Eric's profileEric L. GolpePhotosBlogListsMore Tools Help

Blog


    January 08

    SharePoint Server Setup Accounts

    I've been asked lately what accounts I generally use for setting up SharePoint enterprise server farms.
    This is always a hot topic and everyone has their own conventions and thoughts on the matter.

    First and foremost, consult the guidance available at http://technet.microsoft.com/en-us/library/cc263445.aspx for your specific configuration.

    That being said, here is what I normally do for 5-6 server setups (WFE/APP & Index/SQL):

    DOMAIN\MOSSSQLSVC (SQL Service Account)
    DOMAIN\MOSSSETUP (Setup Account)
    DOMAIN\MOSSSRVFARM (Server Farm Account)
    DOMAIN\MOSSWEBAPP0 (Generic App Pool Identity, add additional accounts as needed... )
    DOMAIN\MOSSCAAPPPOOL (Central Admin App Pool)
    DOMAIN\MOSSSSPAPPPOOL (SSP App Pool)
    DOMAIN\MOSSSSPSVC (SSP Service Account)
    DOMAIN\MOSSSRCHCA (External or special Content Access)
    DOMAIN\MOSSSRCHSVC (Search Service)
    DOMAIN\MOSSSRCHSVCCA (Search Service Content Access)
    DOMAIN\WSSSRCHSVC (WSS Search Service)
    DOMAIN\WSSSRCHSVCCA (WSS Search Service Content Access)
    DOMAIN\MOSSLDAPSVC (Profile Import Account)
    DOMAIN\MOSSEXCELSVC (Excel Services)

    There you have it.. 14 accounts! Usually all set to some sort of enormously cryptic strong passwords I always forget.  If your not using excel services or crawling external content, you can usually thin it down 2 accounts.

    Comments

    Please wait...
    Sorry, the comment you entered is too long. Please shorten it.
    You didn't enter anything. Please try again.
    Sorry, we can't add your comment right now. Please try again later.
    To add a comment, you need permission from your parent. Ask for permission
    Your parent has turned off comments.
    Sorry, we can't delete your comment right now. Please try again later.
    You've exceeded the maximum number of comments that can be left in one day. Please try again in 24 hours.
    Your account has had the ability to leave comments disabled because our systems indicate that you may be spamming other users. If you believe that your account has been disabled in error please contact Windows Live support.
    Complete the security check below to finish leaving your comment.
    The characters you type in the security check must match the characters in the picture or audio.

    To add a comment, sign in with your Windows Live ID (if you use Hotmail, Messenger, or Xbox LIVE, you have a Windows Live ID). Sign in


    Don't have a Windows Live ID? Sign up

    Trackbacks

    The trackback URL for this entry is:
    http://egolpe.spaces.live.com/blog/cns!49B81E4C0E5BD190!1071.trak
    Weblogs that reference this entry
    • None