Skip to main content

Release 1.0.1 - ETA Q1-2025

Features

filterOnTags

squid is now able to filter results based on tags (cmdb_key_value).

showTags

squid is now able to render tags (cmdb_key_value) as additional properties of entities.

filterOnTeams

Log as JSON - Analyse squid usage and performance with Splunk / ELK

Some customers are using Splunk, ELK (ElasticSearch, Kibana, Logstash), etc. as central repository for logs and statistics. These tools are generally better suited for detailed analysis than using the standard ServiceNow syslog, which is known to have performance challenges.

syslog is NOT suitable for statistical analysis

This is a known and acknowledged problem. See

Troubleshooting excessive logging (syslog): The syslog table in an instance can grow very large due to excessive and if this happens, you may notice issues such as: ... Slow performance or even timeouts when trying to query the System Logs

All the logs in ServiceNow): It is not recommended to retain logging for too long as it can grow big quickly. When it is too big, it becomes difficult for analyzing and slow to search.

If this usecase is relevant for you, you can now switch to a JSON log format, making Splunk/ELK ingress easier.

We've built a proprietary LogForwarder that pushes logs from ServiceNow to Splunk/ELK with a maximum latency of 10 seconds. Depending on customer interest, we might offer this as a separate (free) product. As always, give us a heads-up over at Feature Requests, and we'll see what we can do.

preservePrefixForConfig

x

ignorePrefixes

still working

Configurations

  • tbd

Relations

  • tbd
We track. Ok?