Combined ITOM Health release notes for upgrades from Yokohama to Zurich

  • Release version: Zurich
  • Updated August 11, 2026
  • 7 minutes to read
  • Summarize
    Summarized using AI
    This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.

    Summary of Combined ITOM Health release notes for upgrades from Yokohama to Zurich

    This consolidated guide covers important updates, features, and changes in ITOM Health from the Yokohama release family through to Zurich. It is designed to help ServiceNow customers prepare for upgrades by providing a single reference for new capabilities, changes to existing functionality, deprecations, and activation steps. If no updates occurred in a release, this is explicitly noted for clarity.

    Show full answer Show less

    Key Features Introduced Since Yokohama

    • Splunk Integration Enhancements: Poll data regularly from Splunk using the Splunk Polling data input to enable consistent, recurring queries with minimal configuration. Also, ingest pre-processed, structured data from Splunk via existing data inputs for streaming log messages into Health Log Analytics (HLA).
    • Group Automation Improvements: Monitor and optimize alert grouping efficiency by viewing total alerts, alert groups, ungrouped alerts, and compression metrics. Simulate grouping methods including CMDB, machine learning, and text-based grouping for more effective alert management.
    • Integrations Launchpad: Configure log data connectors conveniently from the Event Management Integrations Launchpad within Service Operations Workspace. Supported connectors include Elasticsearch, ServiceNow System Logs, UDP, TCP, and starting version 36.0.19, additional connectors like Splunk TCP/UDP, MID Server, Apache Kafka, Azure Log Analytics, and REST API.
    • Amazon Data Firehose Integration: Stream real-time log data from multiple sources directly into ITOM Gateway’s collector service without requiring a MID Server. This is configurable via the Integrations Launchpad.
    • Network Traffic-Based Alert Grouping: Enable correlation of network traffic alerts with visualization of alert links using Link View in Express List® for deeper investigation.

    Key Changes

    • Enrich Automation Update: The previous toggle switch for continuing enrich alert automations has been replaced with radio buttons to better control whether other automations with the same filter run post-execution.
    • Now Assist Enhancements: Now Assist uses Retrieval-Augmented Generation (RAG) to provide more accurate and context-rich alert investigations by retrieving relevant past incidents and notifying users of related efforts, improving collaboration and reducing duplication.
    • Component-Based Alert Grouping Deprecated: Starting in version 36.0.19, component-based alert groups are removed in favor of a streamlined two-tier model (Log Analytics Group to Single Alert), improving alert visibility, correlation, and management efficiency.

    Activation and Installation

    To activate ITOM Health, ensure the Event Management plugin (com.glideapp.itom.snac) is enabled. Access to Health Log Analytics requires the ITOM Predictive AIOps package. Install Service Operations Workspace (ITOM) via the AIOps Experience application from the ServiceNow Store. Health Log Analytics must be requested separately from the ServiceNow Store.

    Accessibility and Localization

    • Accessibility: The Service Dashboard and Log Viewer support reflow, allowing zoom up to 400% without content loss, enhancing usability for users with low vision. Reflow can be disabled via system properties if needed.
    • Localization: Health Log Analytics supports US English, UK English, French, German, Italian, Japanese, and Spanish, with US English as the default.

    Important Notes

    • No updates were made specifically in the Zurich release for ITOM Health beyond Yokohama enhancements.
    • No features were removed or deprecated between Yokohama and Zurich releases.
    • Browser and additional ITOM Health requirements remain unchanged through these releases.

    Practical Benefits for ServiceNow Customers

    By upgrading through these releases, customers gain enhanced capabilities to integrate and ingest log data more efficiently, optimize alert grouping and automation workflows, and improve alert investigation with advanced AI assistance. The streamlined alert grouping model simplifies management and visibility, while integrations such as Amazon Data Firehose and expanded log connectors provide flexible, scalable data ingestion. Accessibility improvements ensure broader usability. These enhancements collectively enable faster, more accurate operational insights and improved IT operations management.

    Consolidated page of all release notes for ITOM Health from Yokohama to Zurich.

    How to use this page

    To help you prepare for your upgrade, we have combined the cross-family ITOM Health release notes onto one page. Read this summary of the new features, changes, and updated information for your product from Yokohama to Zurich.

    Tip:
    If there were no updates for a release notes section in a certain family release, we included a short note for your reference. For example, if a product did not have any updates in Tokyo, the row says "No updates for this release."

    Important information for upgrading ITOM Health to Zurich

    Before you upgrade to Zurich, review these pre- and post-upgrade tasks and complete the tasks as needed.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    New features

    Between your current release family and Zurich, new features were introduced for ITOM Health.

    Release Release notes

    Yokohama

    Pull data from Splunk regularly using the Splunk Polling data input
    Fetch data consistently over time by using the Splunk Polling data input, which sends recurring queries (polls) to Splunk. Handling most configurations on the HLA side, you need minimal additional stakeholder involvement, enabling swift integration with your existing Splunk setup. This enhancement accelerates proofs of concept (POCs) and enables faster iterations using real data.
    Use your Splunk data input to ingest pre-processed data from Splunk
    Ingest data from Splunk in a preprocessed, structured format using your existing Splunk data input for streaming log messages to Health Log Analytics with a heavy forwarder.
    Create Group automation
    View key details from the Test Automation section, including total alerts, alert groups, ungrouped alerts, and compression, to help track and optimize alert grouping efficiency. Simulate other group types, such as CMDB, ML, and text-based grouping. The simulation processes only alerts that match the condition filter.
    Integrate with log data connectors from the Integrations Launchpad
    Set up your log data connectors for HLA from the Event Management Integrations Launchpad in Service Operations Workspace for ITOM. The Integrations Launchpad provides a unified interface for convenient integration with log data connectors that feed raw log data from external sources into your instance. In this release, the Integrations Launchpad enables integration with the following connectors: Elasticsearch, ServiceNow System Logs, UDP, and TCP.

    Starting in version 36.0.19, benefit from additional log data integrations for Splunk TCP/UDP, Splunk Poller, MID Server, Apache Kafka, Microsoft Azure Log Analytics, and REST API that can be easily set up through the Integrations Launchpad.

    Set up an Amazon Data Firehose integration for real-time log data streaming from multiple sources
    Starting in version 36.0.19, leverage an integration for streaming log data from Amazon Data Firehose directly to the collector service in ITOM Gateway, where it is queued and then processed by Health Log Analytics. This integration doesn't run on a MID Server and can be configured from the Integrations Launchpad.
    View links between alerts in Network Traffic-based alert groups
    Once network traffic correlation is enabled, investigate network traffic alert group details and visualize connections through Link View in Express List®.

    Zurich

    No updates for this release.

    Changes

    Between your current release family and Zurich, some changes were made to existing ITOM Health features.

    Release Release notes

    Yokohama

    Enrich automation
    Introduced a new section And finally that contains two radio buttons that replace the previous Continue running automations of this type toggle switch.
    • Run other enrich alert automations continues running automations with the same filter conditions.
    • Don't run other enrich alert automations halts additional automations after execution, except those owned by other assignment groups.
    Investigate alerts using Now Assist

    Investigate alerts using Now Assist, which now uses the Retrieval-Augmented Generation (RAG) process to enhance alert investigation. This enhancement enables the retrieval of highly relevant past incidents, providing accurate context and actionable insights. Now Assist also notifies users of those involved in past or present efforts to resolve similar issues, promoting collaboration and reducing duplicated efforts.

    Component-based alert grouping is deprecated
    Starting in version 36.0.19, component-based alert groups are removed as Health Log Analytics adopts a streamlined, two-tier alert model: Log Analytics Group to Single Alert. It aligns alert representation with the service-level anomalies identified by Health Log Analytics, rather than individual host CIs. The update improves alert visibility, simplifies correlation, and enhances overall alert management efficiency.

    Zurich

    No updates for this release.

    Removed

    Between your current release family and Zurich, some ITOM Health features or functionality were removed.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Deprecations

    Between your current release family and Zurich, some ITOM Health features or functionality were deprecated.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Activation information

    Review information on how to activate ITOM Health.

    Release Release notes

    Yokohama

    • is available with activation of the Event Management plugin (com.glideapp.itom.snac). You must purchase a more comprehensive package, ITOM Predictive AIOps, to enable working with Health Log Analytics. For details, see Event Management setup.
    • Install Service Operations Workspace (ITOM) by installing the AIOps Experience [sn_sow_aiops] application from the ServiceNow Store. Visit the ServiceNow Store website to view all the available apps and for information about submitting requests to the store. For cumulative release notes information for all released apps, see the ServiceNow Store version history release notes.
    • Install Health Log Analytics by requesting it from the ServiceNow Store. Visit the ServiceNow Store website to view all the available apps and for information about submitting requests to the store. For cumulative release notes information for all released apps, see the ServiceNow Store version history release notes.

    Zurich

    No updates for this release.

    Additional requirements

    If any additional requirements were introduced or changed for ITOM Health we have noted them here.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Browser requirements

    If any specific browser requirements were introduced or changed for ITOM Health we have noted them here.

    Release Release notes

    Yokohama

    No updates for this release.

    Zurich

    No updates for this release.

    Accessibility information

    Review details on accessibility information for ITOM Health, such as specific requirements or compliance levels.

    Release Release notes

    Yokohama

    Support for reflow
    The Service Dashboard and Log Viewer component was updated to support reflow, which enables pages and content to be zoomed up to 400% through your browser settings without loss of content or functionality. Additionally, content can be enlarged without scrolling in two dimensions at a width equivalent to 320 CSS pixels or a height equivalent to 256 CSS pixels.
    This enhancement helps users with low vision or who have trouble seeing web content in a browser due to monitor size, device type, poor lighting, or other situations. Reflow can be turned off with a system property for instances, experiences, and pages. See Reflow for Configurable Workspace for details.

    Zurich

    No updates for this release.

    Localization information

    If there are specific localization considerations for ITOM Health we have noted them here.

    Release Release notes

    Yokohama

    The current available languages for Health Log Analytics are US English, UK English, French, German, Italian, Japanese, and Spanish. The default language is US English.

    Zurich

    No updates for this release.

    Highlight information

    If there are specific highlight considerations for ITOM Health we have noted them here.

    Release Release notes

    Yokohama

    Health Log Analytics highlights:
    • Pull data from Splunk consistently over time using the Splunk Polling data input, which sends recurring queries (polls) to Splunk.
    • Use your Splunk data input to ingest data from Splunk in a pre-processed, structured format.
    • Integrate with log data connectors from the Integrations Launchpad
    • Use dedicated Cribl, Edge Delta and Vector Agent data inputs to streamline HLA data ingestion with tools handling large log volumes.
    • Generate a description of Health Log Analytics alerts using Now Assist.

    Event Management highlights:

    Service Operations Workspace for ITOM
    • Starting with version 26.3.1, benefit from the new alert grouping based on network traffic correlation:
      • Use Express List® to investigate network traffic-based alert groups
      • View connections between network traffic-based alerts in Link View.
      • Starting with version 2.5.3, review alert group analysis by Now Assist
    • Review relevant information in the Now Assist panel based on records selected in Express List®.
    • Enable team-level operators to create and manage new alert automations by assigning the new team_operator role.
    • Map current alert field values to new specified values through the new Change alert values option in the Enrich automation section.
    • Track and optimize grouping efficiency by viewing key details such as total alerts, alert groups, ungrouped alerts, and compression in Group Automation. Simulate other group types, such as CMDB, ML, and text-based grouping.

    Agent Client Collector highlights:

    See ITOM Health for more information.

    Zurich

    No updates for this release.