Hello Splunkers,
I'm wondering the best way to index an email. Not email server logs, the actual mail.
There are a couple apps that maybe help with this but they are very old:
https://splunkbase.splunk.com/app/3200/
https://splunkbase.splunk.com/app/1739/
Has anyone already did this? Any advice?
Christian
Hi
at least IMAPMailbox is working with splunk 7.3.x, but not anymore whit splunk 8 without rewriting it to support python 3.
r. Ismo
I'm using Splunk 8. That's why I need an updated solution. 😕
One “temporary” solution is set up a HF (with 7.3.x) where run this until someone get better solution.
r. Ismo