Installation

Why am I receiving zsh: exec format error while installing Splunk with Kali Linux VM?

kevissadev
Loves-to-Learn

I keep getting this error when trying to start splunk, can anyone assist me? I am trying to install splunk within Kali Linux VM

 

zsh: exec format error: ./splunkzsh: exec format error: ./splunk

 

 

Labels (2)
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Splunk server is supported only in intel/amd platforms in linux. If you have e.g. ARM then there haven't any working version for it (only Apple M1 rosetta2 can used on macOS). ARM version can found only for UF not for server.

0 Karma

kevissadev
Loves-to-Learn

So does this mean I cannot install Splunk through the Kali Linux VM since I am using A1 chip with macbook?

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Unfortunately that's is the current situation. Those virtualisation softwares cannot use macOS's Rosetta2 layer. There is idea to port splunk also to AARM, but I thing that there is not enough votes for it yet?

https://ideas.splunk.com/ideas/EID-I-515 seems to be a future prospect, so we are willing more votes for it to bring it up on pile 😉

r. Ismo

0 Karma

Stefanie
Builder

@kevissadev ,

Which version of the Splunk software did you install? For Linux there's a few different versions you can download. If you used the 64-bit tgz maybe try the deb version? 

Within the Linux world that error pops up when the executable was compiled to work on a different distro. 

 

kevissadev
Loves-to-Learn

I Installed the Linux_64.tgz version to my Kali Linux VM. I have a Macbook Pro A1 if that helps. Any suggestions?

0 Karma

Stefanie
Builder

There isn't a supported way to install Splunk Enterprise on unsupported hardware.

Even if you were able to get Splunk to start, it's not compatible and would likely have many unexpected problems. 

Maybe a better solution would be to try running Splunk in a Docker container? 
I've never tried it so its just a suggestion. https://github.com/Splunk/docker-Splunk 

0 Karma

kevissadev
Loves-to-Learn

Can you let me know what exactly isn’t compatible? Is it the Macbook with A1 processor or Kali Linux VM I am using? Only asking because if I need to get another laptop I can do that do.

0 Karma

kevissadev
Loves-to-Learn

M1 chip*

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Unlocking Unified Insights: New Gigamon Federated Search App for Splunk

In today’s data-heavy environment, organizations are caught in a data distribution dilemma. As data volumes ...

GA: New Data Management App in Splunk Platform

Streamlining Data Management: Introducing a unified experience in Splunk Managing data at scale shouldn’t feel ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...