Alerting

How to capture fields in Service Now Tickets

alexspunkshell
Contributor

I can able to create Service Now tickets from Splunk.  In the email alert i receive Affected computer, UPN, Event title ,File name.

I want to capture same details in the service now ticket.

But in service now tickets, i don't have any informations. Its blank with no info.

Please help me how to pass this info from splunk.

Do i want to do any changes in setting -> Field -> Workflow? What changes i want to do.

Please help me 

Email Alert

alexspunkshell_0-1605108845428.png

Received Service Now Ticket with no Info

alexspunkshell_1-1605108886790.png

Servic now alert setting

alexspunkshell_2-1605108939477.png

alexspunkshell_3-1605108979025.png

 

@isoutamo @ITWhisperer  @gcusello @thambisetty @bowesmana @DalJeanis 

 

 

Labels (3)
Tags (3)
0 Karma

thambisetty
SplunkTrust
SplunkTrust

Hi @alexspunkshell 

I have presented a topic in Dubai user group on how best we can make use of servicenow add-on. I am sure your question will be answered in below video.

https://www.youtube.com/watch?v=DNYobMVbj6c

————————————
If this helps, give a like below.
0 Karma
Get Updates on the Splunk Community!

From GPU to Application: Monitoring Cisco AI Infrastructure with Splunk Observability ...

AI workloads are different. They demand specialized infrastructure—powerful GPUs, enterprise-grade networking, ...

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...