Installation

Why am I receiving zsh: exec format error while installing Splunk with Kali Linux VM?

kevissadev
Loves-to-Learn

I keep getting this error when trying to start splunk, can anyone assist me? I am trying to install splunk within Kali Linux VM

 

zsh: exec format error: ./splunkzsh: exec format error: ./splunk

 

 

Labels (2)
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Splunk server is supported only in intel/amd platforms in linux. If you have e.g. ARM then there haven't any working version for it (only Apple M1 rosetta2 can used on macOS). ARM version can found only for UF not for server.

0 Karma

kevissadev
Loves-to-Learn

So does this mean I cannot install Splunk through the Kali Linux VM since I am using A1 chip with macbook?

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Unfortunately that's is the current situation. Those virtualisation softwares cannot use macOS's Rosetta2 layer. There is idea to port splunk also to AARM, but I thing that there is not enough votes for it yet?

https://ideas.splunk.com/ideas/EID-I-515 seems to be a future prospect, so we are willing more votes for it to bring it up on pile 😉

r. Ismo

0 Karma

Stefanie
Builder

@kevissadev ,

Which version of the Splunk software did you install? For Linux there's a few different versions you can download. If you used the 64-bit tgz maybe try the deb version? 

Within the Linux world that error pops up when the executable was compiled to work on a different distro. 

 

kevissadev
Loves-to-Learn

I Installed the Linux_64.tgz version to my Kali Linux VM. I have a Macbook Pro A1 if that helps. Any suggestions?

0 Karma

Stefanie
Builder

There isn't a supported way to install Splunk Enterprise on unsupported hardware.

Even if you were able to get Splunk to start, it's not compatible and would likely have many unexpected problems. 

Maybe a better solution would be to try running Splunk in a Docker container? 
I've never tried it so its just a suggestion. https://github.com/Splunk/docker-Splunk 

0 Karma

kevissadev
Loves-to-Learn

Can you let me know what exactly isn’t compatible? Is it the Macbook with A1 processor or Kali Linux VM I am using? Only asking because if I need to get another laptop I can do that do.

0 Karma

kevissadev
Loves-to-Learn

M1 chip*

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...

Upgrade Prep for 10.4, Network Observability Deep Dives, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Splunk Developer Day announcements: AI agents, MCP tools, Forecasting, and Custom ...

Splunk Developer Day was packed with product and platform updates for developers building in the AI ...