Skip to main content

Workflow Manager Accounts

The following table lists the Workflow Manager accounts and the required permissions.

Workflow Manager AccountProduct/Machine Requiring PrivilegesRequired Privileges
AMS_SYSTEM accountWorkflow Manager serverThe AMS\_SYSTEM account on the Workflow Manager server requires the following privileges: IIS_WPG group member—Must be a member of the local IIS_WPG group (or IIS_USRS) on the web server. Modify permissions on file share—Must have “modify” permissions on the Workflow Manager file share. Email permissions—Permission to send e-mail through the SMTP server. Active Directory query permission—Permission to query Active Directory. Local Administrators group member—If you will be calling any of the AdminStudio Platform APls in the iPlugin DLL, this account must be a member of the local Administrators group.
App Pool Identity AccountSQL ServerStarting with Workflow Manager 2013, if you configure Workflow Manager to connect to SQL Server with Windows Authentication, the domain account that you specify for the App Pool needs db\_reader , db\_writer , and execute permissions on the AdminStudio database. The Workflow Manager account does not require these permissions if connecting to SQL Server using an SQL Server user account (which already has db_reader, db_writer, and execute permissions).

See Also

AdminStudio Accounts

App Portal Accounts

FlexNet Manager Suite On Premises / FlexNet Manager Platform Accounts

System Center Configuration Manager Accounts