---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Troubleshooting the LogRhythm integration

# Troubleshooting the LogRhythm integration {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Troubleshoot connectivity and alarm ingestion issues.  
Refer to the following topics for troubleshooting:

* Verify connectivity for LogRhythm
* Script execution and system log for LogRhythm
{#troubleshooting-logrhythm-integration__ul_uyk_2l3_jfb}
* **[Verify connectivity for LogRhythm](https://servicenow-prod.fluidtopics.net/6fE94IqMDNqR4HuhjdkOAQ)**   
  Verify your connection to the LogRhythm Client Console by sending curl requests to test the LogRhythm REST API. The verification process is optional.
* **[Script execution and system log for LogRhythm](https://servicenow-prod.fluidtopics.net/Xf3eh0RWWaWz5bVxDtReLw)**   
  If you are troubleshooting an alarm ingestion issue, you can override the default five-minute polling interval to view results immediately. In this scenario, call the script execution manually to execute polling. This execution is optional.

**Previous topic:** [View LogRhythm drill down events](https://servicenow-prod.fluidtopics.net/v1Xg3oZVz7mJ7oW_TEeFWA "View the related raw or base events for a LogRhythm alarm in the security incident.")  
**Next topic:** [Verify connectivity for LogRhythm](https://servicenow-prod.fluidtopics.net/6fE94IqMDNqR4HuhjdkOAQ "Verify your connection to the LogRhythm Client Console by sending curl requests to test the LogRhythm REST API. The verification process is optional.")

