Getting data into UBA
Introduction
Prepare to add data to Splunk User Behavior Analytics
Add human resources (HR) data to Splunk User Behavior Analytics
Add assets data and identify assets to exclude from detections
Add data from the Splunk platform to Splunk User Behavior Analytics
- Add CIM-compliant data from the Splunk platform to Splunk UBA
- Add raw events from the Splunk platform to Splunk UBA
- Add custom data to Splunk UBA using the generic data source
- Send data from the Splunk platform directly to Kafka
- Splunk UBA category to Splunk CIM field mapping reference
- Send notable events from Splunk Enterprise Security to Splunk UBA