Use ngrep to capture syslog traffic Steve Stonebraker May 23, 2018 Instead of using wireshark on Linux to capture traffic try ngrep # sudo ngrep -d <interface> […]