Integrate Splunk Enterprise Security and Splunk UBA with this add-on
Use the Splunk add-on for Splunk UBA to integrate Splunk Enterprise Security and Splunk User Behavior Analytics (UBA). You can integrate Splunk UBA and Splunk Enterprise Security to share the following types of data:
- Send Splunk UBA anomalies and threats to Splunk ES.
- Send Splunk ES correlation search results to Splunk UBA.
- Send audit events to Splunk ES.
After you complete the integration, users can view information in Splunk Enterprise Security and the Splunk platform. See Viewing data from Splunk UBA in Enterprise Security in Use Splunk Enterprise Security.
Deploy the Splunk add-on for Splunk UBA | Send Splunk UBA anomalies and threats to Splunk ES |
This documentation applies to the following versions of Splunk® Add-on for Splunk UBA: 3.0.0
Feedback submitted, thanks!