Thank you SO MUCH! This got me what I needed to see. The following was in the log python log file:
sendemail:355 - Connection unexpectedly closed while sending mail to:
The following was in the scheduler log file:
12-05-2015 17:15:05.960 +0000 INFO SavedSplunker - savedsearch_id="212040597;search;Brents Test Alert", user="212040597", app="search", savedsearch_name="Brents Test Alert", status=success, digest_mode=1, scheduled_time=1449335700, dispatch_time=1449335703, run_time=2.146, result_count=20, alert_actions="email", sid="scheduler__212040597__search__RMD5aab130161880edb9_at_1449335700_69055", suppressed=0, thread_id="AlertNotifierWorker-0"
I did not have sendmail installed on this server . Do I need to install and configure it? This is so confusing because when I run a search and pipe it thru sendemail to= I get the messages. Is there a how-to for setting up mail in splunk. What is the meaning of life? 🙂
Thanks everyone for your help.
... View more