Splunk® App for Microsoft Exchange (EOL)

Splunk App for Microsoft Exchange Reference

On October 22 2021, the Splunk App for Microsoft Exchange will reach its end of life. After this date, Splunk will no longer maintain or develop this product. The functionality in this app is migrating to a content pack in Data Integrations. Learn about the Content Pack for Microsoft Exchange.
This documentation does not apply to the most recent version of Splunk® App for Microsoft Exchange (EOL). For documentation on the most recent version, go to the latest release.

Outbound Messages

Exch 30 outbound.png

This page provides a snapshot of the rate of messages going out of your Exchange network. Outbound messages are messages that your Hub or Edge Transport servers receive via remote procedure call (RPC) and then send via SMTP. The dashboard uses Message Tracking logs to present this data.

The page has line charts that display both outgoing message rate (in messages per minute) and volume (in kilobytes per second).

It also has panels that display the top remote IP addresses and domains, as well as the top senders by message count and volume.

How to use this page

  • If you click on a node in either of the line charts, the Splunk App for Microsoft Exchange brings up the base search that produced the events at that point in time, along with the events that occurred at that point.
  • To learn about the activity of a top remote IP address, click the IP address's name in the "Top Remote IPs" list. The Splunk App for Microsoft Exchange loads the "Message Activity by IP Address" page for the selected IP address.
  • To learn about the activity of a top remote domain, click the domain's name in the "Top Remote Domains" list. The Splunk App for Microsoft Exchange loads the "Message Activity by Domain" page for the selected domain.
  • To learn about the activity of a top sender, click the recipient's name in the "Top Senders by Message Count" or "Top Senders by Volume" list. The Splunk App for Microsoft Exchange loads the "Message Activity by User" page for the selected user.
Last modified on 04 April, 2017
Inbound Messages   Internal Messages

This documentation applies to the following versions of Splunk® App for Microsoft Exchange (EOL): 3.4.2, 3.4.3, 3.4.4, 3.5.0, 3.5.1, 3.5.2, 4.0.0, 4.0.1, 4.0.2, 4.0.3


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters