Alerting

One of the email addresses in 'action.email.to' is invalid

Isaias_Garcia
Path Finder

I configure my Blackberry to receive alerts from Splunk 5.02 version. The email address of my device is something like this:
. I got this error message : "Encountered the following error while trying to update ; In handler 'savedsearch':One of the email addresses in 'action.email.to' is invalid"

Please advise. Thank you

Tags (3)
0 Karma

lespider
Explorer

Just noticed trailing space will cause the same problem

0 Karma

linu1988
Champion

Hello,
This happens due to splunks email id recognition system. It's not able to match. Follow the below post it will work

http://answers.splunk.com/answers/124873/alert-email-address-doesnt-allow-our-domain

0 Karma

lespider
Explorer

This happens to me in the initial setup wizard when taking a search, and making it into an alert. It happens specifically if I have an address that has the form "foo-bar@fooserver.foocompany.com", something normal like foouser@foocompany.com works fine. I suspect it's the subdomain in the email address. A workaround seems to be to skip that part in the wizard, and go to manager to edit the alert. It seems to access it just fine.

0 Karma

Isaias_Garcia
Path Finder

@linu - no dot at the last point.. just xx_yyyyyyy@zzzz.ap.blackberry.net

0 Karma

linu1988
Champion

was the email id with xx_yyyyyyy@zzzz.ap.blackberry.net.

(.) Dot at the last point?

0 Karma
Get Updates on the Splunk Community!

Build Scalable Security While Moving to Cloud - Guide From Clayton Homes

 Clayton Homes faced the increased challenge of strengthening their security posture as they went through ...

Mission Control | Explore the latest release of Splunk Mission Control (2.3)

We’re happy to announce the release of Mission Control 2.3 which includes several new and exciting features ...

Cloud Platform | Migrating your Splunk Cloud deployment to Python 3.7

Python 2.7, the last release of Python 2, reached End of Life back on January 1, 2020. As part of our larger ...