Alerting

Getting email notification from cron daemon

rakesh44
Communicator

Hi Team,

Am getting back to back email from cron daemon, would like to know reason of email notification and also these notification are important , if not then can we stop such email notification.

I have attached sample screenshot of email notification.Thanks

Tags (2)
0 Karma
1 Solution

lakshmisplunk
Explorer

Hello @rakesh44
though cron running as root, the script used for running log rotation script might be running as other user(non root). /var/log usually owned by root.
I have my own VM running locally, have two users root, lkoppolu. With lkoppolu I cant even access /var/log. change permissions for the user. It will work

View solution in original post

0 Karma

lakshmisplunk
Explorer

Hello @rakesh44
though cron running as root, the script used for running log rotation script might be running as other user(non root). /var/log usually owned by root.
I have my own VM running locally, have two users root, lkoppolu. With lkoppolu I cant even access /var/log. change permissions for the user. It will work

0 Karma

richgalloway
SplunkTrust
SplunkTrust

These are not Splunk messages. Consider asking about them on Stack Overflow or a similar forum.
Only you and your team can determine if the messages are important - what's unimportant to some may be critical to others.
If you decide to ignore the messages we can help you with that.

---
If this reply helps you, Karma would be appreciated.
0 Karma

Kawtar
Path Finder

Hello @rakesh44
Did you see in your application, in tab ALERTS if there is activated alert and check the actions , it can be email action somewhere?

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...