Skip to content
Get startedRequest a demo
Decision and work tracking

ServiceNow

ITSM, CMDB, and change management. Critical for understanding enterprise system topology.

Access mode: Read-only

Required information

FieldDetails
Instance URLhttps://<instance>.service-now.com.
TablesTarget tables: cmdb_ci (CMDB), change_request, incident, sys_db_object, or custom tables.
AuthenticationOAuth 2.0 (preferred), basic auth with service account, or LDAP/SSO integration.
RolesRead-only: snc_read_only or custom role with read on target tables. CMDB: cmdb_read.

Network considerations

SaaS: HTTPS to <instance>.service-now.com. No VPN needed.

IP Access Control List: If instance restricts API access by IP, add Flume’s egress IPs in System Properties → IP access list.

Mid Server: If connecting to on-prem resources through ServiceNow, Mid Server must be configured. Not needed for direct API access.

Credential and auth management

Preferred: OAuth 2.0. Register an OAuth application in ServiceNow (System OAuth → Application Registry). Client credentials grant for M2M. Scoped to specific tables via ACLs.

Acceptable: Service account with basic auth. Dedicated local user with read-only role. Ensure account doesn’t get locked by password policy.

Session management: ServiceNow API sessions are stateless (per-request auth). No session timeout concerns.

ACLs: ServiceNow’s ACL system controls field-level access. Confirm the service account can read all required fields, not just the table.

Validation checks

CheckMethodExpected result
AuthenticationGET /api/now/table/sys_user?sysparm_limit=1200 with user record
CMDB accessGET /api/now/table/cmdb_ci?sysparm_limit=1Returns a CI record
Table readGET /api/now/table/<table>?sysparm_limit=5Returns records
Field accessGET /api/now/table/<table>?sysparm_fields=<field_list>Returns requested fields (no access denied)

Every connection starts from the pre-engagement checklist and goes through the universal validation protocol before production sign-off.