Permissions
Depending on the scenario, the user accounts must have the permissions listed in the following subsections:
Permissions for Backup to Object Storage
If you plan to back up data to object storage, make sure that the user account that you use to connect to the object storage has the required permissions. The list of required permissions differs depending on the selected object storage:
If you plan to back up data to the Amazon S3 or S3 compatible storage, make sure the user account that you plan to use has the following permissions:
Identity-based permission:
{ |
Resource-based permissions:
{ |
TIP |
For information about required permissions for Amazon S3 storage with immutability enabled, see the Using Object Storage Repositories section in the Veeam Backup & Replication User Guide. |
If you plan to back up data to the Google Cloud storage, make sure the user account that you plan to use has the following permissions:
|
{
|
Permissions for Guest Processing
To use guest processing, depending on the application you need to back up, the user must have the permissions listed in the table below:
Application |
Required Permission |
|---|---|
|
To back up Microsoft SQL Server data, the user whose account you plan to use must be:
If you need to provide minimal permissions, the user account must be assigned the following roles and permissions:
|
|
Microsoft Active Directory |
Veeam Agent operates under the SYSTEM account, which has the necessary Administrator permissions by default; no additional permissions are required. |
Microsoft Exchange |
Veeam Agent operates under the SYSTEM account, which has the necessary Administrator permissions in Microsoft Exchange by default; no additional permissions are required. |
Oracle |
To back up Oracle data, the user account must be configured as follows:
|
Microsoft SharePoint |
To back up Microsoft SharePoint server, the user account must have the Farm Administrator role. To back up Microsoft SQL databases of the Microsoft SharePoint Server, the user account must have the same privileges as for the Microsoft SQL Server. |