All Apps and Add-ons

How do you use Rest API Modular Input to create an incident in ServiceNow (SNOW) without the Splunk add-on?

premranjithj
Builder

I have an alert configured in Splunk. Whenever that alert gets triggered, I need to call an API to create an incident in SNOW.

i am aware of the SNOW add-on, but we are not required to use it.

So please help with the other way to create an incident. We have an endpoint URL to create it.

hkubavat_splunk
Splunk Employee
Splunk Employee

You can define the custom alert action: https://docs.splunk.com/Documentation/Splunk/7.3.2/AdvancedDev/CustomAlertScript. But you cannot to out of the box from the Splunk.

0 Karma
.conf21 Now Fully Virtual!
Register for FREE Today!

We've made .conf21 totally virtual and totally FREE! Our completely online experience will run from 10/19 through 10/20 with some additional events, too!