All Apps and Add-ons

Splunk Add-on for Service Now. Unable to create incidents from alerts

FraserC1
Path Finder

Hi,

I have the following configuration:

heavy forwarder with splunk add-on for servicenow installed and all inputs & accounts configured here.

Splunk Cloud with Splunk app for servicenow installed.

On Splunk cloud when I create an alert and choose service now incident integration it says it cannot find an account to use.
However, when doing the same on the heavy forwarder it can obviously find an account since it is configured in the add-on.

So I then go to splunk cloud to try to configure the account. But in the app under configure > account setup, it gives me a 404 error "Unexpected error occurs. Unexpected error "" from python handler: "HTTP 404 Not Found -- Not Found". See splunkd.log for more details"

If I install the add-on on splunk cloud then the configuration pages just do not load. So I am stuck in this limbo where I need to configure an account but I am unable to.

Any help would be excellent.

0 Karma

woodcock
Esteemed Legend

It is telling you the problem: it cannot connect to the server. Many admin things in Splunk Cloud (such as installing apps, but maybe that is looser now) require you to open a support ticket to get their guys to do the admin. I would definitely open a support ticket and see what they say.

0 Karma
Get Updates on the Splunk Community!

Routing logs with Splunk OTel Collector for Kubernetes

The Splunk Distribution of the OpenTelemetry (OTel) Collector is a product that provides a way to ingest ...

Welcome to the Splunk Community!

(view in My Videos) We're so glad you're here! The Splunk Community is place to connect, learn, give back, and ...

Tech Talk | Elevating Digital Service Excellence: The Synergy of Splunk RUM & APM

Elevating Digital Service Excellence: The Synergy of Real User Monitoring and Application Performance ...