Reporting

Error sending email

eholz1
Communicator

Hello All,

I have splunk enterprise at 7.3.1 on Windows 2012 server.
I am trying to configure alerts to send email.
I have an smtp email server which requires no authenification.
Splunk thinks it sends email with an alert but then I get the error message below:

[Errno 10013] An attempt was made to access a socket in a way forbidden by its access permissions while sending mail

The windows firewall is off.
Has anyone else seen this error message? How to fix?

Thanks,
eholz1

0 Karma
1 Solution

eholz1
Communicator

Hello Found the problem - McAfee Enterprise Ver. 8 was blocking the emails.
from a search on my error messages - From the StackOverflow web site:

McAfee was blocking it for me. I had to allow the program in the access protection rules
1.Open VirusScan
2.Right click on Access Protection and choose Properties
3.Click on "Anti-virus Standard Protection"
4.Select rule "Prevent mass mailing worms from sending mail" and click edit
5.Add the application to the Processes to exclude list and click OK

My fix was to in-check "Block" - I have a closed network so we are good.

eholz1

View solution in original post

0 Karma

eholz1
Communicator

Hello Found the problem - McAfee Enterprise Ver. 8 was blocking the emails.
from a search on my error messages - From the StackOverflow web site:

McAfee was blocking it for me. I had to allow the program in the access protection rules
1.Open VirusScan
2.Right click on Access Protection and choose Properties
3.Click on "Anti-virus Standard Protection"
4.Select rule "Prevent mass mailing worms from sending mail" and click edit
5.Add the application to the Processes to exclude list and click OK

My fix was to in-check "Block" - I have a closed network so we are good.

eholz1

0 Karma
Get Updates on the Splunk Community!

Register to Attend BSides SPL 2022 - It's all Happening October 18!

Join like-minded individuals for technical sessions on everything Splunk!  This is a community-led and run ...

What's New in Splunk Cloud Platform 9.0.2208?!

Howdy!  We are happy to share the newest updates in Splunk Cloud Platform 9.0.2208! Analysts can benefit ...

Admin Console: A Single, Unified Interface for All Your Cloud Admin Needs

WATCH NOWJoin us to learn how the admin console can save you time and give you more control over the Splunk® ...