@mfrost8 - The "Splunk for Windows Infrastucture app" documentation seems to assume the entire environment (SH, IDX, and UVF) is running on windows, so that's why it says put the Add-on everywhere. I also see it does not show the AD components are optional, but I don't see any dependance on this, so don't think they are required.
I have a Linux SH and IDX, so I did not install the windows add-on there, only on the windows forwarder, and the Infrastucture app on the SH. So no, I don't think you need it anywhere but your windows forwarders! I also don't have AD or DNS components installed.
The App loads fine for me on the linux SH, but it's missing the AD info, which is expected. No weirdness with the interface like you described. It should just open right up to the guided setup.
I think you have something else going on with the install of the infrastructure app on your SH, and it's not related to the AD/DNS components not being installed.
Perhaps the issue is related to your pooled search heads, and how the app is configured? Could you try deploying the app on just one of your search heads locally to see if that makes a difference? Seems unlikely but maybe worth a try?
Another possibility is this is a browser related issue? Could you try different web browsers?
You could also look at the logs on your SH to see if you notice anything pertinent when reproducing the behavior.
... View more