Pair Threat Intelligence Management (Cloud) with an on-premises Splunk Enterprise Security deployment
There are two parts to pair Threat Intelligence Management (Cloud) with an on-premises deployment of Splunk Enterprise Security:
Before you begin, make sure you’re running a compatible version of Splunk Enterprise Security. Your Splunk Enterprise Security on-premises deployment must be running version 8.1.0 or greater. Splunk Enterprise Security on-premises version 8.0 or older can’t connect to a Threat Intelligence Management (Cloud) tenant. See Threat Intelligence Management (Cloud) availability to find information for both cloud and on-premises compatibility.