Submit a ticketCall us

WebinarVisual Monitoring Tactics: Getting More Log Search Value from SolarWinds Log & Event Manager with nDepth Webcast

Do things seem to make more sense when they are visualized? Are you an IT professional or security expert with a wish for more cybersecurity tools that provide an intuitive visual experience? Join Alexis Horn and Jamie Hynds from SolarWinds as they demonstrate how the nDepth feature in LEM can help make visualizing log search results a reality.

Register now.

Home > Success Center > Server & Application Monitor (SAM) > SAM Documentation > SAM 6.8 Administrator Guide > Additional SAM technology requirements > AppInsight for Exchange requirements and permissions

AppInsight for Exchange requirements and permissions

Table of contents
No headers

Updated: February 27, 2019

AppInsight for Exchange works only with the Mailbox Role, which is used for data storage. All other Exchange servers running different roles should use the Exchange application templates included with SAM if you intend to monitor them. Data is collected at the same default five minute polling interval as traditional application templates.

Supported versions

  • Microsoft Exchange Server 2010
  • Microsoft Exchange Server 2013
  • Microsoft Exchange Server 2016

Requirements and permissions

  • Local administrator permissions are needed for automatic configuration, but they are not needed for monitoring once configuration is complete.
  • To provide organization-wide capability, the service account (Domain User) needs to be a member of the View-Only Organization Management group. Membership to this group gives the user object read-only access to the entire Exchange environment, without providing any domain or local access on the Exchange server. It also prevents possible abuse by an unauthorized user accessing the account (e.g. modifying Exchange environment configuration, creating or deleting users, and so on.)
  • To gather information, the user object must be assigned the Mailbox Search management role within Exchange, and the account must be a member of the Local Administrators group.
    Note: For Exchange access, this is not required, but to modify Exchange and WinRM settings on the server, as well as to poll performance counters, this additional level of permission is required.
  • For Mailbox statistics, Hub Transport Servers need to be accessed via RPC.

PowerShell requirements

Make sure PowerShell is installed on the Orion Server. SAM supports PowerShell 2.0—5.x.

  • Exchange 2010 requires PowerShell 2.0 or later.
  • Exchange 2013 requires PowerShell 3.0 or later.
  • Permissions must be granted for PowerShell to be accessed. See Use PowerShell in SAM.
  • PowerShell 2.0 or later is required for Windows 2012 (regardless of Exchange version).

To learn about configuring PowerShell permissions, see Set PowerShell permissions for Exchange

Common configuration issues

Last modified