ServiceNow
ITSM, CMDB, and change management. Critical for understanding enterprise system topology.
Access mode: Read-only
Required information
| Field | Details |
|---|---|
| Instance URL | https://<instance>.service-now.com. |
| Tables | Target tables: cmdb_ci (CMDB), change_request, incident, sys_db_object, or custom tables. |
| Authentication | OAuth 2.0 (preferred), basic auth with service account, or LDAP/SSO integration. |
| Roles | Read-only: snc_read_only or custom role with read on target tables. CMDB: cmdb_read. |
Network considerations
SaaS: HTTPS to <instance>.service-now.com. No VPN needed.
IP Access Control List: If instance restricts API access by IP, add Flume’s egress IPs in System Properties → IP access list.
Mid Server: If connecting to on-prem resources through ServiceNow, Mid Server must be configured. Not needed for direct API access.
Credential and auth management
Preferred: OAuth 2.0. Register an OAuth application in ServiceNow (System OAuth → Application Registry). Client credentials grant for M2M. Scoped to specific tables via ACLs.
Acceptable: Service account with basic auth. Dedicated local user with read-only role. Ensure account doesn’t get locked by password policy.
Session management: ServiceNow API sessions are stateless (per-request auth). No session timeout concerns.
ACLs: ServiceNow’s ACL system controls field-level access. Confirm the service account can read all required fields, not just the table.
Validation checks
| Check | Method | Expected result |
|---|---|---|
| Authentication | GET /api/now/table/sys_user?sysparm_limit=1 | 200 with user record |
| CMDB access | GET /api/now/table/cmdb_ci?sysparm_limit=1 | Returns a CI record |
| Table read | GET /api/now/table/<table>?sysparm_limit=5 | Returns records |
| Field access | GET /api/now/table/<table>?sysparm_fields=<field_list> | Returns requested fields (no access denied) |
Every connection starts from the pre-engagement checklist and goes through the universal validation protocol before production sign-off.