The Azure CMDB Connector populates your ServiceNow CMDB with all your Azure resources. It connects to your Azure subscription, discovers 40 categories of running workloads and maps them into the right CMDB classes and attributes, automatically establishing relationships between resources and supporting both single and multi-tenant Azure environments.
Get your Azure resources in your ServiceNow instance at a competitive price and improve your key ITSM processes (incident, problem, change) thanks to an accurate and complete CMDB. Try it for free for 30 days on non-prod instances.
40 Azure Resource Categories. One Connector.
Stop maintaining your CMDB manually. The Azure CMDB Connector automatically discovers and synchronizes your Azure estate into ServiceNow; virtual machines, SQL databases, MySQL, PostgreSQL, Cosmos DB, app services, logic apps, AKS clusters, container apps, storage accounts, file shares, virtual networks, subnets, NICs, load balancers, VPN gateways, ExpressRoute, Azure Firewall, key vaults, recovery services vaults, log analytics workspaces, VM scale sets, AVD VMs, resource groups, subscriptions, datacenters, and more mapped into the right CMDB classes and attributes, keeping your configuration data accurate, complete, and audit-ready without lifting a finger.
Automatic Relationship Mapping
Every resource is mapped to the right CMDB class and linked to its dependencies automatically. Virtual Machine ↔ NIC ↔ VNet ↔ Subnet. SQL Server ↔ SQL Database. Relationships are built and maintained on every sync, no manual wiring required.
Multi-Tenant Resource Discovery
Manage multiple Azure tenants from a single ServiceNow instance. Each tenant is configured independently with full data isolation, giving organizations with multiple subscriptions, resource groups, datacenters and management groups in a unified CMDB view across their entire Azure footprint.
Governance & Security
- OAuth 2.0 Client Credentials Flow via Azure Active Directory, read-only permissions only, no write access to your Azure environment
- No Azure or ServiceNow data stored outside the platform
- Full synchronization of job history with success, error, and record counts per run
- Configurable sync schedules; hourly, daily, or weekly with on-demand sync available
- Built-in error handling with automatic retry and detailed diagnostic logging
Performance Considerations
The connector is optimized for medium-sized ServiceNow instances, efficiently handling synchronization with Azure environments. Performance testing showed the solution can manage daily data imports with minimal impact on system resources. Import Set + Robust Transform Engine (RTE) ensures data is processed reliably, even for larger datasets.
Limitations
Since ITSM license does not provide the "Cloud Service Account" table, which is required to store Management Group information. Instead, the connector saves Management Group information as tags on the related Subscription records in ServiceNow.
Target Audience
- IT Operations and CMDB teams need accurate, real-time cloud resource visibility
- ServiceNow customers without ITOM licenses looking for a cost-effective CMDB sync solution
- Cloud and infrastructure teams managing multi-tenant or multi-subscription Azure environments
Contact and Support
We are committed to providing frequent releases, bug fixes, and continuous improvement based on your feedback.
- Email: supportdesk@asp.be
- SLA: 8-hour response, 2-day resolution
- Documentation: Installation & User Guide included in the package
Key Features
1. Automated Data Sync Between Azure and ServiceNow CMDB
Seamlessly synchronizes Azure resources with the ServiceNow Configuration Management Database (CMDB), ensuring your cloud infrastructure is always up to date and accurately reflected.
2. Comprehensive Azure Resource Coverage
Supports synchronization of 40 categories of Azure resources, including Virtual Machines, Network Interfaces, Subnets, Virtual Networks, Datacenters, Subscriptions, Storage Accounts, Databases, App Services, AKS Clusters, Public IP Addresses, DNS Zones, File Shares, Load Balancers, and other Azure resources, along with all their associated components.
3. Multi-Tenant support
The connector is designed to support both single and multi-tenant Azure environments. Each tenant is configured independently through its own Connection Alias in ServiceNow, allowing organizations to manage multiple Azure tenants from a single ServiceNow instance. The connector handles tenant isolation, ensuring that resources, subscriptions, and organizational hierarchies from each tenant are correctly identified and stored in the CMDB without overlap or conflict.
4. Relationship Mapping for Service Visibility
Captures and maintains relationships across Azure resources to provide end-to-end visibility and accurate service modeling in the CMDB.
5. Parent Management Group tag inheritance
Automatically resolves each subscription's parent Management Group and tags the corresponding Subscription CI in ServiceNow for full Azure organizational hierarchy visibility.
6. Scheduled and On-Demand Synchronization
Flexible synchronization options allow automated scheduled jobs or on-demand runs to keep your CMDB current with minimal manual intervention.
7. Built-in error handling and auto-recovery
Automatic retry mechanisms and detailed diagnostic logging ensure resilience and stability. Synchronization errors are logged with full diagnostic detail for quick resolution.
8. Guided Setup wizard
A step-by-step configuration wizard walks administrators through Azure AD authentication, single or multi-tenant connection setup, and scheduled import activation, fast, governed configuration from day one.
9. Secure Authentication via OAuth2
Uses OAuth2 authentication, eliminating hard-coded credentials and ensuring enterprise-grade security.
10. Scalable and Extensible Framework
Built as a scoped application with batch processing, pagination, and retry logic, enabling high performance for large environments and easy extension to support additional Azure services.
Azure-Specific Features
- Populates 21 OOB CMDB tables with no custom CI tables required
- Syncs 40 categories of Azure resources available via Azure Resource Manager APIs
- Automatic CI relationship mapping across all supported Azure resource types
- Uses RTE and IRE for native CMDB deduplication and reconciliation
- Discovery source scoped to "Azure-Connector" - only connector-managed CIs are updated, never records from other sources
- Multi-tenant and multi-subscription Azure environments supported out of the box
- Dedicated custom CI form views for Azure resources surfacing subscription, resource group, tags, and configuration details
- Dedicated navigation modules - Azure Resources, Discovered Items, and Properties for easy access within ServiceNow
- No ITOM, Discovery, or Service Graph Connector license required
- Works within a standard ServiceNow ITSM subscription
Release V2.0.0
Overview
The Azure CMDB Connector application provides seamless integration between Microsoft Azure and the ServiceNow Configuration Management Database (CMDB). This release focuses on the addition of support for organizations using multiple tenants and improving the automation of the discovery and synchronization of cloud resources, enabling organizations to maintain accurate, real-time visibility into their Azure environments.
1. Comprehensive Azure Resource Synchronization
Automatically imports and synchronizes a wide range of Azure resources into the ServiceNow CMDB, including:
-
Virtual Machines
-
SQL Databases & SQL Servers
-
SQL Elastic Pools
-
MySQL & PostgreSQL Databases
-
Cosmos DB
-
App Services (Web Apps, Function Apps)
-
AKS Clusters
-
Storage Accounts
-
Virtual Networks & Subnets
-
Network Interfaces (NICs)
-
Public IPs
-
Network Security Groups
-
Load Balancers
-
Tags
-
Resource Groups
-
Subscriptions
-
Datacenters
-
Azure SQL Managed Instance
-
Azure Application Gateway
-
Azure Front Door
-
Azure Traffic Manager
-
Azure CDN
-
Logic Apps
-
Container Apps
-
VPN Gateway
-
ExpressRoute
-
Azure Firewall
-
Azure Bastion
-
Virtual WAN
-
Private DNS Zones
-
DNS Zones
-
Route Table
-
Service Principal
-
Azure File Share
-
Recovery Services Vaults
-
Container Registries
-
VM Scale Set
-
AVD VMs
-
Key Vaults
-
Azure Sentinel
-
Log Analytics Workspace
-
Web Application Firewall
2. Intelligent Relationship Mapping
Automatically establishes relationships between Azure resources to provide accurate dependency mapping with ServiceNow.
3. Single and multi-tenant support
Allows organizations to manage single or multiple Azure tenants from a single ServiceNow instance. The connector handles tenant isolation, ensuring that resources, subscriptions, and organizational hierarchies from each tenant are correctly identified and stored in the CMDB without overlap or conflict.
3. Robust Authentication & Security
- OAuth 2.0 Integration - Secure authentication using OAuth2
- Least Privilege Access - Read-only permissions with minimal required API access
- Token Management - Automatic token refresh and secure credential storage
4. Enhanced User Experience
- Guided Setup Wizard - Step-by-step configuration process including:
- OAuth credential configuration
- Connection testing and validation
- Synchronization schedule setup
- Custom CMDB Views - Dedicated forms for Azure-specific CIs displaying relevant metadata
- Application Modules - New navigation items for Azure Resources, Discovered Items, and Properties
5. Flexible Synchronization Options
- Configurable Schedules - Support for hourly, daily, weekly, or custom synchronization intervals
- Selective Synchronization - Choose specific resource types and scopes for import
- On-Demand Sync - Manual synchronization triggers for immediate updates
- Error Handling - Comprehensive error detection, logging, and retry mechanisms
6. Performance Optimization
- Robust Transformation Engine (RTE) - Leverages ServiceNow's RTE for efficient data processing
- API Rate Limiting - Respects Azure API throttling limits with intelligent retry logic
- Batch Processing - Optimized data processing for large Azure environments
- Reconciliation Support - Prevents duplicate records using ServiceNow's IRE
7. Comprehensive Support
For assistance with installation or configuration, please refer to the Azure CMDB Connector documentation or reach out to ServiceNow support for further guidance.
Prerequisites Azure Requirements
- Active Microsoft Azure subscription with deployed resources
- Azure Service Principal (App Registration) with read permissions
- Configured the OAuth application
ServiceNow Requirements
Plugin dependencies:
- System Import Sets(com.glide.system_import_set) : 1.0.0
- Integration Commons for CMDB(sn_cmdb_int_util) : 2.12.0
- CMDB CI Class Models (sn_cmdb_ci_class) : 1.54.0
- Configuration Management (CMDB) (com.snc.cmdb): 1.1
List of Plugins Required for Guided Setup:
- Guided Setup(sn_ads_setup) all apps
- Guided Setup - Legacy(sn_guided_setup)
- Playbook Experience (sn_playbook_exp)
- Playbook Experience Components (now_playbook_exp)
- PAD (sn_pad_content) Process Automation Content
Role Requirements
- New administrative role: x_aspas_ac_azure_c.admin for connector management