To perform backups and restores, NetBackup must know the user name and password of the account for the SharePoint Administrator. NetBackup also requires this information so you can browse for SharePoint objects when you create a backup policy. NetBackup validates the user name and password you provide.
This account must meet the following requirements:
The logon account you use for backups and restores of SharePoint Server data must have local administrative rights on the servers where the SharePoint components are installed.
The logon account should have the "Replace process level token" local security privilege on the servers which have the content of the SharePoint farm. This privilege is necessary since the NetBackup agent logs on as the SharePoint user when it accesses data. After this local security policy privilege is allowed for the account, run gpupdate /Force (group policy update) for this change to take effect.
Front-end servers and back-end hosts need to have certain privileges. The back-end client has to have registry access to the front-end server.
(SharePoint 2007 and earlier) The credentials of the logon account that is used for backups and restores of the Single Sign-on database can be the account name. Or the credentials can be a member of the group for that account. (See the "Account name" box in the . These settings are located on the page that is in SharePoint Server.)
Internet Information Services (IIS) rights can affect database backups and restores. Ensure that the logon account that is used for backups and restores has rights to access the IIS sites. Integrated Windows Security should be enabled within the IIS rights.