Ubiquity UniFi

Experience the power of CompassOne

Get a Demo

Integrate. Simplify. Protect.

Collect and store Ubiquiti UniFi logs while equipping the Blackpoint SOC with network-level telemetry to detect threats and support incident investigations. With OCSF-mapped data, field-level search, and 12 months of included storage, this integration covers compliance and security together.

Ubiquiti UniFi + CompassOne Overview

01Forward UniFi logs directly into CompassOne


Collect traffic, event, VPN, user authentication, policy, and admin logs from your Ubiquiti UniFi environment — all indexed, mapped to OCSF, and ready for search and analysis.

02Enhance SOC threat detection and response


Integrating Ubiquiti UniFi data provides the 24/7 Blackpoint SOC with network telemetry to detect anomalies, triage security events, and investigate incidents across your environment.

03Keep compliance and audits covered


Retain firewall logs to meet regulatory standards, cyber insurance requirements, and audit timelines. Built-in search tools make periodic reviews quick and easy.

04Targeted log search


Query UniFi events using time and field filters, keyword matching, and advanced syntax to find exactly what you need — whether running an audit, investigating an incident, or reviewing access patterns.

05Mapped to a standardized schema


CompassOne maps Ubiquiti UniFi logs to the Open Cybersecurity Schema Framework (OCSF), making them structured, searchable by field, and compatible with third-party tools for parsing, visualization, and analysis.

0612 months of included storage


Get a full year of Ubiquiti UniFi log storage at no additional cost. Need more time? Extended retention is available at a flat, predictable rate.

07Set up in minutes


The Blackpoint Agent already deployed in your environment handles syslog collection. Point your Ubiquiti UniFi gateway at the agent, and logs start flowing into CompassOne right away.