Installation

SOAR (Phantom) Installation in existing server with RPM

Santhosh
New Member

Hi Everyone,

I spinned up a new machine(VM) in Azure and trying to install the phantom (SOAR) using RPM file. 

So I have partitioned & mounted 700 GB to /Opt and 5 GB to /tmp directory.

While installing the package, I am getting below error. Unable to find the answers for this.

 

Can someone help on this?

 

Failed to run install for git

Error: Package: git-2.16.1-1.el7.x86_64 (phantom-base)
Requires: perl(SVN::Ra)
Error: Package: git-2.16.1-1.el7.x86_64 (phantom-base)
Requires: perl(SVN::Delta)
Error: Package: git-2.16.1-1.el7.x86_64 (phantom-base)
Requires: perl(SVN::Core)

 

 

Thanks,

Santhosh Govindhan

0 Karma

tgendron_splunk
Splunk Employee
Splunk Employee

See KB 65 at  (https://my.phantom.us/kb/65/) There is a specific statement about additional modules “Note for AWS Users:
RPM's will look different. For AWS Red Hat images, the repo name for the packages in RedHat's rhel-7-server-optional-rpms will appear as: rhui-REGION-rhel-server-optional
These can be enabled in the /etc/yum.repos.d/redhat-rhui.repo file. “

Go into the repo file and set enable to 1 and retry the phantom install. 

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...