Splunk Enterprise

How to set up a lab environment for Splunk Enterprise?

Manju_Splunk
New Member

Hi,

I would like to create an environment to practice Splunk enterprise as standalone Deployment  in Windows and I would also like to know that where to run the commands  as we do for linux

Labels (1)
Tags (1)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Depending on your windows build, you may be able to use WSL (Windows Subsystem for Linux) - I use it with an Ubuntu distribution. It can be a bit tricky to set up as the default networking set up is a bit flaky between modes 1 and 2 - I think I had to switch to 2 to set up ip addresses and then switch back to 1 for normal running. Not for the faint-hearted.

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Splunk is free to use on your Windows workstation.  Just download it from splunk.com and install it.

Use the Windows Command Prompt app for the CLI.  Remember to use ".\splunk.exe" instead of "./splunk" in commands.

---
If this reply helps you, Karma would be appreciated.
0 Karma

isoutamo
SplunkTrust
SplunkTrust

Another option which I haven't try by myself, but have heard that it could work. Install linux subsystem on windows and then use it to run linux version. Not as easy solution than what @richgalloway told, but maybe it's closer for unix?

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...