<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Service Accounts Archives - Blog IT</title>
	<atom:link href="https://blogit.create.pt/tag/service-accounts/feed/" rel="self" type="application/rss+xml" />
	<link>https://blogit.create.pt/tag/service-accounts/</link>
	<description>Create IT blogger community</description>
	<lastBuildDate>Thu, 10 Jan 2019 12:46:17 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.1</generator>
	<item>
		<title>SharePoint 2016 &#8211; Create Service Accounts using PowerShell script</title>
		<link>https://blogit.create.pt/fabiocarvalho/2017/02/20/sharepoint-2016-create-service-accounts-using-powershell-script/</link>
					<comments>https://blogit.create.pt/fabiocarvalho/2017/02/20/sharepoint-2016-create-service-accounts-using-powershell-script/#comments</comments>
		
		<dc:creator><![CDATA[Fábio Carvalho]]></dc:creator>
		<pubDate>Mon, 20 Feb 2017 23:46:01 +0000</pubDate>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[PowerShell]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[SharePoint]]></category>
		<category><![CDATA[Administration]]></category>
		<category><![CDATA[Service Accounts]]></category>
		<category><![CDATA[SharePoint 2010]]></category>
		<category><![CDATA[SharePoint 2013]]></category>
		<category><![CDATA[SharePoint 2016]]></category>
		<guid isPermaLink="false">http://blogit.create.pt/fabiocarvalho/?p=2381</guid>

					<description><![CDATA[<p>Hey Everyone!!! Today i will show you how can you create SharePoint 2016 Service Accounts using PowerShell script following the Best Practices. The script not only create all the accounts but also create the respectives OU (Organizational Unit): SharePoint Accounts SQL Accounts Service Accounts:  Name  Description  Local Rights  Domain Rights SP_Farm The server farm account is used [&#8230;]</p>
<p>The post <a href="https://blogit.create.pt/fabiocarvalho/2017/02/20/sharepoint-2016-create-service-accounts-using-powershell-script/">SharePoint 2016 &#8211; Create Service Accounts using PowerShell script</a> appeared first on <a href="https://blogit.create.pt">Blog IT</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hey Everyone!!!</p>
<p>Today i will show you how can you create <strong>SharePoint 2016 Service Accounts</strong> using <strong>PowerShell</strong> script following the <strong>Best Practices</strong>.</p>
<p>The script not only create all the accounts but also create the respectives <strong>OU</strong> (<strong>Organizational Unit</strong>):</p>
<ul>
<li>SharePoint Accounts</li>
<li>SQL Accounts</li>
</ul>
<p><strong><span style="color: #800000">Service Accounts:</span></strong></p>
<table border="0" width="400" cellspacing="0" cellpadding="2">
<tbody>
<tr>
<td valign="top" width="100"><strong><span style="color: #800000"> Name</span></strong></td>
<td valign="top" width="100"><strong><span style="color: #800000"> Description</span></strong></td>
<td valign="top" width="100"><strong><span style="color: #800000"> Local Rights</span></strong></td>
<td valign="top" width="100"><strong><span style="color: #800000"> Domain Rights</span></strong></td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_Farm</strong></td>
<td valign="top" width="100">The server farm account is used to perform the following tasks:<br />
-Configure and manage the server farm.<br />
-Act as the application pool identity for the SharePoint Central Administration Web site.<br />
-Run the Microsoft SharePoint Foundation Workflow Timer Service.</td>
<td valign="top" width="100">SecurityAdmin and DB_Creator rights on the SQL Instance</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_Admin</strong></td>
<td valign="top" width="100">The server farm account is used to perform the following tasks:<br />
-Setup<br />
-SharePoint Products Configuration Wizard</td>
<td valign="top" width="100">Local Administrator on all the SharePoint Servers. SecurityAdmin and DB_Creator rights on the SQL Instance</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_Pool</strong></td>
<td valign="top" width="100">The Pool account is used to run the Web Application Pools</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_Services</strong></td>
<td valign="top" width="100">The Services Account is used to run the Service Application Pool</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_Crawl</strong></td>
<td valign="top" width="100">The Default Content Access Account for the Search Service Application</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_Search</strong></td>
<td valign="top" width="100">Service Account to run the SharePoint Search “Windows Service”</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_UserProfiles</strong></td>
<td valign="top" width="100">The User Profile Synchronization Account</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_MySitePool</strong></td>
<td valign="top" width="100">Used for the My Sites Web Application</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_CacheSuperUser</strong></td>
<td valign="top" width="100">Object Cache Service Account. The goals of the object cache are to reduce the load on the computer on which SQL Server is running, and to improve request latency and throughput. These user account must be properly configured to ensure that the object cache works correctly.</td>
<td valign="top" width="100">None.<br />
SharePoint: Must be an account that has Full Control access to the Web application.</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_CacheSuperReader</strong></td>
<td valign="top" width="100">Object Cache Service Account. The goals of the object cache are to reduce the load on the computer on which SQL Server is running, and to improve request latency and throughput. These user account must be properly configured to ensure that the object cache works correctly.</td>
<td valign="top" width="100">None.<br />
SharePoint: Must be an account that has Full Read access to the Web application</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>WF_Service</strong></td>
<td valign="top" width="100">WorkFlow Manager Service Account</td>
<td valign="top" width="100">Local Administrator and SysAdmin rights on the SQL instance.</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_MySitePool</strong></td>
<td valign="top" width="100">Used for the My Sites Web Application</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_VisioUser</strong></td>
<td valign="top" width="100">Visio Unattended ID</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_ExcelUser</strong></td>
<td valign="top" width="100">Excel Unattended ID</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SP_PerfPointUser</strong></td>
<td valign="top" width="100">Performance Point Unattended ID</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SQL_Admin</strong></td>
<td valign="top" width="100">SQL Admin on the SQL Server. Used to Install the SQL Server.</td>
<td valign="top" width="100">Local Administrator on the SQL Server</td>
<td valign="top" width="100">Domain User</td>
</tr>
<tr>
<td valign="top" width="100"><strong>SQL_Services</strong></td>
<td valign="top" width="100">It is the service account for the following SQL Server services: MSSQLSERVER SQLSERVERAGENT</td>
<td valign="top" width="100">None</td>
<td valign="top" width="100">Domain User</td>
</tr>
</tbody>
</table>
<p><strong><span style="color: #800000"><br />
Script:</span></strong></p>
<pre class="brush: bash; title: ; notranslate"> 

$mydom = (get-addomain).distinguishedname 
$password = &quot;pass@word1&quot; | ConvertTo-SecureString -AsPlainText -Force 

$ouNameSP = &quot;SharePoint Accounts&quot;
$oudnSP = &quot;OU=$ounameSP,$mydom&quot; 

$ouNameSQL = &quot;SQL Accounts&quot; 
$oudnSQL = &quot;OU=$ounameSQL,$mydom&quot; 

#----------------------------&gt; Organizational Unit &lt;---------------------------- 

New-ADOrganizationalUnit -Name $OUNameSP -Path $mydom 
Write-Host &quot;OU $OUNameSP Created&quot; -foregroundcolor green 

New-ADOrganizationalUnit -Name $OUNameSQL -Path $mydom 
Write-Host &quot;OU $OUNameSQL Created&quot; -foregroundcolor green 

#-----------------------------&gt; SharePoint 2016 &lt;-------------------------------

$usersArraySP = @(&quot;SP_Farm&quot;,&quot;SP_Admin&quot;,&quot;SP_Pool&quot;,&quot;SP_Services&quot;,&quot;SP_Crawl&quot;,&quot;SP_Search&quot;,
                  &quot;SP_UserProfiles&quot;,&quot;SP_PortalSuperReader&quot;,&quot;SP_CacheSuperUser&quot;,&quot;SP_VisioUser&quot;,
                  &quot;SP_PerfPointUser&quot;,&quot;WF_Service&quot;,&quot;SP_MySitePool&quot;,&quot;SP_PortalSuperUser&quot;)

foreach ($usp in $usersArraySP) {
        New-ADUser -Name $usp -DisplayName $usp -SamAccountName $usp -AccountPassword $password 
        -ChangePasswordAtLogon $false -PassThru -PasswordNeverExpires $true -Path $oudnSP 
        Write-Host &quot;$usp Created&quot; -foregroundcolor green
 }

#----------------------------------&gt; SQL &lt;--------------------------------------
$usersArraySQL = @(&quot;SQL_Admin&quot;,&quot;SQL_Service&quot;)

foreach ($usql in $usersArraySQL) {
       New-ADUser -Name $usql -DisplayName $usql -SamAccountName $usql -AccountPassword $password 
       -ChangePasswordAtLogon $false -PassThru -PasswordNeverExpires $true -Path $oudnSQL
       Write-Host &quot;$usql Created&quot; -foregroundcolor green
 }

</pre>
<p><img fetchpriority="high" decoding="async" class="size-full wp-image-2521 aligncenter" src="http://blogit.create.pt/fabiocarvalho/wp-content/uploads/sites/271/2017/02/SharePoint-Services-Accounts-2016.png" alt="" width="629" height="372" srcset="https://blogit.create.pt/wp-content/uploads/2017/02/SharePoint-Services-Accounts-2016.png 629w, https://blogit.create.pt/wp-content/uploads/2017/02/SharePoint-Services-Accounts-2016-300x177.png 300w" sizes="(max-width: 629px) 100vw, 629px" /></p>
<p><img decoding="async" class="wp-image-2531 aligncenter" src="http://blogit.create.pt/fabiocarvalho/wp-content/uploads/sites/271/2017/02/SQL-Services-Accounts.png" alt="" width="485" height="222" srcset="https://blogit.create.pt/wp-content/uploads/2017/02/SQL-Services-Accounts.png 612w, https://blogit.create.pt/wp-content/uploads/2017/02/SQL-Services-Accounts-300x137.png 300w" sizes="(max-width: 485px) 100vw, 485px" /></p>
<p>&nbsp;</p>
<p>Thanks</p>
<p><strong>Fábio Carvalho</strong><br />
SharePoint Consultant<br />
<strong>|create|</strong><span style="color: #ff0000"><strong>it</strong></span><strong>|</strong></p>
<p>The post <a href="https://blogit.create.pt/fabiocarvalho/2017/02/20/sharepoint-2016-create-service-accounts-using-powershell-script/">SharePoint 2016 &#8211; Create Service Accounts using PowerShell script</a> appeared first on <a href="https://blogit.create.pt">Blog IT</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blogit.create.pt/fabiocarvalho/2017/02/20/sharepoint-2016-create-service-accounts-using-powershell-script/feed/</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
			</item>
	</channel>
</rss>
