All Apps and Add-ons

Splunk App for ServiceNow: Can we implement custom fields?

hkshim88
Engager

Hello,

Hello Support Team,

I am trying to integrate servicenow app/addon on Splunk and would like to enable the ServiceNow Event Integration for the trigger action. However, I am wondering if there is any way for us to customize the fields. Currently we see 5 fields: Node, Type, Resource, Severity and Description. Does anyone know how to add/change the fields similar to the one in ServiceNow Security Operations add-on for Splunk? The ServiceNow Security Incident has the fields: Title, CI/Host, Category, Subcategory, Group, Source, Priority and Description. We do not want to use the security incident as that is not enabled on the ServiceNow side yet.

Kindly let us know if there is a way.

Thank you.

chrisyounger
SplunkTrust
SplunkTrust

I don't thinks its officially supported, but you can follow this process:

https://answers.splunk.com/answers/736869/servicenow-how-do-set-extra-custom-fields-when-cre.html

0 Karma

ChrisBell04
Communicator

Enhancement request ADDON-17893 has been filed to add the Description field to incident creation.

0 Karma
Get Updates on the Splunk Community!

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...

Splunk MCP & Agentic AI: Machine Data Without Limits

Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization uses ...