Reporting

Problem receiving email

wanling
Path Finder

Our splunk server (indexer and search head) runs on Windows platform. We configured a remote PDF Server URL that points to a splunk pdfserver running at Linux. The status page testing showed that the PDF file can be generated and displayed correctly. I then configured to schedule a PDF delivery for a dashboard report. However, I've problem receiving the emails. The system administrator confirmed that connection from the Splunk server is spotted at the SMTP server log.

Here's the extract of the python.log. How can I troubleshoot further, and to confirm if it's a Splunk or SMTP server problem?

2012-02-15 14:41:44,556 INFO Generated PDF for email
2012-02-15 14:41:44,556 DEBUG simpleRequest > GET https://127.0.0.1:8089/services/search/jobs/scheduler__huangwl__citi_X1NjaGVkdWxlZFZpZXdfX3ZpZXdfaW5... [] sessionSource=direct
2012-02-15 14:41:44,565 DEBUG simpleRequest < server responded status=200 responseTime=0.0080s
2012-02-15 14:41:44,565 DEBUG getStatus - elapsed=0.00800013542175 nextRetry=0.0500000040962
2012-02-15 14:41:46,973 INFO Sending email. subject="Splunk Alert: view_internet", results_link="http://172.20.170.12:8000/app/citi/@go?sid=scheduler__huangwl__citi_X1NjaGVkdWxlZFZpZXdfX3ZpZXdfaW50...", recepients="['xxxxx_wanling@xxx.xxx.xx', '', '']"

Tags (1)
0 Karma
1 Solution

wanling
Path Finder

The problem is solved by adding "from = " to $SPLUNK/etc/system/local/alert_actions.conf file ([email] section)

View solution in original post

0 Karma

wanling
Path Finder

The problem is solved by adding "from = " to $SPLUNK/etc/system/local/alert_actions.conf file ([email] section)

0 Karma

wanling
Path Finder

I've also tested sending email via telnet at the splunk server. The result is positive. Email can be received in this case. So the problem lies at Splunk?

0 Karma
Get Updates on the Splunk Community!

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...

Your Voice Matters! Help Us Shape the New Splunk Lantern Experience

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...