<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Alert not connecting to mail server in Alerting</title>
    <link>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103210#M1468</link>
    <description>&lt;P&gt;How does the recipient in your alert look like? Are you sure there is not leading/tailing whitespace or comma?&lt;/P&gt;</description>
    <pubDate>Thu, 03 Nov 2011 23:01:45 GMT</pubDate>
    <dc:creator>ziegfried</dc:creator>
    <dc:date>2011-11-03T23:01:45Z</dc:date>
    <item>
      <title>Alert not connecting to mail server</title>
      <link>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103205#M1463</link>
      <description>&lt;P&gt;I am trying to get splunk to connect to a unauthenticated mail server. However it is not sending the messages correctly. &lt;/P&gt;

&lt;P&gt;python.log says:&lt;BR /&gt;
2011-11-03 10:39:21,250 ERROR (550, 'Command RCPT failed') while sending mail to: myemailaddress&lt;/P&gt;

&lt;P&gt;Update:&lt;/P&gt;

&lt;P&gt;However many email addresses I send it to, the server also gets that many extra blank RCPT TO commands, thus messing it up. Is this splunk error? or server side error?&lt;/P&gt;</description>
      <pubDate>Thu, 03 Nov 2011 14:41:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103205#M1463</guid>
      <dc:creator>tympaniplayer</dc:creator>
      <dc:date>2011-11-03T14:41:16Z</dc:date>
    </item>
    <item>
      <title>Re: Alert not connecting to mail server</title>
      <link>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103206#M1464</link>
      <description>&lt;P&gt;SMTP Error 550 means "Requested action not taken: mailbox unavailable". Seems like your mailserver doesn't accept the specified recipient.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Nov 2011 14:52:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103206#M1464</guid>
      <dc:creator>ziegfried</dc:creator>
      <dc:date>2011-11-03T14:52:56Z</dc:date>
    </item>
    <item>
      <title>Re: Alert not connecting to mail server</title>
      <link>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103207#M1465</link>
      <description>&lt;P&gt;I have tried multiple recipients, including ones that use that mail server. Other programs, like sendmail will send to the same recipents that are used. Any thoughts?&lt;/P&gt;</description>
      <pubDate>Thu, 03 Nov 2011 14:56:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103207#M1465</guid>
      <dc:creator>tympaniplayer</dc:creator>
      <dc:date>2011-11-03T14:56:58Z</dc:date>
    </item>
    <item>
      <title>Re: Alert not connecting to mail server</title>
      <link>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103208#M1466</link>
      <description>&lt;P&gt;What kind of mailserver do you use? Have you looked into the logs of it?&lt;/P&gt;</description>
      <pubDate>Thu, 03 Nov 2011 14:58:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103208#M1466</guid>
      <dc:creator>ziegfried</dc:creator>
      <dc:date>2011-11-03T14:58:29Z</dc:date>
    </item>
    <item>
      <title>Re: Alert not connecting to mail server</title>
      <link>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103209#M1467</link>
      <description>&lt;P&gt;my mail server logs say (IPs omitted):&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD(  MAIL FROM:&lt;A href="mailto:splunk@"&gt;splunk@&lt;/A&gt; size=1000&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD &amp;gt;&amp;gt;&amp;gt; 250 ok&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD &amp;lt;&amp;lt;&amp;lt; rcpt TO:&lt;MYEMAIL&gt;&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD RCPT TO:&lt;MYEMAIL&gt;&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD [x] looking up gmail.com in HOSTS&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD &amp;gt;&amp;gt;&amp;gt; 250 ok its for &lt;MYEMAIL&gt;&lt;BR /&gt;&lt;/MYEMAIL&gt;&lt;/MYEMAIL&gt;&lt;/MYEMAIL&gt;&lt;/P&gt;

&lt;P&gt;Then it says&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD&amp;lt;&amp;lt;&amp;lt; rcpt TO:&amp;lt;&amp;gt;&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD  RCPT TO:&amp;lt;&amp;gt;&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD &amp;gt;&amp;gt;&amp;gt; 550 Command RCPT failed&lt;BR /&gt;&lt;BR /&gt;
11:03 11:01 SMTPD Unknown Command: RCPT&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 03 Nov 2011 15:17:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103209#M1467</guid>
      <dc:creator>tympaniplayer</dc:creator>
      <dc:date>2011-11-03T15:17:28Z</dc:date>
    </item>
    <item>
      <title>Re: Alert not connecting to mail server</title>
      <link>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103210#M1468</link>
      <description>&lt;P&gt;How does the recipient in your alert look like? Are you sure there is not leading/tailing whitespace or comma?&lt;/P&gt;</description>
      <pubDate>Thu, 03 Nov 2011 23:01:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103210#M1468</guid>
      <dc:creator>ziegfried</dc:creator>
      <dc:date>2011-11-03T23:01:45Z</dc:date>
    </item>
    <item>
      <title>Re: Alert not connecting to mail server</title>
      <link>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103211#M1469</link>
      <description>&lt;P&gt;no leading whitespace, no trailing whitepace, there is a comma but only to separate email addresses. Work the same with one address or two. very strange....&lt;/P&gt;</description>
      <pubDate>Fri, 04 Nov 2011 16:53:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103211#M1469</guid>
      <dc:creator>tympaniplayer</dc:creator>
      <dc:date>2011-11-04T16:53:53Z</dc:date>
    </item>
    <item>
      <title>Re: Alert not connecting to mail server</title>
      <link>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103212#M1470</link>
      <description>&lt;P&gt;I just used a different mail server to send the splunk alerts. This seems to work! Ill just use this instead.&lt;/P&gt;</description>
      <pubDate>Fri, 04 Nov 2011 17:55:51 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Alert-not-connecting-to-mail-server/m-p/103212#M1470</guid>
      <dc:creator>tympaniplayer</dc:creator>
      <dc:date>2011-11-04T17:55:51Z</dc:date>
    </item>
  </channel>
</rss>

