Reporting

Why am I having a problem with my schedule searches?

DerekB
Splunk Employee
Splunk Employee

Scheduled searches have stopped sending results via email. If I login to SplunkUI and bring up the scheduled searches from the Manager window, I can see the recent results, but I don't receive any emails. Any idea why?

Even using the sendmail command gives this error:

ERROR [Errno 10013] An attempt was made to access a socket in a way forbidden by its access permissions while sending mail to:

1 Solution

DerekB
Splunk Employee
Splunk Employee

In this case, all of the permissions were correct. The problem was McAfee blocking the emails from being sent. If you are experiencing this, try turning of McAfee and see if that allows your emails of your scheduled searches to be sent.

View solution in original post

DerekB
Splunk Employee
Splunk Employee

In this case, all of the permissions were correct. The problem was McAfee blocking the emails from being sent. If you are experiencing this, try turning of McAfee and see if that allows your emails of your scheduled searches to be sent.

Get Updates on the Splunk Community!

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...