I am new to Zeek and I would like to redist the conn logging to SQLite. The documentation says that this is natively supported.
I found this filter “sqlite-conn-filte.zeek” in one of the post
local filter: Log::Filter =
$config=table([“tablename”] = “conn”),
my question is where to put (which directory) ? and do I need to invoke it somewhere ?