This tool is a SYSLOG client showing messages (--showscreen) or logging them in a file (--logfile). Parameter --src-port defines the local port number to listen on. Optional parameter --src-ip defines the local IP address to use. Optional parameter --iptype defines which kind of IP address to use when --src-ip is unset (accepted values: ip4 and ip6). Optional parameter --ip4opts permits to add IP4 options encoded as mixed. Optional parameter --ip6exts permits to add IP6 options encoded as mixed (first byte is the next header number). Optional parameters --device and --src-eth permits to create a virtual server using fake addresses (in this case, tool have to be run with admin privilege in order to sniff and spoof at Ethernet level). Parameter --allowed-clients lists the IP addresses or hosts allowed to connect. This tool may need to be run with admin privilege in order to listen on a small port number (port<1024).
parameter | description | example |
-s|--showscreen|+s|--no-showscreen | show data to screen | This boolean is set. Use + or --no- to unset it. |
-l|--logfile file | log file | dstfile.txt |
-d|--device device | device name | Eth0 |
-E|--src-eth eth | source ethernet address | 0:2:3:4:5:6 |
-I|--src-ip ip | source IP address | 192.168.100.200 |
-P|--src-port port | source port number | 514 |
-o|--ip4opts ip4opts | IPv4 options | |
-O|--ip6exts ip6exts | IPv6 extensions | |
-t|--iptype iptype | type to use when src-ip is unset | ip4 |
-c|--allowed-clients ips | clients allowed to connect | all |