Splunk® User Behavior Analytics

Administer Splunk User Behavior Analytics

Acrobat logo Download manual as PDF


Acrobat logo Download topic as PDF

Tasks you can perform to administer Splunk UBA

As a Splunk UBA admin, you can perform the following tasks to administer Splunk UBA:

Task More Information
Customize functionality in Splunk UBA to produce more relevant threats and anomalies for your analysts.
Use the command line to configure Splunk UBA and start and stop services.
Manage the users and servers in your deployment and configure authentication options.
Configure warm standby, restore from automated incremental backups, and migrate configurations to larger clusters.
Add different types of data to Splunk UBA. See Which data sources do I need? in the Get Data into Splunk User Behavior Analytics manual.
Monitor the health of your Splunk UBA deployment.
Configure integrations with other systems and send data to other systems.
Keep geolocation data up to date in UBA. See How to manually download the IP database and add it to Splunk User Behavior Analytics (UBA) in Splunk Answers.
Last modified on 13 December, 2023
  NEXT
Determine which version of Splunk UBA you are running

This documentation applies to the following versions of Splunk® User Behavior Analytics: 5.0.4, 5.0.4.1, 5.0.5, 5.0.5.1, 5.1.0, 5.1.0.1, 5.2.0, 5.2.1, 5.3.0


Was this documentation topic helpful?


You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters