Hello,
I've sat up the Splunk Add-on for ServiceNow on a HF to gather inputs from ServiceNow using the default scripted inputs that comes with the add-on. When I search in the data on my indexer, the host field for the data is that of the HF, not the actual ServiceNow machines. I know I'm able to set a static host field in the inputs.conf file in the add-on on the HF, but I don't think this would be the best solution. Also, there are several ServiceNow machines, so the static field would have to have a more general value in this case. I can't find any solutions for setting a dynamic host field in the docs. Could anyone help me out?