Alerting

554, '5.2.0 STOREDRV.Submission.Exception:SendAsDeniedException.MapiExceptionSendAsDenied;

Mai_splunk
Explorer

For some months we have been having problems sending email alerts. The message is as follows:

 

2020-07-22 12:00:16,226 +0200 INFO sendemail:1146 - sendemail pdfgen_available = 1
2020-07-22 12:00:16,227 +0200 INFO sendemail:1286 - sendemail:mail effectiveTime=1595412000
2020-07-22 12:00:19,150 +0200 INFO sendemail:1306 - Generated PDF for email
2020-07-22 12:00:20,298 +0200 ERROR sendemail:137 - Sending email. subject="Splunk Report: License Usage PRODUCTION", results_link="https://xxxxx/app/search/@go?sid=scheduler__admin__search__RMD569643b83e5ae4406_at_1595412000_82981", recipients="[u'xxxx@xxxcom', u'xxxx@xxx.com']", server="smtp.office365.com:587"
2020-07-22 12:00:20,298 +0200 ERROR sendemail:458 - (554, '5.2.0 STOREDRV.Submission.Exception:SendAsDeniedException.MapiExceptionSendAsDenied; Failed to process message due to a permanent exception with message Cannot submit message. 0.35250:02016A81, 1.36674:0A000000, 1.61250:00000000, 1.45378:02000000, 1.44866:96510000, 1.36674:0E000000, 1.61250:00000000, 1.45378:9B510000, 1.44866:B4030000, 16.55847:67100000, 17.43559:0000000024020000000000000000000000000000, 20.52176:140F7B8C1B00103100000000, 20.50032:140F7B8C8B17000000000000, 0.35180:140F7B8C, 255.23226:0A007081, 255.27962:0A000000, 255.27962:0E000000, 255.31418:0A007181, 0.35250:00000000, 1.36674:0A000000, 1.61250:00000000, 1.45378:02000000, 1.44866:5E000000, 1.36674:32000000, 1.61250:00000000, 1.45378:63000000, 1.44866:01000000, 16.55847:CA000000, 17.43559:0000000070030000000000000100000000000000, 20.52176:140F7B8C1B00101053000000, 20.50032:140F7B8C8B1700006E2C0000, 0.35180:58000000, 255.23226:4800D13D, 255.27962:0A000000, 255.27962:32000000, 255.17082:DC040000, 0.27745:782C0000, 4.21921:DC040000, 255.27962:FA000000, 255.1494:7D2C0000, 0.38698:05000780, 0.37692:01000000, 0.37948:00400600, 5.33852:00000000534D545000040480, 7.36354:0100000000000109302E3331, 4.56248:DC040000, 7.40748:010000000000010B3A396133, 7.57132:00000000000000003932612D, 1.63016:32000000, 4.39640:DC040000, 8.45434:EC100AF9E504794BA48473AAD7EDE1BB3932612D, 5.10786:0000000031352E32302E333139352E3032373A414D36505230354D42363238303A39613361313639312D333266342D343932612D623232622D62303463366135373834316200201000000000, 7.51330:1B0F0A0B262ED80818000000, 0.39570:00000000, 1.55954:0A000000, 0.49266:02000000, 1.33010:0A000000, 2.54258:00000000, 0.40002:07000000, 1.56562:00000000, 1.64146:32000000, 1.33010:32000000, 2.54258:DC040000, 255.1750:AF000000, 255.31418:0A005D36, 0.22753:4F2E0000, 255.21817:DC040000, 0.64418:0A00F565, 4.39842:DC040000, 0.41586:B9000000, 4.60547:DC040000, 0.21966:852E0000, 4.30158:DC040000 [Hostname=AM6PR05MB6280.eurprd05.prod.outlook.com]')

 

When I use the sendemail command with the from option it works correctly, but dede alerts does not.

 

Can someone help me?

Thanks a lot!!

Labels (2)
Tags (1)
0 Karma

ranmys
Loves-to-Learn

Hi,

I'm facing the same error, did you manage to resolve the matter ??

Thanks

0 Karma
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...