Enterprise Vault™ Using SQL Database Roles in Enterprise Vault, Compliance Accelerator, and Discovery Accelerator

Last Published:
Product(s): Enterprise Vault (14.1, 14.0, 12.5, 12.4, 12.3, 12.2, 12.1, 12.0)
  1. About this guide
    1.  
      Introducing this guide
  2. Using Enterprise Vault database roles
    1.  
      About Enterprise Vault database roles
    2. Configuring the Vault Service account for normal operations
      1.  
        Preparing to configure the Vault Service account
      2.  
        Configuring the Vault Service account's SQL login
      3.  
        Changing ownership of Enterprise Vault databases
      4.  
        Assigning the Vault Service account to EVRuntimeRole
      5.  
        Mapping the Vault Service account to the msdb system database
      6.  
        Creating EVMonitoringOperator in the msdb system database and assigning Vault Service account
      7.  
        Restarting Enterprise Vault services
    3.  
      Configuring the Vault Service account for operations that require elevated privileges
  3. Using Compliance Accelerator and Discovery Accelerator roles
    1.  
      About Compliance Accelerator and Discovery Accelerator database roles
    2. Configuring the Vault Service account for normal operations
      1.  
        Preparing to configure the Vault Service account
      2.  
        Configuring the Vault Service account's SQL login
      3.  
        Changing ownership of Compliance Accelerator and Discovery Accelerator databases
      4.  
        Assigning the Vault Service account to EVRuntimeRole
      5.  
        Mapping the Vault Service account to the msdb system database
      6.  
        Creating EVScheduledSearchOperator in the msdb system database and assigning the Vault Service account
      7.  
        Creating EVAnalyticsOperator in the msdb system database and assigning the Vault Service account
      8.  
        Restarting Compliance Accelerator and Discovery Accelerator services
    3.  
      Configuring the Vault Service account for operations that require elevated privileges

Changing ownership of Compliance Accelerator and Discovery Accelerator databases

After a normal installation or upgrade of Compliance Accelerator and Discovery Accelerator, the Vault Service account owns their databases. As a result, the Vault Service account is a member of the db_owner fixed database role, which is not required for normal daily operations.

Use the following procedure and run one of these queries against each Compliance Accelerator and Discovery Accelerator database, to assign ownership to another privileged user. Choose the procedure that is appropriate for your version of SQL Server.

use CADADatabase
GO
ALTER AUTHORIZATION ON
DATABASE:: CADADatabase TO [domain\privileged_user];

or

use CADADatabase
GO
EXECUTE sp_changedbowner 'domain\privileged_user'

Where:

CADADatabase is the name of the Compliance Accelerator or Discovery Accelerator database.

domain\privileged_user is the privileged user and the domain to which it belongs.

To change ownership of Compliance Accelerator and Discovery Accelerator databases

  1. Connect to the SQL server using SQL Server Management Studio.
  2. Click New Query and then enter the query in the query editor window.
  3. From the Query menu, click Execute, and then wait for the script to complete.
  4. Repeat this procedure for all the other Compliance Accelerator and Discovery Accelerator databases.