Configure observability agents for Now Assist
Configure observability agents for third-party application performance monitoring (APM) or network performance monitoring (NPM) vendors. These agents are invoked by the analyze alert impact agentic workflow. You must configure connections to those vendors before they can be invoked.
Important: This AI agent is turned on by default. For more information, see Now Assist skills, agents, and agentic workflows on by default.
After you configure the agent(s), they can surface information from alerts generated by third-party systems to help you investigate alerts and incidents in the Service Operations Workspace.
Connections to vendors use MCP when possible, otherwise they use an API connection. You need connection and credential information to complete the connection process as shown in the following tables.
Note: These agents are different from the data sources used in the Service Observability dashboards.
Before you begin
Before configuring the integration agents, you must do the following:
- Install Now Assist for IT Operations Management (ITOM).
- Integrate third-party alerts with Event Management.
- Copy the connection requirements for the vendor as noted in the following tables. You will need these to create credentials and connections to the third-party vendor.
Role required: connection_admin and credential_admin
AWS CloudWatch MCP
| Connection information | Value |
|---|---|
| Agent name | AWS CloudWatch MCP Server Agent |
| Overview of data returned | Alarm details, metric trend analysis, CloudWatch logs \(anomalies, error patterns, log insights queries\), CMDB resource context, correlated service metrics, and root cause analysis with recommended next steps |
| Credential & Connection Alias name | AWS CloudWatch MCP server |
| Connection type | MCP |
| Returned data type | APM |
| Connection URL |
This assumes you have deployed the CloudWatch MCP server using a MID Server instead of a publicly exposed EC2 instance. For more information about deploying the MCP server, see the AWS CloudWatch MCP Server — MID Server Deployment Guide [KB3030674] article in the Now Support Knowledge Base. |
| Required credentials | - AWS access key ID - AWS secret access key |
| Required scope | AWS IAM permissions: - `cloudwatch:Describe*` - `cloudwatch:Get*` - `cloudwatch:List*` - `logs:Describe*` - `logs:Get*` - `logs:StartQuery` - `logs:StopQuery` - `logs:GetQueryResults` |
AWS CloudWatch API
| Connection information | Value |
|---|---|
| Agent name | AWS CloudWatch API Agent |
| Overview of data returned | Alarm details, metric trend analysis, CloudWatch logs \(anomalies, error patterns, log insights queries\), CMDB resource context, correlated service metrics, and root cause analysis with recommended next steps |
| Credential & Connection Alias name | AWS CloudWatch API Credentials |
| Connection type | API \(MCP fallback mechanism\) |
| Returned data type | APM |
| Connection URL | N/A |
| Credential type | AWS Credentials |
| Authentication algorithm | AWS CloudWatch Algorithm |
| Required credentials | - AWS access key ID - AWS secret access key |
| Required scope | AWS IAM permissions: - `cloudwatch:Describe*` - `cloudwatch:Get*` - `cloudwatch:List*` - `logs:Describe*` - `logs:Get*` - `logs:StartQuery` - `logs:StopQuery` - `logs:GetQueryResults` |
Datadog
| Connection information | Value |
|---|---|
| Agent name | Datadog APM MCP Server Agent |
| Overview of data returned | Service health, distributed traces, triggered monitors, log analysis, incidents, SLO compliance, deployment events, and service dependencies |
| Credential & Connection Alias name | Datadog APM MCP Connection |
| Connection type | MCP |
| Returned data type | APM |
| Connection URL | `https://mcp.datadoghq.com/api/unstable/mcp-server/mcp?toolsets=core,alerting,apm,error-tracking` |
| Required credentials | - Datadog API key - Datadog application key |
| Required scope | N/A |
Dynatrace
| Connection information | Value | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Agent name | Dynatrace MCP Server Agent | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Overview of data returned | Insights about logs, topology, recent changes, root causes, impacted entities, and environments. | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Credential & Connection Alias name | Dynatrace MCP server | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Connection type | MCP | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Returned data type | APM | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Connection URL | URL of your Dynatrace instance. Dynatrace URLs follow this format: `https://| Required credentials | Platform token \(must be prefixed with `Bearer`\). For example, `Bearer dt0s01.STABCDEF12345.G3HIJKLMNOP`. | Required scope | IAM policy and group assignment that allows the following scopes: - `davis-copilot:nl2dql:execute` - `davis-copilot:dql2nl:execute` - `davis-copilot:conversations:execute` - `davis:analyzers:read` - `davis:analyzers:execute` - `mcp-gateway:servers:invoke` - `mcp-gateway:servers:read` - `storage:buckets:read` - `storage:logs:read` - `storage:events:read` - `storage:security.events:read` - `storage:metrics:read` - `storage:bizevents:read` - `storage:spans:read` - `storage:entities:read` - `storage:smartscape:read` - `storage:system:read` | Required Dynatrace Intelligence settings | - Enable generative AI - Enable document suggestions - Enable environment-aware queries | Kentik
|