ITOM Visibility release notes
Summarize
Summary of ITOM Visibility release notes
The ServiceNow® ITOM Visibility application offers a unified, connected perspective of your entire IT infrastructure and the services it supports. The Zurich release enhances ITOM Visibility with new features, improved integrations, and streamlined workflows for cloud and certificate management, service mapping, and discovery processes.
Show less
Key Features
- Cloud and Discovery Enhancements: Cloud-based scheduling is now integrated into the Discovery Admin Workspace, supporting AWS, Azure, GCP, and Alibaba Cloud resources. Discovery can identify AWS EC2 VMs using AWS Systems Manager (SSM) without direct SSH/PowerShell access.
- AI-Powered Service Mapping: Two AI Agents generate service maps automatically, connecting Business Applications to Application Services and reducing manual CSDM relationship maintenance. Service Mapping MCP tools enable conversational queries of live service topology and relationships.
- Installation and Setup Improvements: Now Assist for Setup provides a guided, centralized installation experience for ITOM Visibility applications and plugins from a single interface. Discovery Guided Setup is accessible within the Discovery Admin Workspace for quicker configuration and CMDB accuracy.
- Certificate Inventory and Management: Automated TLS certificate renewal workflows and integration with Keyfactor EJBCA and ACME enable secure, automated lifecycle management of certificates, including root certificate discovery outside servers.
- Kubernetes Visibility Agent (KVA): Continuous discovery of Kubernetes clusters updates CMDB with workload traffic-based application service mapping and improved namespace CI handling.
- Tag-Based Service Mapping: Enhanced workspace and dashboards support creating and managing tag-based services for better resource organization.
- Pattern and Data Model Updates: Over 25 new cloud patterns, expanded Azure and AWS cloud services discovery, and updated pattern names and data models improve discovery coverage and accuracy.
- UI and Usability: Coral theme is now default with a dark mode option for portals and mobile, improving user experience. New Actions menu in Discovery Admin Workspace enhances anomaly detection management.
- Security Improvements: HTTP Classify probe now blocks credentials over unencrypted HTTP by default to prevent exposure, configurable via MID Server property for advanced cases.
- Cloud License Estimator (CLE): Estimates cloud resource counts eligible for licensing to support licensing planning prior to ITOM cloud solution deployment.
Key Outcomes
- Improved Infrastructure Visibility: Real-time, automated discovery across cloud providers and Kubernetes clusters increases CMDB accuracy and infrastructure insight.
- Reduced Manual Effort: AI-powered service mapping and guided setup tools minimize manual tasks and speed up ITOM implementation and maintenance.
- Automated Certificate Management: Streamlined certificate lifecycle processes enhance security and reduce operational overhead.
- Enhanced Security Posture: Default protection against credential exposure during HTTP probes, plus enhanced control over certificate workflows.
- Unified User Experience: Consolidated discovery scheduling and access, along with modern UI themes, improve operational efficiency and user satisfaction.
- Future-Ready Platform: Preparation for Cloud Discovery Workspace deprecation by consolidating functionality into Discovery Admin Workspace ensures smoother transitions.
Activation and Compatibility
ITOM Visibility functions require activation of Discovery and Service Mapping plugins and an ITOM Visibility subscription. Latest application versions are available on the ServiceNow Store, including Discovery and Service Mapping Patterns, Cloud Service Graph Connectors, and Kubernetes Visibility Agent components.
Related Applications
- ITOM Health: Integrates Event Management and Metric Intelligence to monitor service health and performance.
- Learning Enhanced Automation Platform (LEAP): Uses AI for incident analysis and automation creation to resolve high-impact issues proactively.
- ITOM Cloud Accelerate: Streamlines cloud automation and migration with self-service catalogs and governance workflows.
The ServiceNow® ITOM Visibility application provides a unified, connected view of your entire IT infrastructure and the services that it supports. ITOM Visibility was enhanced and updated in the Zurich release.
ITOM Visibility highlights for the Zurich release
- Cloud-based scheduling available in Discovery Admin Workspace (store version 1.11.0).
- AWS EC2 VMs discovery using AWS Systems Manager (SSM).
- Tag-based Service Mapping experience in the Service Mapping Workspace (store version 1.16.3).
- Application service maps for containers via Kubernetes Visibility Agent (KVA) (store version 3.11.0).
- 25 cloud patterns shipped via Discovery and Service Mapping Patterns (store version 1.28.0)
- Certificate Inventory and Management TLS Certificate request flows that support Keyfactor EJBCA (store version 3.7.0) and Certificate Inventory and Management Automated TLS Certificate renewal workflows (store version 3.8.2).
See IT Operations Management for more information.
New in the Zurich release
- Install ITOM Visibility apps using Now Assist for Setup
- Now Assist for Setup provides a centralized, guided installation experience for ITOM Visibility. From a single interface, administrators can review what applications are included in the installation, review the installation status, and install all required applications and plugins.
- Discover your Alibaba Cloud resources
- Starting with Discovery and Service Mapping Patterns store version 1.29.0, Discovery supports Alibaba Cloud. Discovery enables real-time visibility and automated population of the CMDB with configuration data for cloud resources.
- Create a cloud discovery schedule in Discovery Admin Workspace
- Starting with version 1.11.0, Discovery Admin Workspace supports creating Discovery schedules for Amazon Web Services, Azure, and Google Cloud Platform cloud providers. This update advances the integration of cloud discovery capabilities into a unified workspace, reducing operational complexity and aligning with the upcoming deprecation of Cloud Discovery Workspace.
- Discover AWS EC2 VMs using AWS Systems Manager (SSM)
- Perform detailed discovery of EC2 hosts running in AWS without the requirement for a direct SSH or PowerShell connection by discovering AWS EC2 VMs by using AWS Systems Manager (SSM).
- Discovery Guided Setup
- Starting with version 1.11.0, you can access ITOM Discovery Guided Setup from the Discovery Admin Workspace home page. This setup provides a structured process to configure Discovery and maintain accurate CMDB visibility quickly.
- View command validation-related entries using new role in Pattern Designer Enhancements
- Starting with Pattern Designer Enhancements version 3.9.0, the new pde_viewer role has permissions to view Command Validation Tasks, Command Validation Tasks Results, and
Command List. The pde_viewer role is restricted to viewing the command list modules and doesn't have permissions to modify or edit them. The pde_viewer role can view the following tables only:
- Command List [pd_command_list]
- Command Validation Task [pd_command_validation]
- Command Validation Task Results [pd_command_validation_results]
- Pattern Shared Library Mapping [pd_pattern_to_shared_library_mapping]
- Temporary Variable Mappings [pd_temp_variable_value_mapping]
- Discover new products with Discovery and Service Mapping Patterns
- Discover the following products using Discovery and Service Mapping Patterns version 1.29.0:
- Receive updates for activated patterns
- Starting with Visibility Content version 6.28.0, activating or deactivating a pattern won't be considered a customization, and it will continue to receive updates. Patterns that were previously activated or deactivated will reset to the latest predefined version after upgrading while retaining the last active field value.
- Enhance your resource management with the new Tag Categorization feature from Tag Governance
- Starting with version 1.7.0, automate the tagging process to promote a consistent, organized way to manage tags by using five predefined tag categories provided by Tag Governance.
- Estimate your cloud license count prior to using ITOM cloud solutions using CLE
- Cloud License Estimator (CLE) provides an estimated resource count for all cloud resources eligible for licensing. It validates the provided cloud account details and estimates the resource count based on the prevailing licensing rules.
- Improve admin efficiency with new Actions menu
- Discovery Admin Workspace version 1.10.0 introduces a new Actions drop-down menu on the Anomaly Detection tab of the Diagnostics page, offering quick access to anomaly detection settings and a Clear all anomalies option to remove related records from key tables.
- Enjoy increased control and improved accuracy in the Automated Service Suggestions feature in Service Mapping.
- Ensure that candidates remain relevant and useful through a new property that excludes irrelevant information from Application Service Candidates, such as non-operational or retired servers.
UI changes
- Coral theme
- Coral is now the default theme for new portal, web, and mobile experiences with Next Experience or Core UI enabled. This theme provides a fresh look and feel, featuring brand-neutral illustrations to enhance your user experience. A dark theme option is available for web and mobile experiences.
- Explore additional Cloud Discovery metrics and visualizations
- Starting with version 1.10.0, in addition to the IP-based Discovery schedules, Cloud Discovery schedule details and data visualizations are available in the Discovery Admin Workspace. These visualizations provide a comprehensive view of the schedule's performance and status, highlighting key metrics such as the number of discoveries completed, success rate, and any errors encountered.
- Streamlined access to Cloud Service Accounts in Discovery
- Starting with Discovery Admin Workspace version 1.10.0, Cloud Service Accounts can be accessed directly from the Discovery section of the navigation menu.
- Use virtual agent to retrieve MID Server settings
- Starting with Discovery Admin Workspace version 1.10.0, the virtual agent on the Diagnostics page now enables you to retrieve and download MID Server settings directly, eliminating the need to manually navigate through the MID Server [mid_servers] table.
Changed in this release
- Use the enhanced Discovery and Service Mapping Patterns for extended discovery
- Note the following new Pattern improvements using version 1.29.0:
- IBM Hardware Management Console (HMC): additional fields in IBM Frame [cmdb_ci_ibm_frame] and IBM LPAR Instance [cmdb_ci_lpar_instance] tables
- Dell PowerMax storage: additional fields in Storage Server [cmdb_ci_storage_server] table
- Pure Storage FlashArray: additional fields in Storage Server [cmdb_ci_storage_server] table
- NetApp Server and Cluster: additional fields in Storage Server [cmdb_ci_storage_server] table
- AWS Auto Scaling groups: The relationship between Instance Scale Set and VM Instance has changed from Members::Member of to Managed by::Manages
- Employ Tag-based mapping in the Service Mapping Workspace
- Easily view data and create new tag-based services through an enhanced workspace that includes a dedicated dashboard for managing your tag-based services.
- Name updates in Discovery and Service Mapping Patterns
- Name updates starting with Discovery and Service Mapping Patterns version 1.28.0:
- The RHV cloud provider has been changed to oVirt
- The RHV MID Server capability has been changed to oVirt
- The label for the [cmdb_ci_rhv_ldc] datacenter type has been changed from RHV LDC to oVirt LDC
- The label for the [rhv_credentials] credential type has been changed from RHV Credentials to oVirt Credentials
- The following pattern names have been changed from RHV to oVirt:
- From RHV Clusters and Hosts to oVirt Clusters and Hosts
- From RHV Discover Logical datacenters to oVirt Discover Logical datacenters
- From RHV Virtual Machines to oVirt Virtual Machines
- From RHV Discover Manager Instance to oVirt Discover Manager Instance
- The following table labels have been changed from RHV to oVirt:
- The [cmdb_ci_rhv_vm_instance] table label from RHV Virtual Machine Instance to oVirt Virtual Machine Instance
- The [cmdb_ci_rhv_cluster] table label from RHV Cluster to oVirt Cluster
- The [cmdb_ci_rhv_ldc] table label from RHV LDC to oVirt LDC
- The [cmdb_ci_rhv_manager] table label from RHV Manager to oVirt Manager
- The [cmdb_ci_rhv_object] table label from RHV Object to oVirt Object
- The [cmdb_ci_rhv_server] table label from RHV Server to oVirt Server
- Benefit from an updated, curated selection of application service candidates in Service Mapping
- If you have ITOM Content Service installed, you can view an enhanced selection of Application Service Candidates (ASCs) that provides more accurate and useful information, with an automatic filter applied to hide irrelevant and non-essential components.
- Automate your certificate workflows using Keyfactor EJBCA and ACME
- Starting with version XX of Certificate Inventory and Management, you can automate the life cycle of requesting, renewing, and revoking your certificates by integrating the Keyfactor EJBCA certificate authority with the ACME automated certificate management environment. Predefining your routing policies enables automated completion of the fields in your Certificate Signing Request (CSR) and provides a secure environment for an automated flow of certificates.
- Discover a Root Certificate from a Browser
- Standard Discovery collects information about the certificates stored in your servers. You can also discover root certificates stored outside your servers and connect them to your certificate chain.
- Kubernetes Visibility Agent (KVA)
-
KVA performs continuous discovery to detect changes on resources in a Kubernetes cluster and updates the CMDB with the latest data.
Starting with KVA version 3.11.0, and Informer version 2.5.0, absent namespace CIs aren’t deleted automatically. Create a scheduled job to remove them.
Starting with KVA version 3.11.0, and Informer version 2.5.0, map application services based on traffic connections between the workloads in Kubernetes, by using istio and linked service meshes or the DaemonSet service.
- Prevent credential exposure by updating HTTP Classify behavior
- The HTTP Classify probe no longer attempts credentials over the HTTP protocol by default. This change enhances security by helping prevent potential exposure of credentials over unencrypted connections. To override this behavior, a new MID Server property, mid.http_classy.allow_credentials_over_http, has been introduced. Enabling this setting might expose credentials to man-in-the-middle (MitM) attacks. Therefore, it’s strongly recommended to keep this property set to false and use HTTPS whenever possible.
- Automated Certificate Renewal
- Starting with version 3.8.2, Certificate Inventory and Management introduces automated renewal capabilities. Administrators can set certificates to renew automatically, either when creating the certificate or by applying the setting to an existing one. The system also enables you to define the renewal window by specifying the number of days before expiration that the process should begin.
Deprecations
Starting with the Zurich release, Cloud Discovery Workspace is being prepared for future deprecation. It’s hidden and no longer activated on new instances but continues to be supported. Discovery Admin Workspace provides the latest experience for this functionality. For details, see the Application/Plugin Deprecation Process [KB0867184] article in the Now Support knowledge base.
Activation information
ITOM Visibility is available with activation of the Discovery (com.snc.discovery) plugin and the Service Mapping (com.snc.service-mapping) plugin, which require an ITOM Visibility subscription. For details, see Request Discovery and Request Service Mapping. For full ITOM Visibility functionality, install the latest ITOM Visibility applications from the ServiceNow Store. For cumulative release note information for all released apps, see the ServiceNow Store version-history release notes.
Accessibility information
- Dark theme
- The new Coral theme includes a dark theme option for web and mobile experiences. This option is commonly used to alleviate eye strain and improve readability.