Did you create the
/var/log/router.log file?
Syslogd only logs to an existing file, it does not create this file unless you use the
-C option.
According to
syslogd(8) your
-a 192.168.0.1 option actually is
-a 192.168.0.1/16:514. Is that
/16 netmask correct for your setup?
RE: tcpdump
You can use the
-n flag to disable name lookups, and the
-s0 to see the complete data.
-vv also helps