Splunk Enterprise Security

How to get ta-mailclient setup?

csarte
New Member

We want to fetch emails from a mailbox and forward to splunk. I have the ta-mailclient installed on our HF Windows server. I went to Settings > Data inputs > Mail Server to add an Email account to monitor with protocol IMAP. No emails are being read.

GitHub - seunomosowon/TA-mailclient: This technology adapter add-on fetches emails for Splunk to ind...

Labels (2)
0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

@csarte - Your starting point should be to look at the logs and see what is the error to further troubleshoot.

index=_internal sourcetype=splunkd (component=ModularInputs OR component=ExecProcessor) mail.py

 

I hope this helps, kindly upvote if it does!!!

0 Karma
Get Updates on the Splunk Community!

Index This | When is October more than just the tenth month?

October 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

What’s New & Next in Splunk SOAR

 Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us for an ...