Alerting

Unable to send automatic alert reports via email using AWS-SES

wanderleisouza
Engager

Hello guys,

I'm unable to send automatic alert reports via email using AWS-SES. The strange fact is, if I use the search bar, it works.

For example:

index=_internal source="/opt/splunk/var/log/splunk/python.log" | sendemail to="someuser@mydomain.com" format="html" server="email-smtp.us-west-2.amazonaws.com" username="xxxxx" password="xxxxx" use_tls=true

I'm using the following configuration in Splunk -> Settings -> Server Settings -> Email Settings:

Mail Host: email-smtp.us-west-2.amazonaws.com
Email Security: Enable TLS
Username: XXXXX (aws_access_key)
Password: XXXXX (aws_secret_key)
Link Hostname: (blank)
Send emails as: admin@mydomain.com
Email footer: $search$
Report paper size: A4
Report paper orientation: Portrait 

gflynn
Explorer

Old question, I stumbled across it while search for something similar. Have you verified the admin@mydomain.com address through SES?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...