This is an archive version of the document. To get the most up-to-date information, see the current version.

Required Permissions

In this article

    The following table lists required permissions for user accounts to back up and restore Microsoft SharePoint data.

    Operation

    Required Roles and Permissions

    Backup

    For more information, see:

    Restore to on-premises Microsoft SharePoint from backups created by Veeam Backup & Replication and Veeam Backup for Microsoft Office 365

    To restore data to on-premises SharePoint, make sure to configure user accounts as follows:

    • The account must be granted Full Control to connect to the target SharePoint server.
    • The account must be assigned either the Site Administrator or System Account role to restore user permissions.
    • If permissions of items being restored are inherited from the parent one, the account must be granted Full Control.
    • If permissions of items being restored are not inherited from the parent one and items being restored replace the existing ones, the account must be granted Contribute and Full Control.

    Restore to Microsoft Office 365 from backups created by Veeam Backup for Microsoft Office 365

    To restore data to SharePoint Online, make sure to configure user accounts as follows:

    • The account must be granted the SharePoint Administrator role.
    • The account must be granted the Site Collection Administrator role.

    Consider the following:

    • The current account can only be used to access a local staging server. To connect to a remote server, use appropriate authentication credentials to access that server.
    • The account requires the sysadmin fixed server role on a staging Microsoft SQL server.
    • For ADFS as an authentication provider:
    • When using Windows Authentication, you can use both you current account or provide another account.
    • When using Forms Authentication, the current account cannot be used.