Splunk Search

Using the Send to File app, why am I getting the following error?: "No such file or directory" error

arock
New Member

Hello @Damien Dallimore - I am using your app Send to File and see the following errors in the View log events.

The search it produces:

index=_internal sourcetype=splunkd component=sendmodalert action="sendfile" 

Errors:

Alert action script returned error code=2
01-30-2019 17:04:27.261 -0500 ERROR sendmodalert - action=sendfile STDERR -  [Errno 2] No such file or directory: u'\\\\WS101\\FTP_From_AIX\\SPLUNK_Demand_Reports/Fax_Test2'

It's an abc123.log file and I can search it in Splunk:

index=* sourcetype=clm_tomcat_system source="/tmp/rock/abc*.log"

I believe, under the Send to File - Trigger Action - Directory - I have the output directory entered incorrectly.

Can you please provide an example of how I should enter the directory path?

This is what I have: \WS101\FTP_From_AIX\SPLUNK_Demand_Reports
It's a Windows server.

End Goal: I have a group wanting to send a fax report, generate in Splunk (a CSV file) to a network share.

Any guidance with be appreciated, thank you.

ARock

Tags (2)
0 Karma

arock
New Member

I also have the FQDN name of the system.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...