Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

A non-personal account is created for a service, application or a group to gain access to a resource. The manager /and or owner ? of the account is responsible for the use of the account and (wording about renewals, expirations, etc)administrative responsibilities such as responding to renewals when necessary.    

Service Accounts

Service accounts are accounts that are designated for use for a particular service or application and have elevated privileges.  A service account will be created for each function for a particular service or application, and should only be used for that purpose. The account should abide by the rules of least privilege as described by NIST.  These accounts will be created and maintained in the OU Admin in Active Directory and can only be acted on by Domain Admins. In 389 these accounts are to be stored in the OU People.

...