Thursday, April 16, 2009

SharePoint Service Account Requirements

For SINGLESERVER installation which uses SQL Desktop Engine (\MICROSOFT##SSEE for WSS3.0 & \OFFICESERVERS for MOSS 2007)Network Service can be used as Service Account

For WFE or APPLICATION (Not available in WSS3.0) installation which uses SQL Server Full version SQL 2000+SP4 OR SQL 2005+SP2 We need a Domain Account

SharePoint can also be installed in a Workgroup where the Service Account is a Local Administrator account

SharePoint Service Account Requirements are as follows:

1. Domain Admin OR Domain User + Local Admin on SharePoint Server

2. In User Properties, Check Passoword never expires

To Change the password:
A. Change password from AD
B. Run Script in KB 934838 How to change service accounts and service account passwords in SharePoint Server 2007 and in Windows SharePoint Services
http://support.microsoft.com/kb/934838

3.Member of Local Groups all _WPG groups on SharePoint Server (For WSS3.0 & MOSS 2007: IIS_WPG, WSS_WPG, WSS_ADMIN_WPG & WSS_RESTRICTED_WPG)

4. Add Service Account on SQL Server Management Studio>SQL Instance>Security>Logins

5. Minimum Server Roles required :DBCREATOR & SECURITY ADMIN

6. DBOWNER for all SharePoint databases

We can use multiple accounts for multiple roles but they need to be configured with care
Detailed Information is available at following link:

Plan for administrative and service accounts (Office SharePoint Server)http://technet.microsoft.com/en-us/library/cc263445.aspx

No comments: