During a restore of GRT items to an Exchange 2010 Server, the restore job may fail with the error message below.
V-79-57344-905 - The resource credentials for the restore job were unable to create a role assignment for ApplicationImpersonation. Review the credentials to ensure that it has the rights that are required for ApplicationImpersonation.
Debug logs on the Client Access Server (CAS) show the following error:
[fsys\mb2] - Checking Permissions for EWS
[fsys\shared] - EnsureEwsPermissions returned 80131501
[fsys\mb2] - FATAL: failed to aquire EWS ApplicationImpersonation rights
[ndmp\loops] - Error: CreateObj returns extended error e000038
3. Verify the account used for the restore is using the User Princible Name (UPN) instead of the User Logon Name.
UPN Example: firstname.lastname@example.org
User Logon Name example: domain\user
To verify the account is using the UPN
- Go to Network - Logon Accounts from within Backup Exec
- Select the account being used for the restore and click Edit
- In the User name box verify the account is listed as user@domain. If it is not, change the User name to the UPN.
- In the restore job, under Resource Credentials verify the Logon account is set to use the account with the User Name of the UPN.