Installation

Why am I receiving zsh: exec format error while installing Splunk with Kali Linux VM?

kevissadev
Loves-to-Learn

I keep getting this error when trying to start splunk, can anyone assist me? I am trying to install splunk within Kali Linux VM

 

zsh: exec format error: ./splunkzsh: exec format error: ./splunk

 

 

Labels (2)
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Splunk server is supported only in intel/amd platforms in linux. If you have e.g. ARM then there haven't any working version for it (only Apple M1 rosetta2 can used on macOS). ARM version can found only for UF not for server.

0 Karma

kevissadev
Loves-to-Learn

So does this mean I cannot install Splunk through the Kali Linux VM since I am using A1 chip with macbook?

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Unfortunately that's is the current situation. Those virtualisation softwares cannot use macOS's Rosetta2 layer. There is idea to port splunk also to AARM, but I thing that there is not enough votes for it yet?

https://ideas.splunk.com/ideas/EID-I-515 seems to be a future prospect, so we are willing more votes for it to bring it up on pile 😉

r. Ismo

0 Karma

Stefanie
Builder

@kevissadev ,

Which version of the Splunk software did you install? For Linux there's a few different versions you can download. If you used the 64-bit tgz maybe try the deb version? 

Within the Linux world that error pops up when the executable was compiled to work on a different distro. 

 

kevissadev
Loves-to-Learn

I Installed the Linux_64.tgz version to my Kali Linux VM. I have a Macbook Pro A1 if that helps. Any suggestions?

0 Karma

Stefanie
Builder

There isn't a supported way to install Splunk Enterprise on unsupported hardware.

Even if you were able to get Splunk to start, it's not compatible and would likely have many unexpected problems. 

Maybe a better solution would be to try running Splunk in a Docker container? 
I've never tried it so its just a suggestion. https://github.com/Splunk/docker-Splunk 

0 Karma

kevissadev
Loves-to-Learn

Can you let me know what exactly isn’t compatible? Is it the Macbook with A1 processor or Kali Linux VM I am using? Only asking because if I need to get another laptop I can do that do.

0 Karma

kevissadev
Loves-to-Learn

M1 chip*

0 Karma
Get Updates on the Splunk Community!

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...