Installation

installing splunk on Kali VM UTM (mac m1)

lolo1913
Observer

hello , I am Masterschool student and trying to install Splunk on my VM and it doesn t work, anyone can help thank youCapture d’écran 2023-11-22 à 10.22.27.png

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

as you have Mac with Apple silicon and you are trying to install Splunk into linux which are running in Mx it didn't work until Splunk (hopeful) will deliver ARM splunk version for us. You can run Splunk on Apple Silicon only in macOS with rosetta2.

I have heard some rumours that you can use docker with somehow to use linux x86_64 binaries too, but haven't seen or used it by myself.

r. Ismo

0 Karma

richgalloway
SplunkTrust
SplunkTrust

I run x86_64 Splunk on my M2 Mac.  MacOS automatically translates the instructions.

---
If this reply helps you, Karma would be appreciated.
0 Karma

Ivan1
New Member

Same (Masterschool student) , so if I understand I can run the enterprise version on MAC OS and a forwarder on the kali VM? So I can practise?

0 Karma

isoutamo
SplunkTrust
SplunkTrust
I think so. I haven’t try by myself those ARM based Linux UFs if those are working also in KALI.
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Yes you can run it on your macOS but cannot run it on e.g. vmware Linux VMs (like this Kali linux) which is based on ARM.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

Don't want to sound too harsh, but please try to read the installation guide and understand what you're doing.

From the screenshot history it shows clearly that you're copy-pasting blindly quasi-random commands in hope of them working. It won't work that way. The only thing you can achieve is breaking your system completely.

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Please elaborate on "it doesn't work".  Which command in the provided list is failing?  What makes you think it's not working?  What error message(s) do you see?  What documentation are you following?  Have you tried installing Splunk directly on your Mac without a VM?

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...