Our ServiceNow and Splunk integration has worked seamless for a few years. Today we started getting this error in Splunk: "Unable to update ServiceNow incident. ServiceNow API credentials are invalid"
I have reset the ServiceNow service account password (generated by ServiceNow) and after entering the password in Splunk I get "Could not save ServiceNow settings"
I have tried multiple passwords generated by ServiceNow because I cannot manually set this in ServiceNow. Does anyone know if Splunk has limitations on the password?
A few questions to better understand your issue:
Answers to these will help pinpoint the cause.
In addition to the frontend errors you are seeing, are there any errors in the Splunk logs? Check your _internal log or $SPLUNK_HOME/var/log/splunk/splunkd.log for other errors relating to this app, is there any more specific errors?
🌟 Did this answer help you? If so, please consider:
Your feedback encourages the volunteers in this community to continue contributing.