Set up log streaming via ITOM Gateway for Health Log Analytics
Set up log streaming via ITOM Gateway to enable Health Log Analytics (HLA) to receive log data directly from external sources without a MID Server.
Before you begin
- Review the MID-less log streaming via ITOM Gateway in Health Log Analytics documentation.
- Verify that Health Log Analytics version 36.0.19 or higher is installed on your instance.
- Verify that HLA provisioning is complete. Confirm that the AI Engine and Elasticsearch show green status at:
https://<instance>.service-now.com/xmlstats.do?include=services_status. - Verify that ITOM Cloud Services Core is installed on your instance.
- Verify that a JWT provider and token are configured on your instance. For more information, see Configure a JSON Web Token (JWT) provider and token for Health Log Analytics.
- (High-volume deployments only) If you expect 30,000 or more log events per second, contact ServiceNow Support to request infrastructure scaling. Proceed to the log streaming via ITOM Gateway setup procedure only after ServiceNow confirms that scaling is complete.Provide the following information:
Table 1. Required information for infrastructure scaling Information Example Expected maximum log events per second 100,000 log events per second from all sources Environment URL or URLs <customer>prod.service-now.com Preferred migration date and time Sundays, overnight US time preferred Note:Scaling requires a 6-hour change window and expected HLA downtime of 2–6 hours.
Role required: evt_mgmt_admin
About this task
Log streaming via ITOM Gateway removes the MID Server from the log ingestion path. External log sources send data directly to the ITOM Gateway, which routes it through the Hermes Messaging Service to the HLA AI Engine. For more information, see MID-less log streaming via ITOM Gateway in Health Log Analytics.
Setup involves two stages: enabling ITOM Gateway and Hermes on your instance, and creating an integration from Integrations Launchpad.
Supported log sources include AWS Firehose, Cribl Stream, and OpenTelemetry Collector.