Alerting

Splunk 6.6.0 (SMTP Requirement)

muhammadamir
New Member

Hello Support,
I have changed my local SMTP server, & it is running on a windows 2012 R2 server. I changed the settings of SMTP in splunk to point to the new windows based (SMTP), server but it is no longer sending me alerts, I need to make splunk send me alerts using our new SMTP server, Is there anything, Im missing? Please, someone reply ASAP, as it urgent! Also, how can I send a quick test alert, so I can check it is actually working from splunk?

Tags (1)
0 Karma

sudosplunk
Motivator

Hello muhammadamir,

It is hard to figure out the issue without looking at your settings. However, to test email alerts, you can use "sendmail" search command.

0 Karma

MuS
SplunkTrust
SplunkTrust

small correction here, the command is sendemail http://docs.splunk.com/Documentation/Splunk/6.6.0/SearchReference/Sendemail

And as usual check index=_internal sourcetype=splunkd for that host and see if you find any errors related to smtp.

cheers, MuS

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...