Splunk integration - Failed to verify ServiceNow username and password, code=403 (Forbidden)

damucka
Kilo Explorer

Hello,

 

I am trying to integrate my Splunk alerts into ServiceNow. I have proceeded as per the guide.

We installed the Splunk Integration App in ServiceNow and created the splunk_user with the corresponding role  x_splu2_splunk_ser.splunk. However when I try to add/configure the account on the Splunk side, I am becoming the following error:

find_real_file.png

 

When I try to logon manually to the NOW instance above as thesplunk_user it works fine.

What am I doing wrong?

Can anyone advice?

Kind Regards,

Kamil

1 REPLY 1

Community Alums
Not applicable

Hi Damucka,

I experienced an issue with the credentials not being accepted due to customisation on the Local Credential Store.

If you Navigate to Password Reset > Credential Store > Local ServiceNow Instance > User account lookup field, for us to fix it we set it to none:

find_real_file.png

Let me know if this resolves your issue.

Enrique