Configuring add-ons in UBA
Introduction
Deploy the Splunk Add-on for Splunk User Behavior Analytics
Use the Splunk Add-on for Splunk User Behavior Analytics to send and receive data from Splunk Enterprise Security
- Integrate Splunk ES and Splunk UBA with the Splunk Add-on for Splunk UBA
- Send Splunk UBA anomalies and threats to Splunk ES as notable events
- Pull notable events from Splunk ES to Splunk UBA
- Set up Splunk UBA to send user and device association data to Splunk ES
- Send Splunk UBA audit events to Splunk ES