Deployment Architecture

Why is the "sendemail" command not sending email on one of the member in search head cluster?

bharathgadikota
Engager

when am executing |sendemail xxxxx command in search, the job is getting queued and is running forever on one of the search head cluster members.

the is working fine on other cluster members and is sending mail.

email server settings are all same on all cluster members i don't know why |sendemail is not working on one server.

0 Karma
1 Solution

bharathgadikota
Engager

Got it resolved.

It was VM issue. restarting the VM solved the problem.

View solution in original post

0 Karma

bharathgadikota
Engager

Got it resolved.

It was VM issue. restarting the VM solved the problem.

0 Karma

Kate_Lawrence-G
Contributor

Are there any errors in the log & can you send email from that search head alone?
Try sending an email via telnet (https://mediatemple.net/community/products/dv/204404584/sending-or-viewing-emails-using-telnet) and see if you get an error. It might be ACL related or with the mail relay.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...