HP Data Protector best practices for backing up and restoring Microsoft SharePoint Server 2010

5
Figure 1: Specifying impersonation information in Data Protector GUI
As a result, the Data Protector Inet service will impersonate the Microsoft SharePoint Server 2007/2010
farm administrator Windows domain user account and consequently start the integration agent under
that user account although it will run under the Windows local SYSTEM user account.
NOTE
If Microsoft SQL Server systems are configured in a cluster, you must restart the Data Protector Inet
service under a Windows domain user account on all cluster nodes. This account does not need to be
the Microsoft SharePoint Server 2007/2010 farm administrator, but must be given the following
Windows operating system Security Policy privileges:
Impersonate a client after authentication
Replace a process level token
To configure the Data Protector Inet service impersonation, firstly configure the Microsoft SharePoint
Server 2007/2010 farm administrator Windows domain user account for the Data Protector user
impersonation functionality (on all Microsoft SharePoint Server 2007/2010 systems and on all Microsoft
SQL Server systems, run the omniinetpasswd command. For details, see the HP Data Protector Zero
Downtime Backup Integration Guide). Secondly, specify the Microsoft SharePoint Server 2007/2010 farm
administrator user name in the backup specification or in the restore wizard.