Release 1.0.1 - ETA Q1-2025
Features
filterOnTags
squid is now able to filter results based on tags (cmdb_key_value
).
showTags
squid is now able to render tags (cmdb_key_value
) as additional properties of entities.
filterOnTeams
Log as JSON - Analyse squid usage and performance with Splunk / ELK
Some customers are using Splunk, ELK (ElasticSearch, Kibana, Logstash), etc. as central repository for logs and statistics. These tools are generally better suited for detailed analysis than using the standard ServiceNow syslog, which is known to have performance challenges.
This is a known and acknowledged problem. See
Troubleshooting excessive logging (syslog): The syslog table in an instance can grow very large due to excessive and if this happens, you may notice issues such as: ... Slow performance or even timeouts when trying to query the System Logs
All the logs in ServiceNow): It is not recommended to retain logging for too long as it can grow big quickly. When it is too big, it becomes difficult for analyzing and slow to search.
If this usecase is relevant for you, you can now switch to a JSON log format, making Splunk/ELK ingress easier.
We've built a proprietary LogForwarder that pushes logs from ServiceNow to Splunk/ELK with a maximum latency of 10 seconds. Depending on customer interest, we might offer this as a separate (free) product. As always, give us a heads-up over at Feature Requests, and we'll see what we can do.
preservePrefixForConfig
ignorePrefixes
still working
Configurations
- tbd
Relations
- tbd