Splunk Search

Using the Send to File app, why am I getting the following error?: "No such file or directory" error

arock
New Member

Hello @Damien Dallimore - I am using your app Send to File and see the following errors in the View log events.

The search it produces:

index=_internal sourcetype=splunkd component=sendmodalert action="sendfile" 

Errors:

Alert action script returned error code=2
01-30-2019 17:04:27.261 -0500 ERROR sendmodalert - action=sendfile STDERR -  [Errno 2] No such file or directory: u'\\\\WS101\\FTP_From_AIX\\SPLUNK_Demand_Reports/Fax_Test2'

It's an abc123.log file and I can search it in Splunk:

index=* sourcetype=clm_tomcat_system source="/tmp/rock/abc*.log"

I believe, under the Send to File - Trigger Action - Directory - I have the output directory entered incorrectly.

Can you please provide an example of how I should enter the directory path?

This is what I have: \WS101\FTP_From_AIX\SPLUNK_Demand_Reports
It's a Windows server.

End Goal: I have a group wanting to send a fax report, generate in Splunk (a CSV file) to a network share.

Any guidance with be appreciated, thank you.

ARock

Tags (2)
0 Karma

arock
New Member

I also have the FQDN name of the system.

0 Karma
Get Updates on the Splunk Community!

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...

Unlock Instant Security Insights from Amazon S3 with Splunk Cloud — Try Federated ...

Availability: Must be on Splunk Cloud Platform version 10.1.2507.x to view the free trial banner. If you are ...