#
Welcome to the Docs!
The SA-SentinelOneDevices Add-on allows Splunk Enterprise Security admins to use SentinelOne asset data with the Asset Database. This documentation will cover the components used in the add-on and advanced configurations.
Important
This Supporting add-on is only intended to work with Splunk Enterprise Security deployments.
Disclaimer
This Splunk Supporting Add-on is not affiliated with SentinelOne, Inc. and is not sponsored or sanctioned by the SentinelOne team. Please visit https://www.sentinelone.com/ for more information about SentinelOne.
#
Assumptions
This documentation assumes the following:
- You have a working Splunk Enterprise Security environment. This add-on is not intended to work without Splunk Enterprise Security.
- You already have SentinelOne device data ingested using the SentinelOne App For Splunk .
- Familiarity with setting up a new Asset source in Splunk Enterprise Security.