Installation

Does splunk Enterprise support Debian distribution?

kyoshiike
Explorer

Folks,

Please clarify if my understanding is correct or not.

We can see current system requirement of linux kernel version at below link.

https://docs.splunk.com/Documentation/Splunk/latest/Installation/Systemrequirements

From this page,  my understanding is splunk officially support "ANY" linux distribution that uses supported kernel version. So if I use Debian10 with kernel 5.4 or 4.x, I can use UF on that environment. Am I right?

Labels (1)
0 Karma
1 Solution

gcusello
SplunkTrust
SplunkTrust

Hi @kyoshiike,

yes: you can install both Splunk Enterprise or Splunk Universal Forwarder on any Linux distribution using kernel 4.x or 5.x.

In my experience, I used both the above products on all the Linux distributions and I found some problem only on AIX.

Ciao.

Giuseppe

View solution in original post

kyoshiike
Explorer

Many thnaks!!

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @kyoshiike,

yes: you can install both Splunk Enterprise or Splunk Universal Forwarder on any Linux distribution using kernel 4.x or 5.x.

In my experience, I used both the above products on all the Linux distributions and I found some problem only on AIX.

Ciao.

Giuseppe

gcusello
SplunkTrust
SplunkTrust

Hi @kyoshiike,

good for you, see next time!

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated 😉

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Splunk Search APIを使えば調査過程が残せます

   このゲストブログは、JCOM株式会社の情報セキュリティ本部・専任部長である渡辺慎太郎氏によって執筆されました。 Note: This article is published in both Japanese ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...