All Apps and Add-ons

I am unable to index ServiceNow database table

vamsi92
Explorer

Hi ,
I have splunk enterprise in linux environment . And I am using with service-now integration. For that i am using Splunk add-on for service-now.
I want to index database tables from service now for example - "incident". But incident is predefined added into splunk which we need to enable. I have enabled the incident table and i am able to parse through the incidents in incidents table in servicenow.
Now i want to add another table from service now to work on from splunk.
so i added another table as
settings-> data inputs-> under local inputs splunk add-on for service-now -> new.
i have filled the name as "task_survey" which is name of a table in service-now and interval 5 sec.
after i checked its enabled or not. Now when i try to search some data from table i am getting no results found, whereas when i search some thing from incident table i am able to get results.
Is there anything else needed to be done for getting the table data into splunk or what..
I am new to splunk so pls try to explain little elaborately

0 Karma
1 Solution

rpille_splunk
Splunk Employee
Splunk Employee

Hi Vamsi92,

Check to make sure that the account that you are using to integrate with your ServiceNow instance from the Splunk platform has read-only (at least) permissions to your "task_survey" table. You may need to create an additional access control rule just for this table, as well as for any other custom tables that you want to add.

See steps 7 and 8 here for more details:
http://docs.splunk.com/Documentation/AddOns/latest/ServiceNow/ConfigureServiceNowtointegratewithSplu...

Please let us know if that solves the issue!

View solution in original post

rpille_splunk
Splunk Employee
Splunk Employee

Hi Vamsi92,

Check to make sure that the account that you are using to integrate with your ServiceNow instance from the Splunk platform has read-only (at least) permissions to your "task_survey" table. You may need to create an additional access control rule just for this table, as well as for any other custom tables that you want to add.

See steps 7 and 8 here for more details:
http://docs.splunk.com/Documentation/AddOns/latest/ServiceNow/ConfigureServiceNowtointegratewithSplu...

Please let us know if that solves the issue!

Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...