00:00:00.000 UDP 28.104.0.1:41942 -> 198.28.0.2:53 1 64 1 2025-11-27 19:03:13.319 00:01:00.565 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-27 19:03:13.319 00:01:00.475 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-27 19:04:50.348 00:00:00.000 UDP 28.104.0.1:44605 -> 198.28.0.2:53 1 64 1 2025-11-27 19:04:50.348 00:00:00.000 UDP 28.104.0.1:54555 -> 198.28.0.2:53 1 64 1 2025-11-27 19:04:50.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54555 1 80 1 2025-11-27 19:04:50.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44605 1 109 1 2025-11-27 19:05:50.643 00:00:00.000 UDP 28.104.0.1:54430 -> 198.28.0.2:53 1 64 1 2025-11-27 19:05:50.643 00:00:00.000 UDP 28.104.0.1:53619 -> 198.28.0.2:53 1 64 1 2025-11-27 19:05:50.654 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54430 1 80 1 2025-11-27 19:05:50.654 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53619 1 109 1 2025-11-27 19:02:04.755 00:05:08.574 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:06:50.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56345 1 109 1 2025-11-27 19:06:50.951 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55943 1 80 1 2025-11-27 19:06:50.941 00:00:00.000 UDP 28.104.0.1:56345 -> 198.28.0.2:53 1 64 1 2025-11-27 19:06:50.941 00:00:00.000 UDP 28.104.0.1:55943 -> 198.28.0.2:53 1 64 1 2025-11-27 19:03:04.767 00:05:08.552 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 19:03:04.807 00:05:08.747 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:03:12.658 00:05:10.017 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2640 1 2025-11-27 19:07:51.240 00:00:00.000 UDP 28.104.0.1:47150 -> 198.28.0.2:53 1 64 1 2025-11-27 19:07:51.240 00:00:00.000 UDP 28.104.0.1:55720 -> 198.28.0.2:53 1 64 1 2025-11-27 19:07:51.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55720 1 109 1 2025-11-27 19:07:51.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47150 1 80 1 2025-11-27 19:04:04.765 00:05:08.800 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:08:51.536 00:00:00.000 UDP 28.104.0.1:37841 -> 198.28.0.2:53 1 64 1 2025-11-27 19:08:51.536 00:00:00.000 UDP 28.104.0.1:55740 -> 198.28.0.2:53 1 64 1 2025-11-27 19:08:48.966 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:08:51.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55740 1 109 1 2025-11-27 19:08:51.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37841 1 80 1 2025-11-27 19:05:13.320 00:04:00.476 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-27 19:05:13.321 00:04:00.562 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-27 19:09:51.783 00:00:00.000 UDP 28.104.0.1:39225 -> 198.28.0.2:53 1 64 1 2025-11-27 19:09:51.783 00:00:00.000 UDP 28.104.0.1:45518 -> 198.28.0.2:53 1 64 1 2025-11-27 19:09:51.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39225 1 109 1 2025-11-27 19:09:51.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45518 1 80 1 2025-11-27 19:10:52.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50178 1 109 1 2025-11-27 19:10:52.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50912 1 80 1 2025-11-27 19:10:52.093 00:00:00.000 UDP 28.104.0.1:50178 -> 198.28.0.2:53 1 64 1 2025-11-27 19:10:52.093 00:00:00.000 UDP 28.104.0.1:50912 -> 198.28.0.2:53 1 64 1 2025-11-27 19:11:52.403 00:00:00.000 UDP 28.104.0.1:42331 -> 198.28.0.2:53 1 64 1 2025-11-27 19:11:52.403 00:00:00.000 UDP 28.104.0.1:40049 -> 198.28.0.2:53 1 64 1 2025-11-27 19:11:52.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42331 1 109 1 2025-11-27 19:11:52.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40049 1 80 1 2025-11-27 19:08:04.765 00:05:08.567 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:08:32.674 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2636 1 2025-11-27 19:12:52.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41316 1 109 1 2025-11-27 19:12:52.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56016 1 80 1 2025-11-27 19:12:52.659 00:00:00.000 UDP 28.104.0.1:41316 -> 198.28.0.2:53 1 64 1 2025-11-27 19:12:52.659 00:00:00.000 UDP 28.104.0.1:56016 -> 198.28.0.2:53 1 64 1 2025-11-27 19:09:04.775 00:05:08.547 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 19:09:04.815 00:05:08.740 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:13:48.879 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:13:52.956 00:00:00.000 UDP 28.104.0.1:37755 -> 198.28.0.2:53 1 64 1 2025-11-27 19:13:52.956 00:00:00.000 UDP 28.104.0.1:39973 -> 198.28.0.2:53 1 64 1 2025-11-27 19:13:52.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37755 1 109 1 2025-11-27 19:13:52.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39973 1 80 1 2025-11-27 19:10:04.765 00:05:08.800 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:10:13.320 00:04:00.563 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-27 19:10:13.320 00:04:00.475 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-27 19:14:53.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57972 1 109 1 2025-11-27 19:14:53.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47974 1 80 1 2025-11-27 19:14:53.249 00:00:00.000 UDP 28.104.0.1:47974 -> 198.28.0.2:53 1 64 1 2025-11-27 19:14:53.250 00:00:00.000 UDP 28.104.0.1:57972 -> 198.28.0.2:53 1 64 1 2025-11-27 19:15:53.544 00:00:00.000 UDP 28.104.0.1:52245 -> 198.28.0.2:53 1 64 1 2025-11-27 19:15:53.543 00:00:00.000 UDP 28.104.0.1:45030 -> 198.28.0.2:53 1 64 1 2025-11-27 19:15:53.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52245 1 80 1 2025-11-27 19:15:53.552 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45030 1 109 1 2025-11-27 19:16:53.836 00:00:00.000 UDP 28.104.0.1:34487 -> 198.28.0.2:53 1 64 1 2025-11-27 19:16:53.835 00:00:00.000 UDP 28.104.0.1:35078 -> 198.28.0.2:53 1 64 1 2025-11-27 19:16:53.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34487 1 109 1 2025-11-27 19:16:53.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35078 1 80 1 2025-11-27 19:17:54.132 00:00:00.000 UDP 28.104.0.1:33410 -> 198.28.0.2:53 1 64 1 2025-11-27 19:17:54.132 00:00:00.000 UDP 28.104.0.1:59872 -> 198.28.0.2:53 1 64 1 2025-11-27 19:17:54.144 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59872 1 80 1 2025-11-27 19:17:54.144 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33410 1 109 1 2025-11-27 19:13:52.678 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2400 1 2025-11-27 19:14:04.766 00:05:08.568 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:18:49.009 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:18:54.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40113 1 80 1 2025-11-27 19:18:54.445 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35721 1 109 1 2025-11-27 19:18:54.434 00:00:00.000 UDP 28.104.0.1:40113 -> 198.28.0.2:53 1 64 1 2025-11-27 19:18:54.435 00:00:00.000 UDP 28.104.0.1:35721 -> 198.28.0.2:53 1 64 1 2025-11-27 19:15:13.324 00:04:00.560 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-27 19:15:13.324 00:04:00.472 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-27 19:15:04.775 00:05:08.549 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 19:15:04.815 00:05:08.740 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:19:54.740 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39496 1 80 1 2025-11-27 19:19:54.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57910 1 109 1 2025-11-27 19:19:54.730 00:00:00.000 UDP 28.104.0.1:57910 -> 198.28.0.2:53 1 64 1 2025-11-27 19:19:54.729 00:00:00.000 UDP 28.104.0.1:39496 -> 198.28.0.2:53 1 64 1 2025-11-27 19:16:04.767 00:05:08.800 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:20:55.056 00:00:00.000 UDP 28.104.0.1:37461 -> 198.28.0.2:53 1 64 1 2025-11-27 19:20:55.056 00:00:00.000 UDP 28.104.0.1:58714 -> 198.28.0.2:53 1 64 1 2025-11-27 19:20:55.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37461 1 109 1 2025-11-27 19:20:55.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58714 1 80 1 2025-11-27 19:20:13.325 00:01:00.471 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-27 19:21:55.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52104 1 109 1 2025-11-27 19:21:55.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50742 1 80 1 2025-11-27 19:21:55.351 00:00:00.000 UDP 28.104.0.1:50742 -> 198.28.0.2:53 1 64 1 2025-11-27 19:21:55.351 00:00:00.000 UDP 28.104.0.1:52104 -> 198.28.0.2:53 1 64 1 2025-11-27 19:22:55.626 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46959 1 109 1 2025-11-27 19:22:55.626 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43749 1 80 1 2025-11-27 19:22:55.615 00:00:00.000 UDP 28.104.0.1:46959 -> 198.28.0.2:53 1 64 1 2025-11-27 19:22:55.615 00:00:00.000 UDP 28.104.0.1:43749 -> 198.28.0.2:53 1 64 1 2025-11-27 19:19:12.686 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-27 19:23:49.217 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:23:55.920 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60212 1 80 1 2025-11-27 19:23:55.921 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53172 1 109 1 2025-11-27 19:23:55.910 00:00:00.000 UDP 28.104.0.1:60212 -> 198.28.0.2:53 1 64 1 2025-11-27 19:23:55.909 00:00:00.000 UDP 28.104.0.1:53172 -> 198.28.0.2:53 1 64 1 2025-11-27 19:20:13.325 00:04:00.560 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-27 19:22:13.325 00:02:00.473 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-27 19:20:04.768 00:05:08.568 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:24:56.233 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47071 1 109 1 2025-11-27 19:24:56.233 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59418 1 80 1 2025-11-27 19:24:56.223 00:00:00.000 UDP 28.104.0.1:59418 -> 198.28.0.2:53 1 64 1 2025-11-27 19:24:56.223 00:00:00.000 UDP 28.104.0.1:47071 -> 198.28.0.2:53 1 64 1 2025-11-27 19:21:04.778 00:05:08.548 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 19:21:04.818 00:05:08.739 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:25:56.512 00:00:00.000 UDP 28.104.0.1:43625 -> 198.28.0.2:53 1 64 1 2025-11-27 19:25:56.512 00:00:00.000 UDP 28.104.0.1:54339 -> 198.28.0.2:53 1 64 1 2025-11-27 19:25:56.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54339 1 109 1 2025-11-27 19:25:56.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43625 1 80 1 2025-11-27 19:25:13.325 00:01:00.560 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-27 19:25:13.325 00:01:00.473 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-27 19:22:04.768 00:05:08.800 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:26:56.768 00:00:00.000 UDP 28.104.0.1:57273 -> 198.28.0.2:53 1 64 1 2025-11-27 19:26:56.768 00:00:00.000 UDP 28.104.0.1:52887 -> 198.28.0.2:53 1 64 1 2025-11-27 19:26:56.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57273 1 80 1 2025-11-27 19:26:56.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52887 1 109 1 2025-11-27 19:27:57.072 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56336 1 80 1 2025-11-27 19:27:57.072 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35350 1 109 1 2025-11-27 19:27:57.062 00:00:00.000 UDP 28.104.0.1:56336 -> 198.28.0.2:53 1 64 1 2025-11-27 19:27:57.062 00:00:00.000 UDP 28.104.0.1:35350 -> 198.28.0.2:53 1 64 1 2025-11-27 19:24:32.688 00:05:10.070 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2708 1 2025-11-27 19:28:49.060 00:00:00.047 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:28:57.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51341 1 109 1 2025-11-27 19:28:57.369 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39145 1 80 1 2025-11-27 19:28:57.361 00:00:00.000 UDP 28.104.0.1:51341 -> 198.28.0.2:53 1 64 1 2025-11-27 19:28:57.360 00:00:00.000 UDP 28.104.0.1:39145 -> 198.28.0.2:53 1 64 1 2025-11-27 19:27:13.326 00:02:00.475 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-27 19:27:13.326 00:02:00.561 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-27 19:29:57.955 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34430 1 109 1 2025-11-27 19:29:57.955 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59863 1 80 1 2025-11-27 19:29:57.944 00:00:00.000 UDP 28.104.0.1:34430 -> 198.28.0.2:53 1 64 1 2025-11-27 19:29:57.945 00:00:00.000 UDP 28.104.0.1:59863 -> 198.28.0.2:53 1 64 1 2025-11-27 19:26:04.769 00:05:08.568 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:30:58.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59699 1 80 1 2025-11-27 19:30:58.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50412 1 109 1 2025-11-27 19:30:58.257 00:00:00.000 UDP 28.104.0.1:50412 -> 198.28.0.2:53 1 64 1 2025-11-27 19:30:58.257 00:00:00.000 UDP 28.104.0.1:59699 -> 198.28.0.2:53 1 64 1 2025-11-27 19:30:13.326 00:01:00.475 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-27 19:30:13.326 00:01:00.560 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-27 19:27:04.779 00:05:08.548 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 19:27:04.819 00:05:08.743 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:31:58.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44838 1 80 1 2025-11-27 19:31:58.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49799 1 109 1 2025-11-27 19:31:58.561 00:00:00.000 UDP 28.104.0.1:49799 -> 198.28.0.2:53 1 64 1 2025-11-27 19:31:58.561 00:00:00.000 UDP 28.104.0.1:44838 -> 198.28.0.2:53 1 64 1 2025-11-27 19:28:04.768 00:05:08.804 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:32:58.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56796 1 109 1 2025-11-27 19:32:58.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40292 1 80 1 2025-11-27 19:32:58.897 00:00:00.000 UDP 28.104.0.1:40292 -> 198.28.0.2:53 1 64 1 2025-11-27 19:32:58.897 00:00:00.000 UDP 28.104.0.1:56796 -> 198.28.0.2:53 1 64 1 2025-11-27 19:33:49.802 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:33:59.196 00:00:00.000 UDP 28.104.0.1:49931 -> 198.28.0.2:53 1 64 1 2025-11-27 19:29:52.689 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2600 1 2025-11-27 19:33:59.196 00:00:00.000 UDP 28.104.0.1:49530 -> 198.28.0.2:53 1 64 1 2025-11-27 19:33:59.207 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49931 1 109 1 2025-11-27 19:33:59.207 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49530 1 80 1 2025-11-27 19:32:13.327 00:02:00.563 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-27 19:32:13.327 00:02:00.476 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-27 19:34:59.449 00:00:00.000 UDP 28.104.0.1:52209 -> 198.28.0.2:53 1 64 1 2025-11-27 19:34:59.449 00:00:00.000 UDP 28.104.0.1:46837 -> 198.28.0.2:53 1 64 1 2025-11-27 19:34:59.459 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46837 1 80 1 2025-11-27 19:34:59.459 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52209 1 109 1 2025-11-27 19:35:59.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40614 1 80 1 2025-11-27 19:35:59.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53940 1 109 1 2025-11-27 19:35:59.741 00:00:00.000 UDP 28.104.0.1:53940 -> 198.28.0.2:53 1 64 1 2025-11-27 19:35:59.742 00:00:00.000 UDP 28.104.0.1:40614 -> 198.28.0.2:53 1 64 1 2025-11-27 19:32:04.769 00:05:08.569 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:35:13.327 00:01:00.562 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-27 19:35:13.327 00:01:00.477 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-27 19:37:00.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56084 1 109 1 2025-11-27 19:37:00.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47185 1 80 1 2025-11-27 19:37:00.060 00:00:00.000 UDP 28.104.0.1:47185 -> 198.28.0.2:53 1 64 1 2025-11-27 19:37:00.060 00:00:00.000 UDP 28.104.0.1:56084 -> 198.28.0.2:53 1 64 1 2025-11-27 19:33:04.779 00:05:08.549 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 19:33:04.819 00:05:08.746 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:38:00.373 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33108 1 109 1 2025-11-27 19:38:00.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35461 1 80 1 2025-11-27 19:38:00.362 00:00:00.000 UDP 28.104.0.1:35461 -> 198.28.0.2:53 1 64 1 2025-11-27 19:38:00.363 00:00:00.000 UDP 28.104.0.1:33108 -> 198.28.0.2:53 1 64 1 2025-11-27 19:34:04.768 00:05:08.807 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:38:49.515 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:39:00.664 00:00:00.000 UDP 28.104.0.1:42467 -> 198.28.0.2:53 1 64 1 2025-11-27 19:39:00.664 00:00:00.000 UDP 28.104.0.1:44505 -> 198.28.0.2:53 1 64 1 2025-11-27 19:39:00.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44505 1 109 1 2025-11-27 19:39:00.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42467 1 80 1 2025-11-27 19:37:13.328 00:02:00.562 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-27 19:37:13.328 00:02:00.476 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-27 19:35:12.693 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2840 1 2025-11-27 19:40:00.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46667 1 109 1 2025-11-27 19:40:00.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52609 1 80 1 2025-11-27 19:40:00.962 00:00:00.000 UDP 28.104.0.1:52609 -> 198.28.0.2:53 1 64 1 2025-11-27 19:40:00.962 00:00:00.000 UDP 28.104.0.1:46667 -> 198.28.0.2:53 1 64 1 2025-11-27 19:41:01.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54887 1 80 1 2025-11-27 19:41:01.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38542 1 109 1 2025-11-27 19:41:01.262 00:00:00.000 UDP 28.104.0.1:54887 -> 198.28.0.2:53 1 64 1 2025-11-27 19:41:01.262 00:00:00.000 UDP 28.104.0.1:38542 -> 198.28.0.2:53 1 64 1 2025-11-27 19:40:13.328 00:01:00.562 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-27 19:40:13.328 00:01:00.476 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-27 19:42:01.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49871 1 109 1 2025-11-27 19:42:01.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52017 1 80 1 2025-11-27 19:42:01.551 00:00:00.000 UDP 28.104.0.1:52017 -> 198.28.0.2:53 1 64 1 2025-11-27 19:42:01.551 00:00:00.000 UDP 28.104.0.1:49871 -> 198.28.0.2:53 1 64 1 2025-11-27 19:38:04.771 00:05:08.570 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:43:01.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35503 1 80 1 2025-11-27 19:43:01.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53390 1 109 1 2025-11-27 19:43:01.852 00:00:00.000 UDP 28.104.0.1:53390 -> 198.28.0.2:53 1 64 1 2025-11-27 19:43:01.852 00:00:00.000 UDP 28.104.0.1:35503 -> 198.28.0.2:53 1 64 1 2025-11-27 19:39:04.781 00:05:08.550 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 19:39:04.821 00:05:08.747 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:43:49.429 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:44:02.222 00:00:00.000 UDP 28.104.0.1:43704 -> 198.28.0.2:53 1 64 1 2025-11-27 19:44:02.221 00:00:00.000 UDP 28.104.0.1:52778 -> 198.28.0.2:53 1 64 1 2025-11-27 19:44:02.232 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43704 1 80 1 2025-11-27 19:44:02.232 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52778 1 109 1 2025-11-27 19:40:04.770 00:05:08.807 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:40:32.698 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2620 1 2025-11-27 19:45:02.521 00:00:00.000 UDP 28.104.0.1:59126 -> 198.28.0.2:53 1 64 1 2025-11-27 19:45:02.521 00:00:00.000 UDP 28.104.0.1:37024 -> 198.28.0.2:53 1 64 1 2025-11-27 19:45:02.532 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37024 1 80 1 2025-11-27 19:45:02.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59126 1 109 1 2025-11-27 19:46:02.823 00:00:00.000 UDP 28.104.0.1:48462 -> 198.28.0.2:53 1 64 1 2025-11-27 19:46:02.823 00:00:00.000 UDP 28.104.0.1:40358 -> 198.28.0.2:53 1 64 1 2025-11-27 19:46:02.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48462 1 109 1 2025-11-27 19:46:02.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40358 1 80 1 2025-11-27 19:42:13.333 00:04:00.559 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-27 19:42:13.333 00:04:00.476 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-27 19:47:03.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39104 1 80 1 2025-11-27 19:47:03.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59178 1 109 1 2025-11-27 19:47:03.117 00:00:00.000 UDP 28.104.0.1:59178 -> 198.28.0.2:53 1 64 1 2025-11-27 19:47:03.116 00:00:00.000 UDP 28.104.0.1:39104 -> 198.28.0.2:53 1 64 1 2025-11-27 19:48:03.455 00:00:00.000 UDP 28.104.0.1:49538 -> 198.28.0.2:53 1 64 1 2025-11-27 19:48:03.455 00:00:00.000 UDP 28.104.0.1:33525 -> 198.28.0.2:53 1 64 1 2025-11-27 19:48:03.464 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33525 1 109 1 2025-11-27 19:48:03.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49538 1 80 1 2025-11-27 19:44:04.771 00:05:08.571 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:48:49.737 00:00:00.027 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:49:03.826 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33530 1 109 1 2025-11-27 19:49:03.826 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52591 1 80 1 2025-11-27 19:49:03.815 00:00:00.000 UDP 28.104.0.1:33530 -> 198.28.0.2:53 1 64 1 2025-11-27 19:49:03.815 00:00:00.000 UDP 28.104.0.1:52591 -> 198.28.0.2:53 1 64 1 2025-11-27 19:45:04.781 00:05:08.551 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 19:45:04.822 00:05:08.747 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:45:52.709 00:05:00.648 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2252 1 2025-11-27 19:50:04.110 00:00:00.000 UDP 28.104.0.1:34402 -> 198.28.0.2:53 1 64 1 2025-11-27 19:50:04.110 00:00:00.000 UDP 28.104.0.1:60574 -> 198.28.0.2:53 1 64 1 2025-11-27 19:50:04.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60574 1 80 1 2025-11-27 19:50:04.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34402 1 109 1 2025-11-27 19:46:04.771 00:05:08.808 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:51:04.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44914 1 109 1 2025-11-27 19:51:04.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52401 1 80 1 2025-11-27 19:51:04.404 00:00:00.000 UDP 28.104.0.1:44914 -> 198.28.0.2:53 1 64 1 2025-11-27 19:51:04.404 00:00:00.000 UDP 28.104.0.1:52401 -> 198.28.0.2:53 1 64 1 2025-11-27 19:47:13.333 00:04:00.560 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-27 19:47:13.333 00:04:00.475 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-27 19:52:04.692 00:00:00.000 UDP 28.104.0.1:56514 -> 198.28.0.2:53 1 64 1 2025-11-27 19:52:04.692 00:00:00.000 UDP 28.104.0.1:51160 -> 198.28.0.2:53 1 64 1 2025-11-27 19:52:04.701 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56514 1 80 1 2025-11-27 19:52:04.701 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51160 1 109 1 2025-11-27 19:53:04.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45211 1 109 1 2025-11-27 19:53:04.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56329 1 80 1 2025-11-27 19:53:04.956 00:00:00.000 UDP 28.104.0.1:45211 -> 198.28.0.2:53 1 64 1 2025-11-27 19:53:04.956 00:00:00.000 UDP 28.104.0.1:56329 -> 198.28.0.2:53 1 64 1 2025-11-27 19:53:49.904 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-27 19:54:05.252 00:00:00.000 UDP 28.104.0.1:39388 -> 198.28.0.2:53 1 64 1 2025-11-27 19:54:05.252 00:00:00.000 UDP 28.104.0.1:43228 -> 198.28.0.2:53 1 64 1 2025-11-27 19:54:05.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43228 1 80 1 2025-11-27 19:54:05.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39388 1 109 1 2025-11-27 19:50:04.773 00:05:08.571 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-27 19:55:05.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56469 1 80 1 2025-11-27 19:55:05.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54051 1 109 1 2025-11-27 19:55:05.540 00:00:00.000 UDP 28.104.0.1:56469 -> 198.28.0.2:53 1 64 1 2025-11-27 19:55:05.540 00:00:00.000 UDP 28.104.0.1:54051 -> 198.28.0.2:53 1 64 1 2025-11-27 19:51:04.782 00:05:08.551 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-27 19:51:04.822 00:05:08.748 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-27 19:51:02.711 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2468 1 2025-11-27 19:56:05.831 00:00:00.000 UDP 28.104.0.1:50067 -> 198.28.0.2:53 1 64 1 2025-11-27 19:56:05.831 00:00:00.000 UDP 28.104.0.1:53942 -> 198.28.0.2:53 1 64 1 2025-11-27 19:56:05.841 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50067 1 80 1 2025-11-27 19:56:05.841 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53942 1 109 1 2025-11-27 19:52:13.332 00:04:00.561 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-27 19:52:13.332 00:04:00.477 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-27 19:52:04.774 00:05:08.808 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-27 19:57:06.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55100 1 80 1 2025-11-27 19:57:06.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48179 1 109 1 2025-11-27 19:57:06.127 00:00:00.000 UDP 28.104.0.1:48179 -> 198.28.0.2:53 1 64 1 2025-11-27 19:57:06.127 00:00:00.000 UDP 28.104.0.1:55100 -> 198.28.0.2:53 1 64 1 2025-11-27 19:58:06.422 00:00:00.000 UDP 28.104.0.1:38409 -> 198.28.0.2:53 1 64 1 2025-11-27 19:58:06.422 00:00:00.000 UDP 28.104.0.1:36221 -> 198.28.0.2:53 1 64 1 2025-11-27 19:58:06.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36221 1 109 1 2025-11-27 19:58:06.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38409 1 80 1 2025-11-27 19:57:13.333 00:01:00.560 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-27 19:57:13.333 00:01:00.477 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-27 19:58:50.056 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 Summary: total flows: 336, total bytes: 94693, total packets: 1395, avg bps: 201, avg pps: 0, avg bpp: 67 Time window: 2025-11-27 18:56:04 - 2025-11-27 19:58:50 Total flows processed: 336, passed: 336, Blocks skipped: 0, Bytes read: 35008 Sys: 0.0039s User: 0.0029s Wall: 0.0035s flows/second: 96243.0 Runtime: 0.0035s