Getting Data In

WARN script - Maxinputs must be at least 50000, command name="sendemail"

Anthony_Hou
Path Finder

Hi All,

We have a sendemail problem

The error messages are from splunkd.log:

05-25-2012 11:20:47.711 +0800 WARN script - Maxinputs must be at least 50000, command name="sendemail"
05-25-2012 11:20:49.838 +0800 WARN script - Maxinputs must be at least 50000, command name="sendemail"

We can't find any hint or information to find out what causes this issue.

Any advice will be appreciated.

Thank You All.

Anthony

Tags (1)
0 Karma

Anthony_Hou
Path Finder

Hi, Ayn

I only update alert_actions.conf with this settings:

maxresults=10000

I increase to 1000000.

cause some search results exceed 10000 rows...

this setting works.

but this setting and this problem seems not related.

but it did about sendemail.

tks,
Anthony

0 Karma

Anthony_Hou
Path Finder

Dear All,

I update all the values about 50000 in limits.conf, replace with 50001.

after splunk restart, the problem is gone.

I will keep update if this problem comes again...

tks for Ayn's reply.

Ayn
Legend

More info on the situation please? How are you calling sendemail?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Request for Professional Development: Attending .conf26

Winning Over the Boss: Your Pass to .conf26 conf26 is going to be here before you know it. If don't already ...

Casting Call: Compete in Cyber Games

Lights, Camera, SecOps: Apply to Compete in Cyber Games     Think you have what it takes to beat the clock? ...