Thanks, Julio. I would like to filter, in order to reduce the amount of data captured by a packet-capture. Not for security purposes.
For example, when debugging a problem, sometimes it helps to view all flows through an interface; but you don't want to see each packet of every flow. Just seeing the start and end of each TCP flow would be very useful.