Alerting

How to configure the automatic creation of CA Service Desk Manager Tickets through Splunk alerts?

phspec
Explorer

Hi everyone,

I'm trying to automate the creation of CA Service Desk Manager tickets through Splunk alerts. I understand that Splunk can call a script when an saved search alert is triggered, and that I can call a program that uses the ticketing system's API to submit a ticket, and that I put scripts in '/opt/splunk/bin/scripts'.

If anyone can help elaborate on this or point my to a script that APIs with CA Service Desk Manager, I'd greatly appreciate it.

Thanks!

0 Karma

starcher
Influencer

You should look into modular alerts. And use the Add On builder app to help you once you have code that can make tickets.

Things to research:
http://docs.splunk.com/Documentation/Splunk/latest/AdvancedDev/ModAlertsIntro
https://splunkbase.splunk.com/app/2962/

There is no short answer for you as you have to develop your own code. You might also look at the various Service Now apps in splunk base for ideas.

0 Karma

phspec
Explorer

So I'm working with CA Service Desk Manager. I believe that's different than Service Now, or am I mistaken?

0 Karma

starcher
Influencer

yes different. but you can look at how they built their integrations with Splunk.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...