Sonicwall NSA Packet Capture

Something I always have trouble setting up is the Sonicwall built in Packet Capture.
Normally in a tool, when you don't have anything in the fields, this means that everything in this category will be shown. The packet capture doesn't work like that!

But it's easy, just set the following settings to get a good basic start:

Make sure the filters are clear to start.

Then in the Monitor Filter tab:
Ether Type = IP
IP Type = TCP

Then add what you want to monitor:
Destination port = 465

Make sure "Enable Bidirectional" is checked to show the return traffic.

Then in the Display Filter tab:
All checkboxes selected

And in the Advance Monitor Filter:
You can enable all the checkboxes to see traffic injected by the sonicwall.