All Apps and Add-ons

Splunk App for ServiceNow: Can we implement custom fields?

hkshim88
Engager

Hello,

Hello Support Team,

I am trying to integrate servicenow app/addon on Splunk and would like to enable the ServiceNow Event Integration for the trigger action. However, I am wondering if there is any way for us to customize the fields. Currently we see 5 fields: Node, Type, Resource, Severity and Description. Does anyone know how to add/change the fields similar to the one in ServiceNow Security Operations add-on for Splunk? The ServiceNow Security Incident has the fields: Title, CI/Host, Category, Subcategory, Group, Source, Priority and Description. We do not want to use the security incident as that is not enabled on the ServiceNow side yet.

Kindly let us know if there is a way.

Thank you.

chrisyounger
SplunkTrust
SplunkTrust

I don't thinks its officially supported, but you can follow this process:

https://answers.splunk.com/answers/736869/servicenow-how-do-set-extra-custom-fields-when-cre.html

0 Karma

ChrisBell04
Communicator

Enhancement request ADDON-17893 has been filed to add the Description field to incident creation.

0 Karma
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...