Hi,
I am trying to sort out which Splunk add-on for ServiceNow to use: 4412, 3921, or 1928. I want to have Splunk alerts generate tickets in Service now, ingest Splunk alerts and convert them into SR or SIR depending on the type of alert, and SOC Analysts can also manually forward selected events on-demand from the Splunk console.