Technology Workflow - San Diego Release - ITOM Agent (ACC) Enhancements
thank you for tuning into this video today we'll be discussing how with our new san diego release for the now platform comes enhancements to the agent client collector or acc not only within it operations management or itom for short but within our other business units as well my name is kyle stefan and i'm a solution consultant here at servicenow the agent client collector is amazing because it's a single agent on end user devices and servers rather than needing to have multiple different clients for various operations which very well very well could decrease system performance now that we know the acc is a one true agent that allows us to accomplish a multitude of different things we're going to cover five areas within servicenow today the first three we'll briefly touch on which includes security operations or secops software asset management or sam and it service management or itsm and the then we'll dig a little bit deeper into our itom solutions which include discovery and ai ops and if you want to see the first three solutions shown in a demo instance however we have other videos on this servicenow youtube channel that dive deeper into showcasing those specific solutions with that being said let's take a look at some of the enhancements we've made to our agent-based discovery approach stepping into sam first we see that in today's modern environment we see a need for software asset managers to have a complete picture of software usage data to create effective software license optimization policies and to gain that complete picture software usage metering is needed so servicenow's acc for visibility or accv for short goes ahead and collects software usage metering data from windows based systems without the need for third-party systems such as sccm and moving forward the total software usage information that we can now collect from accv can in turn be used by sam pro to leverage and identify unused or lightly used software to be reclaimed now overall a combination of sampro and accv can be used by organizations to optimize their software spend without the need to rely on third-party tools to obtain software usage metering data transitioning into how the accv can help within secops we see a common problem where to investigate a security incident security analysts require access to real-time system information for affected systems and to recover from a security incident security analysts not only need access to that specific information but they need the ability to execute actions against those affected systems in real time and that real time system information that's collected from the acc can be used by security analysts as another source of data to determine the best course of action for recovery and then they can use it to create automated recovery workflows that can be executed directly into the affected systems using the acc so by leveraging a combination of security incident response in the acc organizations can decrease their mean time to recovery or mttr from security incidents as a result organizations will improve their security posture now jumping into itsm we'll see how we've made enhancements to the acc to better support things such as our remediation playbooks live ci views and virtual agent conversations when common application issues occur on endpoints it supports staff needs to perform manual steps to resolve the issues and this takes away from the more important issues at hand servicenow's htc now allows for the monitoring of common issues for our endpoint applications with the initial use case being for z-scaler and for the auto remediation of such issues without any human intervention all auto remediation actions generate incident tickets for tracking however they're immediately closed when auto remediation is successful and by using a combination of itsm and the acc organizations can deflect incidents away from the i.t support staff by auto remediating common issues ultimately increasing employee productivity and satisfaction moving along taking a look at our live ci views when endpoint system issues occur for example an employee creates an incident because their application is not working or computer's running really slow the it supports staff would then need to perform a remote desktop session to view that real-time system for information to help out altogether increasing the mttr for that specific incident but the acc can now gather real-time system performance information within the incident record itself and as a result the information collected by the acc can be used by the i.t support staff to investigate root cause and make decisions on the best course of action for a resolution some of the key features and metrics of this new feature include things such as not only having that live ci data visible from within the incident record on the agent workspace but if you were to refresh it it would go ahead and fetch all the current data from that system running the acc and the metrics that it contains are things such as device details memory usage running processes by cpu and memory and disk percentage usage all information that's very valuable for the i.t support staff so by using the acc to leverage this feature within itsm we see how organizations can reduce incident mttr by providing it support staff with real-time system performance information at their fingertips and by doing away with the added step of needing to remote desktop in we can increase the employee productivity as well and now not only do you have that information that we saw on the previous slide that real time system performance information from within the incident record but you're also able to use servicenow's virtual agent to be able to gather that information as well and use it to deflect end user incidents and as we see here in the picture provided the end user makes a request to which a virtual agent immediately responds back with permission and proceeds to troubleshoot the issue by gathering information on how much disk space is being used as well as which processes are using the most memory and with both of those results it provides a knowledge-based knowledge-based article to help the end user best resolve their issue so the acc works seamlessly together with itsm virtual agent to automate fulfillment of these requests within minutes and the virtual agent can also be used for other very common requests such as granting local admin access to the end users automatically so this combination of itsm pro acc and the acc spoke for the integration hub makes it so organizations can automate the deflection of incidents and the fulfillment of end user requests in jumping into itom now the ability to discover systems running ipv6 is a need for many organizations and it's actually currently the most voted idea on the idea portal for discovery and in addition not only is it a need but there's a requirement for federal agencies to have a plan in place to migrate thai be ipv6 by fiscal year 2026 so it may be a requirement coming very soon so servicenow's agent client collector for visibility or accv now supports discovery for ipv6 systems running both windows and linux and adzy systems to the cmdb and once the ipv6 systems are in the cmdb configuration data can be leveraged by technology workflows to make data driven decisions so now let's take a quick look into a san diego instance first hand and see what it looks like when ipv6 addresses are discovered jumping into my instance here we're looking at the windows server that i went ahead and ran discovery on and we're able to see everything related to it all the information on this specific windows server and as we scroll down to the bottom here in our related list here on the bottom we're able to see into our ip addresses and we're able to see that not only did we discover the ipv6 ipv4 address but we also were able to discover the ipv6 address and having that insight really allows us to leverage accv and gain insight into both not only windows servers as we see here but you're also able to discover these ipv6 protocols on linux systems as well which allows us to make data-driven decisions such as ensuring regulatory compliance change risk assessment incident impact analysis as well as security posture verification and much more and not only do we have insight to these ip addresses here but within network adapter ip preferences here we can jump in here and see that both the ipv4 and ipv6 address were discovered within here and if dual stack nic is present with both ipv4 and ipv6 the priority can be set by modifying one of the properties within servicenow to four or six and by default the value of the property is always set to four but you can modify that to however you desire there now jumping back into our slides here to finish things off moving into ai ops we'll see how we've made enhancements to the agent client collector for log analytics or accl for short so using the accl you're now able to stream log data from both linux and windows host directly into a servicenow's instance within ai ops there's a big need to detect anomalies so you can predict and avoid service outages and by using the single system to gain insight into the data being collected it allows you to immediately act on the anomalies for a much faster resolution and together the accl and health fog analytics work hand in hand to gain insight into your data first by using the acc to stream logs with the relevant log shipper and second by using health log analytics to map the structure map to map and structure the log data so thank you for joining servicenow's team today to learn more about the enhancements we made to the acc if you're looking to find out more information about how the agent client collector works well with our other business units as i mentioned in the beginning feel free to check out the other videos we have posted here on the youtube channel thank you you
https://www.youtube.com/watch?v=ntNep36zp1w