Cloudflare Docs
Cloud Email Security (formerly Area 1)
Edit this page
Report an issue with this page
Log into the Cloudflare dashboard
Set theme to dark (⇧+D)

SIEM integration

With a bit of configuration, you can also bring Cloud Email Security (formerly Area 1) data into your Security Information and Event Management (SIEM) tools to view message-level information outside of the dashboard and create your own custom reports.

​​ Connect a SIEM tool

The following steps are required to connect your SIEM tool.

​​ 1. Set up your SIEM tool

For help setting up the proper configuration in your SIEM tool, refer to the following guides:

  • KnowBe4: KnowBe4 integration guide
  • LogScale: Falcon LogScale integration guide
  • Splunk: Splunk Cloud integration guide
  • Sumo Logic: Sumo Logic integration guide

​​ 2. Create a webhook

Refer to Alert webhooks to learn how to create a webhook and send data into your SIEM tool.