Splunk Enterprise

Splunk Addon For ServiceNow doesn't show proper results when "Include Parameters" is set

izzie123
Path Finder

Hello All,

I am testing the data inputs for Splunk Addon for ServiceNow and there is a requirement to include only certain fields in the data.

I tried to set the filtering using the "Included Parameters" option in the input and added the desired comma separated fields.

However, I am not able to see those fields. What I see is only the two default id and time fields.

I have included the following fields : 
dv_active,dv_assignment_group,dv_assigned_to,dv_number,dv_u_resolution_category

But in the output I see only below fields:

izzie123_0-1701177101537.png

Is there anything that I am doing wrong?

Regards,

Himani.

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us for an ...

Observability Unlocked: Kubernetes Monitoring with Splunk Observability Cloud

 Ready to master Kubernetes and cloud monitoring like the pros? Join Splunk’s Growth Engineering team for an ...