So...
I set up an alert for testing, the alert triggers, but splunk is not sending out the email. I can however send an email to myself from the splunk server using the command-line:
ssmpt rmckennon@monetra.com
Running Splunk 6.2.1 on CentOS 7
full message:
07-06-2015 10:40:01.515 -0400 ERROR ScriptRunner - stderr from '/opt/splunk/bin/python /opt/splunk/etc/apps/search/bin/sendemail.py "results_link=http://splunk:8000/app/search/@go?sid=scheduler__admin__search__RMD5dcd2e82a46e9e89f_at_1436193600_1769" "ssname=Failed Login" "graceful=True" "trigger_time=1436193601" results_file="/opt/splunk/var/run/splunk/dispatch/scheduler__admin__search__RMD5dcd2e82a46e9e89f_at_1436193600_1769/results.csv.gz"': ERROR:root:[Errno 101] Network is unreachable while sending mail to: rmckennon@monetra.com
Am I missing something simple???
Rob.
Make sure you've set your email server to something sensible, Settings -> General Settings -> Email Settings.
Make sure you've set your email server to something sensible, Settings -> General Settings -> Email Settings.
Enjoy it while it lasts, even in Splunk it's not always that simple 😄
Ugh... It was that simple... thanx.
Rob.