Splunk Search

Using the Send to File app, why am I getting the following error?: "No such file or directory" error

arock
New Member

Hello @Damien Dallimore - I am using your app Send to File and see the following errors in the View log events.

The search it produces:

index=_internal sourcetype=splunkd component=sendmodalert action="sendfile" 

Errors:

Alert action script returned error code=2
01-30-2019 17:04:27.261 -0500 ERROR sendmodalert - action=sendfile STDERR -  [Errno 2] No such file or directory: u'\\\\WS101\\FTP_From_AIX\\SPLUNK_Demand_Reports/Fax_Test2'

It's an abc123.log file and I can search it in Splunk:

index=* sourcetype=clm_tomcat_system source="/tmp/rock/abc*.log"

I believe, under the Send to File - Trigger Action - Directory - I have the output directory entered incorrectly.

Can you please provide an example of how I should enter the directory path?

This is what I have: \WS101\FTP_From_AIX\SPLUNK_Demand_Reports
It's a Windows server.

End Goal: I have a group wanting to send a fax report, generate in Splunk (a CSV file) to a network share.

Any guidance with be appreciated, thank you.

ARock

Tags (2)
0 Karma

arock
New Member

I also have the FQDN name of the system.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Data Management Digest – August 2026

MichelleCorpora_1-1788182384472.png Welcome to the August 2026 edition of Data Management Digest! August was a ...

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...