Reporting

Problem receiving email

wanling
Path Finder

Our splunk server (indexer and search head) runs on Windows platform. We configured a remote PDF Server URL that points to a splunk pdfserver running at Linux. The status page testing showed that the PDF file can be generated and displayed correctly. I then configured to schedule a PDF delivery for a dashboard report. However, I've problem receiving the emails. The system administrator confirmed that connection from the Splunk server is spotted at the SMTP server log.

Here's the extract of the python.log. How can I troubleshoot further, and to confirm if it's a Splunk or SMTP server problem?

2012-02-15 14:41:44,556 INFO Generated PDF for email
2012-02-15 14:41:44,556 DEBUG simpleRequest > GET https://127.0.0.1:8089/services/search/jobs/scheduler__huangwl__citi_X1NjaGVkdWxlZFZpZXdfX3ZpZXdfaW5... [] sessionSource=direct
2012-02-15 14:41:44,565 DEBUG simpleRequest < server responded status=200 responseTime=0.0080s
2012-02-15 14:41:44,565 DEBUG getStatus - elapsed=0.00800013542175 nextRetry=0.0500000040962
2012-02-15 14:41:46,973 INFO Sending email. subject="Splunk Alert: view_internet", results_link="http://172.20.170.12:8000/app/citi/@go?sid=scheduler__huangwl__citi_X1NjaGVkdWxlZFZpZXdfX3ZpZXdfaW50...", recepients="['[email protected]', '', '']"

Tags (1)
0 Karma
1 Solution

wanling
Path Finder

The problem is solved by adding "from = " to $SPLUNK/etc/system/local/alert_actions.conf file ([email] section)

View solution in original post

0 Karma

wanling
Path Finder

The problem is solved by adding "from = " to $SPLUNK/etc/system/local/alert_actions.conf file ([email] section)

0 Karma

wanling
Path Finder

I've also tested sending email via telnet at the splunk server. The result is positive. Email can be received in this case. So the problem lies at Splunk?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Splunk Asynchronous Forwarding Explained

Splunk asynchronous forwarding is often misunderstood as simply setting autoLBVolume. That is not quite right. ...

55 Days to Go: Secure Your Seat at Splunk University in Denver

Your .conf26 Experience Starts Before Opening Keynote  If Denver is known for its mile-high elevation, Splunk ...

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...