Ubiquity UniFi
Experience the power of CompassOne
Get a DemoIntegrate. Simplify. Protect.
Collect and store Ubiquiti UniFi logs while equipping the Blackpoint SOC with network-level telemetry to detect threats and support incident investigations. With OCSF-mapped data, field-level search, and 12 months of included storage, this integration covers compliance and security together.
Ubiquiti UniFi + CompassOne Overview
01Forward UniFi logs directly into CompassOne
Collect traffic, event, VPN, user authentication, policy, and admin logs from your Ubiquiti UniFi environment — all indexed, mapped to OCSF, and ready for search and analysis.
02Enhance SOC threat detection and response
Integrating Ubiquiti UniFi data provides the 24/7 Blackpoint SOC with network telemetry to detect anomalies, triage security events, and investigate incidents across your environment.
03Keep compliance and audits covered
Retain firewall logs to meet regulatory standards, cyber insurance requirements, and audit timelines. Built-in search tools make periodic reviews quick and easy.
04Targeted log search
Query UniFi events using time and field filters, keyword matching, and advanced syntax to find exactly what you need — whether running an audit, investigating an incident, or reviewing access patterns.
05Mapped to a standardized schema
CompassOne maps Ubiquiti UniFi logs to the Open Cybersecurity Schema Framework (OCSF), making them structured, searchable by field, and compatible with third-party tools for parsing, visualization, and analysis.
0612 months of included storage
Get a full year of Ubiquiti UniFi log storage at no additional cost. Need more time? Extended retention is available at a flat, predictable rate.
07Set up in minutes
The Blackpoint Agent already deployed in your environment handles syslog collection. Point your Ubiquiti UniFi gateway at the agent, and logs start flowing into CompassOne right away.