Skip to main content

ServiceNow

Requirements

Information that will help you design and plan the implementation of the 1E ITSM Connect app in your organization. This includes all the prerequisites and dependencies that are necessary to install the 1E ITSM Connect app.

This page is part of the design phase of implementation.

1E requirements

Category

Requirement

More details

1E system
  • You may have more than one 1E infrastructure connected to the same ServiceNow instance if your ServiceNow instance is domain separated.

  • For Basic Authentication:

    A complete infrastructure of Tachyon 8.1 (on-premises) is required, either in a local network or hosted over the internet. This includes the 1E Client, deployed to all devices that you need to manage.

    The Basic Authentication feature must be installed on the 1E Server (Master Stack), and enabled in the following Tachyon web applications:

    • Consumer

    • Experience

  • For Modern Authentication:

    A complete infrastructure of 1E 8.2 or later versions is required, either in a local network or hosted over the internet. This includes the 1E Client, deployed to all devices that you need to manage.

    The Modern Authentication is to be setup either using Azure AD (introduced in 1E 8.2) or Okta (introduced in 1E 8.4) for external IdP.

  • To utilize the Experience feature in 1E Core you will need:

    • 1E Experience, which can be installed using 1E Setup

    • The proxy 1E user must have the 1E ITSM Connect Actioner role assigned with Read permissions on the Experience application.

  • To obtain 1E ITSM Connect product packs, contact your designated 1E Solution Expert or you can reach out to 1E Support team at

Planning for 1E Client 8.1

Planning for 1E Client 8.1

1E Core 2.1 - Preparation: Enable Basic Authentication

1E license
  • Your 1E license should contain the ServiceNow-Integration entitlement.

  • If you are planning on using the Experience feature, your 1E license should also contain an Experience entitlement.

  • The Tachyon license should contain the following consumer in the ServiceNow Integration feature tag:

    <Feature name="ServiceNow-Integration">

    <Consumer name="1EServiceNowCore" enable="on">

    </Consumer>

    </Feature>

1E Core 2.1 - Preparation: Check your Tachyon license

1E ITSM Connect post-installation tasks

1E consumer

Note

The workflow value is not set automatically. Refer to the links to the right to set the value.

  • A 1E consumer with the name 1EServiceNowCore must be registered in the 1E administration Consumers page.

  • The Workflow column of the dbo.Consumer table in the 1E Master database for this consumer must have the following value:

    [{"ReferenceType":0,"InstructionWorkflow":[{"InstructionType":1,"Workflow":{"StateMachine":"State"}}]}]

1E Core 2.1 - Preparation: Add the ServiceNow consumer to Tachyon

1E proxy user
  • A 1E user with Actioners role on any required or all instruction sets and management groups, as proxy for the 1E ITSM Connect app user role in ServiceNow. This user can retrieve and execute instructions from ServiceNow. Add another role Experience Viewer to this user in 1E. This would allow user to fetch and view device experience details from 1E into ServiceNow.

  • User must be an AD domain account. This account does not belong to a specific person and can be regarded as a service account, it does not require an email address.

  • 1E roles can be predefined system (Global) roles or custom roles. Global roles have permissions on all instructions sets and all devices. Custom roles can be optionally configured for all instruction sets or limited instruction sets, and all devices or management groups.

1E Users and Roles

Add the 1E ITSM Connect app proxy user to 1E

1E ITSM Connect post-installation tasks

1E administrator

A 1E user with the Global Administrator role, or one or more users with the following roles:

Required roles:

  • Permissions Administrators role in order to create the above users and assign them to roles. Also create custom roles, and assign them to some instruction sets and management groups.

  • Consumer Administrators role in order to register the ServiceNow consumer.

Optional roles:

  • Instruction Set Administrators role in order to upload instruction definitions and create instruction sets

  • Management Group Administrators role in order to create Management groups if desired

The users must be AD domain accounts. The above system roles can be substituted for equivalent custom roles.

1E Users and Roles

Add the 1E ITSM Connect app proxy user to 1E

ServiceNow requirements

Category

Requirement

More details

ServiceNow
  • A working ServiceNow instance must be set up. This can be a demo instance or a production/vendor instance. It can also be either a single domain or a multi domain instance.

  • The current version of Application along with Domain separation feature on the 1E ITSM Connect is supported currently on San Diego, Tokyo, and Utah releases.

  • If you are using this App in multi tenant mode, please enable the Domain Support plugin on your ServiceNow instance.

Installing

MID Server (Basic Authentication)
  • You require a MID Server when your 1E Platform instance is installed on-premises (that is, does not have a direct connection to your ServiceNow instance in the Cloud).

  • The MID Server must be installed on the same network domain as the 1E Platform server. It must be able to connect to the 1E Platform server (specifically the Master server hosting the Coordinator service).

Note

Please refer to your ServiceNow documentation for details on installing a MID server.

A MID Server is a software application which gets installed on any local machine with internet connectivity, can access 1E Server on the local network and is configured to point to the desired ServiceNow instance on the Internet.

MID Servers are specific to the release version of ServiceNow and must be downloaded from the ServiceNow instance itself. For more information about MID Server set up, please refer to the ServiceNow MID Server installation documentation.

Note

Multiple MID Servers can be installed on a single machine and be able to point to the same or different ServiceNow instances, however you will only be able to set the 1E ServiceNow app to use one of them.

1E Core
  • The latest version of the 1E Core App needs to be installed and configured in your ServiceNow Instance. 1E Core supports single tenant instances and multi-domain instances.

1E Core 3.0 - Introducing 1E Core

ServiceNow users
  • At least one ServiceNow user for each of the roles in the following table:

    Role name

    Additional ServiceNow roles required

    Description

    x_1e_connect.Tachyon_Admin

    <None>

    This role allows its users to configure the 1E ITSM Connect app, in addition to having the same rights as the x_1e_connect.Tachyon_User role.

    ServiceNow admin users must change their application scope to 1E ITSM Connect in order to configure the app, and retrieve instructions.

    x_1e_connect.Tachyon_User

    ITIL (for access to ITSM incidents)

    This role grants its users access to incidents and the ability to run 1E instructions.

    This role maps on to the proxy 1E actioner.

    x_1e_connect.Tachyon_Approver

    <None>

    This role allows its users to approve or reject 1E instructions that require approval.

1E Users and Roles

1E ITSM Connect post-installation tasks

User Management

ServiceNow admin
  • This role allows its users to install and configure the 1E ITSM Connect app.

Installing

ServiceNow Certificates (Modern Authentication)
  • The input certificate for Modern Authentication is a standard .pfx file containing a private key, hence it requires conversion from .pfx to .PEM and .JKS.

  • Client certificates (in .PEM and .JKS format) and App ID (Kid) are required, in case the application's authentication mechanism is set to Modern Auth. Also create a JWT key and associate it with the JKS certificate. Similarly, create JWT provider and associate it with the JWT key.

Preparation for Modern Authentication

Compatibility matrix for 1E and ServiceNow integration applications

Integration

Version

1E on-premises

1E SaaS

ServiceNow

Purpose

1E Core

3.0.6

8.0, 8.1

8.4

Utah, Tokyo, San Diego

Platform enabler, prerequisite for all other integrations. Provides a copy of Tachyon instructions.

Support for domain separation (multi-tenant).

Support for 1E CMDB Connect apps (new in 2.1) including Service Graph Connector for 1E Tachyon.

Support for OAuth2 required by 1E SaaS (new in 3.0.0).

Support for multi-authentication and experience scores compatibility (new in 3.0.6)

3.0.21E Core 3.0.6

8.0, 8.1

8.2, 8.4

Utah, Tokyo, San Diego

3.0.01E Core 3.0.6

8.0, 8.1

8.2, 8.4

Tokyo, San Diego

2.1.0

5.1, 5.2, 8.0

Tokyo, San Diego

1E ITSM Connect

4.4.0

9.0

8.2, 8.4

Utah, Tokyo, San Diego

Integrates ServiceNow ITSM with Tachyon, to provide real-time inventory and pre-approved automated fixes to first line teams from within the ServiceNow Incident page. 

Tachyon Device View and Experience integration.

Support for domain separation (multi-tenant).

Support for 1E CMDB Connect.

ROI Dashboard; Device views (Hardware, network, s/w installations etc.); Flexible Quick fixes menu; Guided Setup; Prioritized Recommended actions; Device History; Configurable retrieval of device stats (Online status, Last reboot, Last seen etc.); Scheduled retrieval of 1E Tachyon instructions; Improved error handling logic; (new in 4.0.0).

Agent Workspace features not available in San Diego release (new in 4.1.0).

CI selector based on Caller name. Instruction segmentation based on user role. Support for OAuth2 required by 1E SaaS. Requires 1E Core 3.0 (new in 4.2.0).

Instruction segmentation based on user roles (new in 4.3.0).

Support for Experience trend chart, Experience score and Interaction records in Service Operations Workspace (new in 4.4.0).

4.3.0

8.0, 8.1

8.2, 8.4

Utah, Tokyo, San Diego

4.2.0

8.0, 8.1

8.2, 8.4

Utah, Tokyo, San Diego

4.1.01E ITSM Connect 4.1

8.0, 8.1

Tokyo, San Diego

1E Service Catalog Connect

3.1.0

8.0, 8.1

8.2, 8.4

Utah, Tokyo, San Diego,

Integrates ServiceNow Service Catalog with Tachyon. Provides a UI like 1E Shopping – allows WSA to be invoked by ServiceNow and report WSA requests. Guided Tour, and running any Tachyon instruction.

Installation of software applications via 1E Shopping (new in 3.0.0).

Support for OAuth2 required by 1E SaaS. Requires 1E Core 3.0 (new in 3.1.0)

3.0.0

8.0, 8.1

Tokyo, San Diego

1E Virtual Assistant

3.0.1

8.1

8.2, 8.4

Utah, Tokyo, San Diego,

Provides a Virtual Agent for ServiceNow, supporting various topics, some of which use Tachyon instructions.

Support for OAuth2 required by 1E SaaS. Requires 1E Core 3.0 (new in 3.0.1).

2.0.1

5.1, 5.2, 8.0

Tokyo, San Diego

Service Graph Connector for 1E

3.0.2

8.0, 8.1

8.2, 8.4

Utah, Tokyo, San Diego

1E Tachyon CMDB Connect, and Service Graph Connector for 1E Tachyon, provide identical capabilities, your choice depends on your licensing. Either one can be optionally used for the following, among other features:

  • populate device data in ServiceNow's CMDB through 1E Core and Tachyon

  • provide the device FQDN required by other 1E ServiceNow apps, so they can use Tachyon.

The latter requirement may also be met by any third party app capable of populating the device FQDN in the ServiceNow CMDB cmdb_ci_computer table. Change target from cmdb_ci_pc_hardware to cmdb_ci_computer.

Populates installed software, disk usage and network attributes. Also provides custom table for uninstalled software (new in SGC 2.0.0).

Supports OAuth2 required by 1E SaaS (new in 3.0.2)

2.0.0

8.0, 8.1

Tokyo, San Diego

1E CMDB Connect

1.1.4

8.0, 8.1

8.2, 8.4

Utah, Tokyo, San Diego

See above, details as Service Graph Connector for 1E.

1.1.0

8.0, 8.1

8.2, 8.4

Tokyo, San Diego

1.0.0

8.0, 8.1

Tokyo, San Diego