Configurar complementos no UBA
Introdução
Implemente o complemento Splunk para Splunk User Behavior Analytics
Utilize o Splunk Add-on for Splunk User Behavior Analytics para enviar e receber dados de Splunk Enterprise Security
- Integrate Splunk ES and Splunk UBA with the Splunk Add-on for Splunk UBA
- Send Splunk UBA anomalies and threats to Splunk ES as notable events
- Pull notable events from Splunk ES to Splunk UBA
- Set up Splunk UBA to send user and device association data to Splunk ES
- Send Splunk UBA audit events to Splunk ES