Download Packit once you get authorization
There is a small program that comes with the OS called Packit. If not, you may be able to download it from the internet to y our machine using yum or apt-get
Run the following command from your system if you can download this tool and it works with Wireshark, I just set it up on my machine I was able to look at my ssh session:
sudo apt-get install packit # Debian
yum install packit # Linux
-m mode [cap|inject|trace], capture is the one selected
packit -m cap -w packit_`date +'%m%d%y_%T'`.log -c 20 -f
-w filename, date and seconds used in the filename
-c number of packets captured, in this case 20
-f Do not fragment packet
-f Do no fragment packet
packit -m cap 'tcp and port 80' -w packit`date +'%m%d%y_%T'`.log -c 20 -f
Similar to the respondent above, this will capture only web traffic.
This file can be copied up to wireshark as well (for review).