---
sourceDocument: Store Version History Release Notes
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/store-release-notes

 Release :

    - store

ft:locale :

    - en-US

ft:publication_title :

    - Store Version History Release Notes

ft:clusterId :

    - rnst

bundleId :

    - rnst


---

# Log Export Service release notes

# Log Export Service release notes {#ariaid-title1}

Release version: Store  
Updated September 10, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 5 minutes to read  
Version history for the Log Export Service on the ServiceNow Store.
Important:  
For details on system requirements and family compatibility, view the application listing on the [ServiceNow Store](https://store.servicenow.com/sn_appstore_store.do#!/store/home) website.

## Version history

Version 3.6.0 - September 2026
:
    * New:
      * Historical log backfill: You can now replay historical log data to your Kafka destination, in addition to live logs. A new setup screen lets you select the log table, date range, target topic, batch size, and throttling. Backfill settings are locked once a run begins to prevent accidental changes mid-run, and a live run status is displayed while the backfill is in progress.
      * LES now supports the following additional log source tables:
      *
        * sys_flow_log: Captures execution details and status of flow engine processes, for both live and historical export
        * sys_user_login_history: Captures user login attempts and authentication events
        * sys_audit_delete and sys_audit_relation: Delete and relationship audit records --- so your compliance trail now includes record deletions and reference-field changes, not just regular field changes.
        {#store-platcap-rn-log-export-service__ul_hv5_hsq_lkc}
      * Auditor role: A new sn_logstoanalytics.auditor role lets auditors view Log Export Service activity without broader administrator access.
      {#store-platcap-rn-log-export-service__ul_w55_hsq_lkc}
    * Changed: Guided setup now includes a Test MID Connection step, so you can verify connectivity to the Kafka cluster before exporting logs catching configuration problems earlier.
    * Fixed:
      * Log sources created with a scope filter exported logs using the default Syslog configuration instead of the specified configuration.
      * The Topic field did not appear when creating a Syslog or sys_audit log source until the record was saved and reopened.
      * Broken links in the Kafka and MID Server consumer guided setup screens.
      * A broken link on the Hermes Messaging Service setup step, which also displayed an inaccurate status.
      * The backfill run table earlier displayed an inaccurate report visibility issue for some users due to a missing ACL.
      {#store-platcap-rn-log-export-service__ul_fgb_hsq_lkc}

Version 3.5.0 - June 2026
:
    * What's New:
      * Auto-Configuration of Default Log Sources on Plugin Activation Log Export Service now automatically configures syslog and sys_audit as default log sources when the LES plugin is activated. Previously, administrators had to manually configure these sources after activation. This reduces post-install setup time and ensures a consistent baseline configuration out of the box.
      * LES Metrics Visibility in Vault Console New APIs expose LES operational metrics directly within the Vault Console. Security administrators can now view export health, throughput, and connectivity status alongside other platform security posture data without context-switching to a separate LES admin view. This closes a key dependency (DEP0046129) required for the Vault Console integration.
      * Extended Audit Log Source Support: LES now supports two additional audit log source types: sys_audit_delete, which captures records of deleted items, and sys_audit_relation, which captures relationship-level audit changes. This enhancement expands audit coverage for organizations with compliance requirements related to record deletions and relational data changes.
      * Updated Guided Setup for MID Server Connectivity (Hermes) The LES guided setup flow has been refreshed to include an updated connectivity check for Hermes-based MID server configurations, improving clarity and reducing friction during initial setup and re-configuration.
      {#store-platcap-rn-log-export-service__ul_xbx_w1h_njc}
    {#store-platcap-rn-log-export-service__ul_t3y_51h_njc}

Version 3.4.0 - March 2026
:
    * New:
      * Introduced network connectivity validation UI action for MID Server, enabling one-click Kafka cluster connectivity testing directly from the ServiceNow interface without requiring manual network commands in the MID Server environment.
      * Published MID Server performance guidelines for Log Export Service, including validated scalability thresholds and capacity planning recommendations.
      {#store-platcap-rn-log-export-service__ul_rvz_412_m3c}
    * Changed: Enhanced granular role-based access control across Log Export Service, enabling delegation of LES administration through feature-specific roles (sn_logstoanalytics.admin) without requiring full platform admin privileges.
    * Fixed: Enhanced Log Export Service to maintain reliable operations during Hermes service slowness, without impacting instance stability.

Version 3.3.0 - August 2025
:
    * New:
      * Enhanced Logs Exported reports with intuitive drill-down from month to week to day, source-level breakdown, and support for 395 days of data.
      * Enable multiple LES consumers to run in parallel across different topics without conflict or failure.
      {#store-platcap-rn-log-export-service__ul_egj_h32_yfc}
    * Fixed:
      * Removed unnecessary informational logs being continuously generated by the MID Server LES consumer.
      * Fixed a bug where selecting an existing topic during consumer creation caused an error, and selecting a correct new topic did not create the expected record.
      * The system property sn_logstoanalytics.debug is now disabled by default to prevent unnecessary debug logs in node logs.
      * Fixed an issue where updating existing syslog log source records to sys_audit did not remove associated log source topic and logger configuration records.
      {#store-platcap-rn-log-export-service__ul_ams_h32_yfc}

Version 3.2.0 - May 2025
:
    * New: Added the ability to set different filters for the syslog source and assign the log source configuration to different topics.
    * Fixed: Resolved an issue where consumer context records were not deleted properly when cloning an instance with a MID server configuration.

    {#store-platcap-rn-log-export-service__latest-store-platcap-rn-log-export-service}
{#store-platcap-rn-log-export-service__latest-store-platcap-rn-log-export-service}

Version 3.1.0 - February 2025
:
    * New: The capability to create and name the topics, as well as assign various sys_audit tables to each topic.
    * Fixed: System log filters not applied accurately while pushing system log events to the Hermes topic.
    {#store-platcap-rn-log-export-service__ul_wzw_y2n_zdc}

Version 2.2.3 - November 2024
:   New: Option to store log events from each log source into a separate Kakfa topic in Hermes Messaging Service.

Version 3.0.6 - August 2024
:
    * New:
      * New data consumption report that shows how much data has been copied to Hermes Messaging Service per each log source
      * Option to store log events from each log source into a separate Kakfa topic in Hermes Messaging Service.
      * Added description to sys_logger_configuration record

Version 2.2.1 - May 2024
:
    * This is a minor release with a small number of user experience improvements including:
      * The organization of Log Export Service pages in the universal navigation dropdown has been improved
      * The status details information in the Consumer page has been moved to its own page called Consumer Status
      {#store-platcap-rn-log-export-service__ul_fhk_ptw_1bc}

Version 2.1.0 - November 2023
:
    * New:
      * Added two new Guided Setup tools to the App to help cutomers complete the initial setup with step by step instructions and guidance.
      * One Guided Setup tool is for the MID Server integration option and the other for the Kafka Consumer option.

Version 2.0.1 - August 2023
:   New:

    * New functionality with Log Export Service v2
    * Added support for leveraging dedicated MID Server to easily connect to ServiceNow cloud and then push log events to your own log analytics tool via standard REST protocol.
    {#store-platcap-rn-log-export-service__ul_emd_y35_gyb}

Version 1.0.4 - May 2023

:   Improvements for ServiceNow cloud internal reporting purposes.

Version 1.0.3 - January 2023
:   Fixed: Security fix

Version 1.0.1 - November 2022
:
    * First version of this service; we plan to add more connectivity options and log sources in future versions.
    * Supports the following connectivity options:
      * Kafka native
      * Splunk Connect for Kafka
      {#store-platcap-rn-log-export-service__ul_gmv_rqd_3vb}
    * Supports the following system and application log sources:
      * System Log Tables
        * syslog table
        * syslog_transaction table
        {#store-platcap-rn-log-export-service__ul_kmy_xqd_3vb}
      * Audit Table
        * sys_audit table
        {#store-platcap-rn-log-export-service__ul_mq2_drd_3vb}
      * Node Log Files
        * localhost files (for all nodes)
        {#store-platcap-rn-log-export-service__ul_ly5_qrd_3vb}
      {#store-platcap-rn-log-export-service__ul_fz2_5qd_3vb}
    * Supports filters to reduce log source export size.
    * Provides report and analytics for log sources data size.


