All Apps and Add-ons

How to generate a snow incident based on a Splunk dashboard?

elmadalouch
Loves-to-Learn

other can you please give me solution for this subject

Labels (1)
0 Karma

elmadalouch
Loves-to-Learn

We have a Splunk Dashboard so if two conditions displayed on the latter are true then a P2 ticket needs to be created in Service Now

0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

I would say to create an alert with the same query as dashboard and use SNOW incident create alert action.

For me that's the right way to approach this.

 

Hope this helps. Please accept the solution if this resolves your issue.

0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

Can you please elaborate on your question of what do you mean by generating incidents based on the Splunk dashboard?

 

In case you are looking for this:

- You can open the dashboard search by using the magnifier button at bottom of each panel on your dashboard and then in the search window you can use the below command syntax to create an incident as part of the search result on SNOW.

| snowincidentstream

Reference (Find description and examples here) - https://docs.splunk.com/Documentation/AddOns/released/ServiceNow/Usestreamingcommands

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...