Commands from video:
Make sure wireshark allows user to run dumppcap
sudo dpkg-reconfigure wireshark-common
(choose yes)
sudo chmod +x /usr/bin/dumpcap
To Run Wireshark as root from a non-root user
sudo su -c 'wireshark -k -i <(ssh root@192.168.1.1 -p 22 tcpdump -i mvneta0 -U -w - )'
Run as user
wireshark -k -i <(ssh root@172.16.69.112 -p 222 tcpdump -i xn2 -U -w - )
Run as user exclude Tom computer ip of 192.168.3.9
wireshark -k -i <(ssh root@172.16.69.112 -p 222 tcpdump -i xn2 host not 192.168.3.9 -U -w - )