Hi @schiwark , using the addon will also require some settings on Service Now to integrate with Splunk, as this option provides not only creating/updating incidents but you will be able to get incident data from Service Now in Splunk. You can refer below link for the details on set up required on Service Now side. https://docs.splunk.com/Documentation/AddOns/released/ServiceNow/ConfigureServiceNowtointegratewithSplunkEnterprise For a complete guide, please refer : https://docs.splunk.com/Documentation/AddOns/released/ServiceNow/About Hope this helps.
... View more