Installation

installing splunk on Kali VM UTM (mac m1)

lolo1913
Observer

hello , I am Masterschool student and trying to install Splunk on my VM and it doesn t work, anyone can help thank youCapture d’écran 2023-11-22 à 10.22.27.png

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

as you have Mac with Apple silicon and you are trying to install Splunk into linux which are running in Mx it didn't work until Splunk (hopeful) will deliver ARM splunk version for us. You can run Splunk on Apple Silicon only in macOS with rosetta2.

I have heard some rumours that you can use docker with somehow to use linux x86_64 binaries too, but haven't seen or used it by myself.

r. Ismo

0 Karma

richgalloway
SplunkTrust
SplunkTrust

I run x86_64 Splunk on my M2 Mac.  MacOS automatically translates the instructions.

---
If this reply helps you, Karma would be appreciated.
0 Karma

Ivan1
New Member

Same (Masterschool student) , so if I understand I can run the enterprise version on MAC OS and a forwarder on the kali VM? So I can practise?

0 Karma

isoutamo
SplunkTrust
SplunkTrust
I think so. I haven’t try by myself those ARM based Linux UFs if those are working also in KALI.
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Yes you can run it on your macOS but cannot run it on e.g. vmware Linux VMs (like this Kali linux) which is based on ARM.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

Don't want to sound too harsh, but please try to read the installation guide and understand what you're doing.

From the screenshot history it shows clearly that you're copy-pasting blindly quasi-random commands in hope of them working. It won't work that way. The only thing you can achieve is breaking your system completely.

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Please elaborate on "it doesn't work".  Which command in the provided list is failing?  What makes you think it's not working?  What error message(s) do you see?  What documentation are you following?  Have you tried installing Splunk directly on your Mac without a VM?

---
If this reply helps you, Karma would be appreciated.
0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...

Splunkbase Unveils New App Listing Management Public Preview

Splunkbase Unveils New App Listing Management Public PreviewWe're thrilled to announce the public preview of ...

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Are you leveraging automation to its fullest potential in your threat detection strategy?Our upcoming Security ...