I’ve been working with chef and splunk a lot over the past year or so and both seem to suffer from a strange problem I haven’t been able to articulate very well, and certainly not concisely, but I’ll give it a go and see how she goes.
Chef lets you manage infrastructure via code, it’s a framework, not a solution which means you need to invest time to learn and then implement the solution that uses the framework.
Splunk is an incredibly powerful log indexer and data visualizer. Getting data into splunk is shockingly easy. Things get complicated when you get stuff in there and want to start digging around, see what you can see.
Both have excellent training and communities available which has been enormously helpful.
I’m going to post a bit about each tool as I struggle work at getting various tasks done.