wireshark -i <if>
Note that ports may drop invalid packets (e.g. with bad MAC addresses) unless wireshark is connected, in which case they are passed through. This could throw you off.
Ubuntu:
http://splatoperator.com/2011/08/run-wireshark-as-non-privileged-user-in-ubuntu/