Getting Data In

Splunk Installation error - "Splunk Enterprise Setup Wizard ended prematurely"

monteirolopes
Communicator

Hi,

I am trying to install Splunk 6.6.2 on Windows 2012 R2 x64 on disk 😧 (empty) and I getting error "Splunk Enterprise Setup Wizard ended prematurely". If I choose disk C: the installation works!

I tried some answers (https://answers.splunk.com/answers/232400/why-am-i-getting-error-splunk-enterprise-setup-wiz-2.html) but it doesn't work.

My user is admin.

Best regards,
Lopes.

0 Karma

woodcock
Esteemed Legend

This is ALWAYS a permission problem. Splunk cannot write to the disk.

0 Karma

monteirolopes
Communicator

I've used a local administrator and / or a domain administrator, and the problem still persists.
Can the issue be related to the disc type?

0 Karma

skoelpin
SplunkTrust
SplunkTrust

No, it's not a disk issue

0 Karma

monteirolopes
Communicator

I found this log in my temp folder:

"unable to write 'random state'

e is 65537 (0x10001)

writing RSA key"

0 Karma

skoelpin
SplunkTrust
SplunkTrust

It could be a permissions issue.. You should download and run procmon and watch what happens as you try to install Splunk

monteirolopes
Communicator

I've used a local administrator and / or a domain administrator, and the problem still persists.

0 Karma

skoelpin
SplunkTrust
SplunkTrust

A simple solution would be not to run on Windows.. You need to run procmon while installing to find out the issue

0 Karma

monteirolopes
Communicator

Is there a specific keyword for the search? I running procmon but I do not understand much about processes

0 Karma

skoelpin
SplunkTrust
SplunkTrust

You should be looking for any errors that occur. If you still cant get it working, you should open a ticket with support. They will want to review your procmon logs

Please close out the question if this answered your initial question

0 Karma
Get Updates on the Splunk Community!

Aligning Observability Costs with Business Value: Practical Strategies

 Join us for an engaging Tech Talk on Aligning Observability Costs with Business Value: Practical ...

Mastering Data Pipelines: Unlocking Value with Splunk

 In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...

Splunk Up Your Game: Why It's Time to Embrace Python 3.9+ and OpenSSL 3.0

Did you know that for Splunk Enterprise 9.4, Python 3.9 is the default interpreter? This shift is not just a ...