Service Graph Connector for AWS release notes
Summarize
Summarized using AI
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.
Summary of Service Graph Connector for AWS Release Notes
The Service Graph Connector for AWS enables ServiceNow customers to integrate AWS cloud resources into their CMDB, providing comprehensive visibility, lifecycle management, and enhanced data accuracy for AWS environments. The release notes document improvements, new features, and fixes across multiple versions, helping customers understand functionality enhancements and performance optimizations.
Show less
Key Features
- Resource Discovery and Mapping: Support for new AWS resource types such as AutoScaling groups, Amazon Redshift databases, and Elastic Kubernetes Service (EKS). Enhanced discovery for various AWS components like Cloud Subnet, Security Groups, Docker Containers, and more.
- Performance Enhancements: Multi-threading for faster CI deletion, parallel loading of data sources, optimized payload handling, and improved data import performance for large-scale AWS environments.
- Data Accuracy and Consistency: IP-based server record discovery, improved handling of duplicate records, resolved inconsistencies in status fields, and updates to naming conventions to avoid merges and errors.
- Licensing and Compliance: Implementation of licensing model changes and support for IMDSv2 to meet security compliance requirements.
- Security and Permissions: Scoped IAM permissions following least privilege principles, removal of cross-account access where unnecessary, and improved credential management.
- Tag Ingestion and Relationship Mapping: Support for AWS tag ingestion across generic resources, addition of relationships such as availability zones to virtual machines, and mapping of Fully Qualified Domain Names (FQDN).
Fixes and Improvements
- Resolved connectivity validation failures and duplicate data issues in staging and CMDB tables.
- Fixed errors in PowerShell script execution and AWS Config aggregator API calls.
- Corrected issues with resource retirement status, diagnostic tool errors, and software inventory data inconsistencies.
- Improved handling of large datasets and payload size limits in data sources and Flow Designer actions.
- Enhanced support for multi-instance and multi-organization setups, including AWS key rotation and GovCloud region support.
Practical Benefits for ServiceNow Customers
By leveraging the latest versions of the Service Graph Connector for AWS, customers can expect:
- More accurate and comprehensive AWS resource data within their CMDB, supporting better IT operations and asset management.
- Improved performance and scalability for large AWS environments through parallel processing and optimized data handling.
- Increased security compliance and reduced risks with updated permissions and credential handling.
- Enhanced troubleshooting capabilities and reliability with resolved known issues and improved diagnostic messages.
- Greater flexibility to manage multi-account and multi-organization AWS environments with streamlined discovery and license management.
Version history for the Service Graph Connector for AWS application on the ServiceNow Store.
Important:
For details on system requirements and family compatibility, view the application
listing on the ServiceNow Store
website.
Version history
- Version 2.14.0 - June 2026
-
- New:
- Implemented new licensing model changes for Docker container.
- Implemented AutoScaling groups resource type.
- Fixed:
- Resolved a test connection failure in SG-AWS version 2.13.0 that prevented successful connectivity validation.
- Resolved the issue where duplicate data was added to the staging table when the enableDbConfigLoad property is set to true.
- Resolved the issue where duplicate records were created due to inconsistent Object ID values for generic resources.
- New:
- Version 2.13.0 - March 2026
-
- Changed:
- The SG-AWS-RunPowerShellScript data source now uses Get-CimInstance commands instead of WMIC for Windows Server 2025 discovery.
- Resource type-based parallelism is used instead of account-based for parallel loading, improving performance for large-scale environments.
- Fixed:
- The CreateServiceNowUser.yml file loads in AWS cloud discovery without script errors.
- The SG-AWS-Organization pattern correctly retrieves Organization Account details.
- The AWS-Tags data source handles large datasets.
- EC2 to Storage Volume relationships are populated correctly in the CMDB.
- The performance of generic resource import is improved for large data loads.
- SSM-GetS3Object data collection enables consistent Running Processes refresh on servers.
- The SG-AWS-EKS-FULL scheduled import job loads all EKS data without transformation errors.
- Server name is updated when EC2 privateDnsName value changes.
- The SG-AWS-EKS-FULL job loads EKS data without the "String object would exceed maximum permitted size" error.
- Service Account is retired correctly during record removal.
- SgGetInventoryDataSourceUtils definition is now available.
- The Image-Id datasource no longer has cross-account access by assuming roles.
- Service Account credential mapping is removed.
- The performance of the SendCommand datasource is improved.
- Changed:
- Version 2.12.1 - October 2025
-
Fixed
- Duplicate SQL instances: Resolved an issue where duplicate MSFT SQL instances and application CI relationships were created via the SG-AWS integration.
- Record removal logs: Fixed inconsistent return values that caused undefined counts in the logs generated by the record removal utility.
- Generic tag SNK: Corrected the Source Native Key (SNK) for generic tag resources.
Changed: Restricted menu items: Added admin-restricted AWS menu items to the Service Graph Connectors application menu.
- Version 2.11.0 - August 2025
-
- New: AWS tag ingestion: Added support for the ingestion of tags for AWS Generic Resources using the SGC-AWS data source.
- Changed:
- Updated the sys_id of the YAML on the AWS Create connection page in SGC Central.
- Enhanced CMDB discovery for numerous AWS classes:
- Service Account, Cloud Subnet, Cloud Resource, Security Group, Hardware Template, Docker Container, and Docker Images
- Network, NIC, Images, Storage Mapping, and VM Instance
- DynamoDB, Endpoint Vnic, IP Address, and Kubernetes Clusters
- Cloud Gateway, Cloud Hardware Type, Cloud LB, and Cloud Object Storage
- Availability Zone and Cloud DB
- Version 2.10.1 - May 2025
-
- New:
- Introduced support for Amazon Redshift database.
- Implemented IMDSv2 support for security compliance.
- Changed:
- Improved Server Record Accuracy with IP-based discovery when deep discovery is enabled.
- Modified the table mappings for the Cloud OS image for improved flexibility in managing cloud OS images.
- Fixed: Updated the server record to use the server hostname for the name attribute, preventing merge issues caused by IP address reuse.
- New:
- Version 2.9.0 - February 2025
-
- New:
- Introduced multi-threading for faster deletion of most Configuration Items (CIs).
- Optimized oversized payloads to improve performance and reduce loading time.
- Enhanced SendCommand functionality to automatically populate critical database attributes into corresponding CIs in the CMDB.
- Aligned with Cloud Discovery for comprehensive hardware type information in the CMDB.
- Changed: Upgraded the netstat command functionality for compatibility with various Linux distributions.
- New:
- Version 2.8.0 - October 2024
- New: Addressed the gap for missing life cycle management of configuration items (CIs).
- Version 2.7.1 - September 2024
- Fixed: SGC Central - AWS EKS EC2 resources page was updated.
- Version 2.7.0 - August 2024
-
- New:
- Enabled parallel loading feature for SG-AWS-Tags and SG-AWS-Image-Private data sources.
- Added relationship between availability zones and virtual machines.
- Implemented support for VPC and subnet sharing across service accounts.
- Fixed:
- Fixed an issue in multi-instance setups where EC2, VPC, or subnet configuration items (CIs) were marked as retired after upgrading the connector to version 2.6.0 or later versions.
- Added the mapping of the Fully Qualified Domain Name (FQDN) value to the fqdn field.
- Added an appropriate error message in the diagnostic results when a test fails due to an incorrect AWS region configuration property.
- Fixed inconsistency between the "State" and "Install Status" fields.
- Fixed application of the SG-AWS-EC2 post-script changes for the existing multi-instance records.
- New:
- Version 2.6.1 - May 2024
-
- New:
- SG-AWS-Software-Inventory data sourcememory improvements
- Performance improvement for fetching tags
- The connector now avoids calling the SG-AWS-SendCommanddata source when the details for the S3 buckets are not populated
- Fixed:
- FixedHardware consolidation data source functionality for multi-instance connections
- Fixed the diagnostic tool for testing the S3 bucket setup
- Fixed empty software names causing partial payload in the SG-AWS-Software-Inventory data source
- New:
- Version 2.4.0 - February 2024
-
- New:
- Added support for additional attributes in Cloud organization Unit, Cloud organization, Cloud Service Account, and Account Tags for ITOM Cloud Account Management.
- Populated reference to "Configuration Item" in the Cloud Mgmt Network Interface [cmdb_ci_nic]table for all VMs.
- Fixed:
- Fixed the 'beyond the size limit' issue raised by the Flow Designer action for Software Inventory and EKS.
- Fixed data inconsistencies for EKS.
- New:
- Version 2.3.0 - November 2023
-
- New:
- Added ability to populate the generic cloud resources without CMDB classes to the Cloud Resource [cmdb_ci_cmp_resource] table.
- Added database deep discovery for virtual machines (VMs) to fetch metadata such as MySQL version numbers for databases in the EC2 instances.
- Implemented bringing your own license (BYOL) that updates the license type in the Key Value [cmdb_key_value] table to analyze licenses.
- Optimized deletion strategy.
- Added support for handling retired CIs in EKS components (pods, services, volumes, and so on.)
- Scoped IAM permissions and fixed S3 permissions following least privilege principles.
- Fixed:
- Fixed the infinite loop issue in the SG-AWS-Software-Inventory data source .
- Fixed the in-use status from SG-AWS-Network-Interface data source not mapping to the In Use column in the Cloud Mgmt Network Interface [cmdb_ci_nic] table.
- New:
- Version 2.2.1 - September 2023
-
- Fixed:
- Populate Name for Kubernetes Namespace records.
- Fixed the relationship between Cloud Management N/W Interface and virtual machines.
- If database name isn't set in AWS then use objectid to map name in the Cloud Database.
- Fixed:
- Version 2.2.0 - August 2023
-
- New:
- Added Elastic Kubernetes Service (EKS)discovery
- Added ability to populate EC2 hostname via sendcommand
- The STS AssumeRole API is now called only for accounts that are associated with the AWS Config aggregator and not for all member accounts
- New:
- Version 2.1.0 - July 2023
- Fixed: Issues related to support AWS GovCloud regions.
- Version 2.0.0 - May 2023
-
- New:
- Added support for multi-organization (multi-instance)
- Single or standalone account support
- AWS key rotation
- Server classification
- Changed: Performance improvement on the deleted resources and the Tag API
- New:
- Version 1.6.1 - December 2022
-
- Fixed:
- Handle the throttling error on calling Config and List API.
- Fix the ListAccounts error when ServiceNow user is created in a designated account.
- Handle the duplicate records created with cloud discovery.
- DescribeImage API wasn't handling the large payload.
- Fixed Software inventory empty import records when the central aggregator isn't setup.
- Fixed:
- Version 1.5.0 - August 2022
-
- Fixed:
- Remove designated account dependency on the management account.
- Added missing CIs attributes.
- Optimized performance.
- Fixed:
- Version 1.4.2 - June 2022
-
- New: Get the list of accounts from designated accounts by setting up IAM permissions that are necessary to go to the management account.
- Fixed:
- Fixed missing hardware and server attributes
- Optimized sendCommand processing
- Version 1.4.1 - May 2022
-
- New:
- Add Serial Number in to cmdb_ci_server
- Add Process Info and relate it to cmdb_ci_server
- Add TCP connections to cmdb_ci_server
- Add Cloud Formation Template (CFT) to include SSM Document for SG-AWS-RunShellScript, SG-AWS-RunPowerShellScript
- Update serviceNow user CFT script to include privileges for SSM SendCommand, S3 access.
- New: