Deployment Architecture

Can't Install Splunk 6.2 on Amazon EC2 Linux

BrandSentiment
Explorer

I gave set up a Linux 64 instance on EC2. When I run-

wget -O splunk-6.2.0-237341-Linux-x86_64.tgz 'http://www.splunk.com/page/download_track?file=6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86_64.t...'

I get:

[ec2-user@ip-172-31-41-244 opt]$ sudo su
[root@ip-172-31-41-244 opt]# wget -O splunk-6.2.0-237341-Linux-x86_64.tgz 'http://www.splunk.com/page/download_track?file=6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86_64.t...'
--2014-11-09 08:33:24-- http://www.splunk.com/page/download_track?file=6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86_64.t...
Resolving www.splunk.com (www.splunk.com)... 204.107.141.40
Connecting to www.splunk.com (www.splunk.com)|204.107.141.40|:80... connected.
HTTP request sent, awaiting response... 302 Found
Location: /page/sign_up/splunk [following]
--2014-11-09 08:33:25-- http://www.splunk.com/page/sign_up/splunk
Connecting to www.splunk.com (www.splunk.com)|204.107.141.40|:80... connected.
HTTP request sent, awaiting response... 302 Found
Location: https://www.splunk.com/page/sign_up/splunk [following]
--2014-11-09 08:33:25-- https://www.splunk.com/page/sign_up/splunk
Connecting to www.splunk.com (www.splunk.com)|204.107.141.40|:443... connected.
HTTP request sent, awaiting response... 200 OK
Length: unspecified [text/html]
Saving to: ‘splunk-6.2.0-237341-Linux-x86_64.tgz’

[ <=>                                                                                  ] 79,132       468KB/s   in 0.2s   

2014-11-09 08:33:26 (468 KB/s) - ‘splunk-6.2.0-237341-Linux-x86_64.tgz’ saved [79132]

I then run

[root@ip-172-31-41-244 opt]# ls
aws splunk-6.2.0-237341-Linux-x86_64.tgz
[root@ip-172-31-41-244 opt]# tar xvzf splunk-6.2.0-237341-Linux-x86_64.tgz

gzip: stdin: not in gzip format
tar: Child returned status 1
tar: Error is not recoverable: exiting now
[root@ip-172-31-41-244 opt]#

Tried everything I can think of but can't seem to install 6.2.
Please can you help. It is driving me cray!

0 Karma
1 Solution

MuS
SplunkTrust
SplunkTrust

Hi BrandSentiment,

If I check the wget URL from the download page I get something like this:

wget -O splunk-6.2.0-237341-Linux-x86_64.tgz 'http://www.splunk.com/page/download_track?file=6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86_64.tgz&ac=test_modal_enterprise&wget=true&name=wget&platform=Linux&architecture=x86_64&version=6.2.0&product=splunk&typed=release'

running a test on this works perfect:

wget -O splunk-6.2.0-237341-Linux-x86_64.tgz 'http://www.splunk.com/page/download_track?file=6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86_64.tgz&ac=test_modal_enterprise&wget=true&name=wget&platform=Linux&architecture=x86_64&version=6.2.0&product=splunk&typed=release'
--2014-11-09 10:15:57--  http://www.splunk.com/page/download_track?file=6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86_64.t...
Resolving www.splunk.com (www.splunk.com)... 204.107.141.40
Connecting to www.splunk.com (www.splunk.com)|204.107.141.40|:80... connected.
HTTP request sent, awaiting response... 302 Found
Location: http://download.splunk.com/products/splunk/releases/6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86... [following]
--2014-11-09 10:15:58--  http://download.splunk.com/products/splunk/releases/6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86...
Resolving download.splunk.com (download.splunk.com)... 204.107.141.44
Connecting to download.splunk.com (download.splunk.com)|204.107.141.44|:80... connected.
HTTP request sent, awaiting response... 200 OK
Length: 89995592 (86M) [application/x-gzip]
Saving to: ‘splunk-6.2.0-237341-Linux-x86_64.tgz’

100%[=======================================================================================================>] 89,995,592   385KB/s   in 3m 57s 

2014-11-09 10:19:55 (371 KB/s) - ‘splunk-6.2.0-237341-Linux-x86_64.tgz’ saved [89995592/89995592]

cheers, MuS

View solution in original post

MuS
SplunkTrust
SplunkTrust

Hi BrandSentiment,

If I check the wget URL from the download page I get something like this:

wget -O splunk-6.2.0-237341-Linux-x86_64.tgz 'http://www.splunk.com/page/download_track?file=6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86_64.tgz&ac=test_modal_enterprise&wget=true&name=wget&platform=Linux&architecture=x86_64&version=6.2.0&product=splunk&typed=release'

running a test on this works perfect:

wget -O splunk-6.2.0-237341-Linux-x86_64.tgz 'http://www.splunk.com/page/download_track?file=6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86_64.tgz&ac=test_modal_enterprise&wget=true&name=wget&platform=Linux&architecture=x86_64&version=6.2.0&product=splunk&typed=release'
--2014-11-09 10:15:57--  http://www.splunk.com/page/download_track?file=6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86_64.t...
Resolving www.splunk.com (www.splunk.com)... 204.107.141.40
Connecting to www.splunk.com (www.splunk.com)|204.107.141.40|:80... connected.
HTTP request sent, awaiting response... 302 Found
Location: http://download.splunk.com/products/splunk/releases/6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86... [following]
--2014-11-09 10:15:58--  http://download.splunk.com/products/splunk/releases/6.2.0/splunk/linux/splunk-6.2.0-237341-Linux-x86...
Resolving download.splunk.com (download.splunk.com)... 204.107.141.44
Connecting to download.splunk.com (download.splunk.com)|204.107.141.44|:80... connected.
HTTP request sent, awaiting response... 200 OK
Length: 89995592 (86M) [application/x-gzip]
Saving to: ‘splunk-6.2.0-237341-Linux-x86_64.tgz’

100%[=======================================================================================================>] 89,995,592   385KB/s   in 3m 57s 

2014-11-09 10:19:55 (371 KB/s) - ‘splunk-6.2.0-237341-Linux-x86_64.tgz’ saved [89995592/89995592]

cheers, MuS

BrandSentiment
Explorer

Hi MuS,

I have done the same and it is working fine now. Many thanks

Jonathan

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...