---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Set up the REST API

# Set up the REST API {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

You use the LogRhythm REST API key to gather additional event details
for individual alarm fields. The API key provides details that are unavailable using the LogRhythm REST API.

## Before you begin

Role required: LogRhythm Client Console/Platform Manager
Administrator

## About this task

This task is performed on the LogRhythm Client Console. Set up the LogRhythm REST API prior to installing the plugin from the ServiceNow Store.

## Procedure

1. Navigate to the LogRhythm Client Console and select the File menu.
2. Click New to create a new user.  
3. In the Is Person an Individual? dialog that is displayed, click Yes.  
4. In the Person Properties dialog that is displayed, fill in the Name fields.  
   Use a different name for the LogRhythm REST API than the one
   you used to create the REST API, for example, <kbd class="ph userinput">REST API_2</kbd>.
5. Click OK.
6. Right-click the new listing in the Name column (API_2_REST) and, in the choice list, select Create Case API Account.  
   Note:  
   The Case API is not used, but the credentials for the Case API Account and the LogRhythm REST API are the same.
7. In the Service Account Properties dialog, click Generate.  
8. Click Copy.  
   You have now set up the LogRhythm REST API. You paste the string you copied in the previous step into your ServiceNow AI Platform instance in the LogRhythm REST API Token field during the configuration steps listed in [Install the plugin and configure LogRhythm](https://servicenow-prod.fluidtopics.net/tleO5XpJYM0z8IO~ygMKsA "Before you run the integration on your instance, complete the installation and configuration steps so the application properly integrates with Security Operations on the ServiceNow AI Platform.").

## What to do next

You are now ready to [Install the plugin and configure LogRhythm](https://servicenow-prod.fluidtopics.net/tleO5XpJYM0z8IO~ygMKsA "Before you run the integration on your instance, complete the installation and configuration steps so the application properly integrates with Security Operations on the ServiceNow AI Platform.").
**Previous topic:** [LogRhythm Overview](https://servicenow-prod.fluidtopics.net/j4A1rylkWRJE4Tt2BvR_qw "The mapping flexibility of this integration provides an analyst with visibility to events and related alarm data that can be integrated into ServiceNow AI Platform security incidents for further investigation and remediation.")  
**Next topic:** [Install the plugin and configure LogRhythm](https://servicenow-prod.fluidtopics.net/tleO5XpJYM0z8IO~ygMKsA "Before you run the integration on your instance, complete the installation and configuration steps so the application properly integrates with Security Operations on the ServiceNow AI Platform.")

