Commands from video:
Make sure wireshark allows user to run dumppcap sudo dpkg-reconfigure wireshark-common (choose yes) sudo chmod +x /usr/bin/dumpcap
To Run Wireshark as root from a non-root user sudo su -c 'wireshark -k -i <(ssh root@192.168.1.1 -p 22 tcpdump -i mvneta0 -U -w - )'
Run as user wireshark -k -i <(ssh root@172.16.69.112 -p 222 tcpdump -i xn2 -U -w - )
Run as user exclude Tom computer ip of 192.168.3.9 wireshark -k -i <(ssh root@172.16.69.112 -p 222 tcpdump -i xn2 host not 192.168.3.9 -U -w - )
Thanks Tom for the reply im more used to linux distro now i think ill try to slowly move on that since im more on managing webservers etc on my work.still more windows on my workplace but our back-end is almost linux now