Getting data into UBA
Learn how to add various data types to UBA and validate ingestion.
Introduction
Prepare to add data to Splunk User Behavior Analytics
Add HR data to Splunk User Behavior Analytics
Add assets data and identify assets to exclude from detections
Add data from the Splunk platform to Splunk User Behavior Analytics
- Add CIM-compliant data from the Splunk platform to Splunk UBA
- Add raw events from the Splunk platform to Splunk UBA
- Add custom data to Splunk UBA using the generic data source
- Send data from the Splunk platform directly to Kafka
- Splunk UBA category to Splunk CIM field mapping reference
- Send notable events from Splunk Enterprise Security to Splunk UBA