在 SharePoint Server 2013 中規劃 Excel Services 通用設定Plan Excel Services Global Settings in SharePoint Server 2013

摘要:了解如何選項選擇授權 (模擬或處理序帳戶) 以及加密 (IPsec 或 SSL) 適用於 Excel Services in SharePoint Server 2013。Summary: Learn how to choose authorization (impersonation or process account) and encryption (IPsec or SSL) options for Excel Services in SharePoint Server 2013.

當您部署 Excel Services 時,您需要規劃以下全域設定:When you deploy Excel Services, you need to plan for the following Global Settings:

如需設定這些設定的資訊,請參閱 < Manage Excel Services 通用設定 (SharePoint Server 2013)For information about configuring these settings, see Manage Excel Services global settings (SharePoint Server 2013).

適用於 Excel Services 檔案存取方法File access method for Excel Services

Excel Services 通用設定] 中有兩種檔案存取方式:模擬] 或 [處理序帳戶In Excel Services Global Settings, there are two options for file access method: Impersonation or Process account.

[模擬] 選項可讓執行緒以外的程序所擁有之記錄的內容的安全性內容中執行。選取 [模擬要求授權的使用者嘗試存取 UNC 和 HTTP 位置中所儲存的活頁簿時的 Excel Services]。選取此選項不會影響儲存在 SharePoint Server 2013 資料庫中的活頁簿。在前端網頁伺服器與 Excel Services 應用程式伺服器在不同的電腦執行大部分伺服器陣列部署,模擬需要 Kerberos 限制的委派。The Impersonation option enables a thread to run in a security context other than the context of the process that owns the thread. Select Impersonation to require Excel Services to authorize users when they try to access workbooks that are stored in UNC and HTTP locations. Selecting this option does not affect workbooks that are stored in SharePoint Server 2013 databases. In most server farm deployments in which front-end web servers and Excel Services application servers run on different computers, impersonation requires constrained Kerberos delegation.

處理序帳戶選項指定無法模擬使用者帳戶,並使用 Excel Services 從 UNC 共用或 HTTP 網站開啟活頁簿時的處理序帳戶。The Process Account option specifies that the user account is not impersonated, and the process account is used when Excel Services opens workbooks from UNC shares or HTTP Web sites.

適用於 Excel Services 連線加密Connection encryption for Excel Services

您可以使用網際網路通訊協定安全性 (IPsec) 或 Secure Sockets Layer (SSL) 加密 Excel Services 應用程式伺服器、 資料來源、 用戶端電腦與前端網頁伺服器之間的資料傳輸。根據預設,則不需要連線加密。如果您選擇需要連線加密,Excel Services 應用程式伺服器只會啟用用戶端電腦與前端網頁伺服器之間的資料傳輸 over SSL 連線。You can use Internet Protocol Security (IPsec) or Secure Sockets Layer (SSL) to encrypt data transmission among Excel Services application servers, data sources, client computers, and front-end web servers. By default, connection encryption is not required. If you choose to require connection encryption, the Excel Services application server will only enable data transmission between client computers and front-end web servers over SSL connections.

如果您決定需要加密的資料傳輸,您必須手動設定 IPsec 或 SSL。您可以同時啟用未加密前端網頁伺服器與 Excel Services 應用程式伺服器之間的連線需要用戶端電腦與前端網頁伺服器之間的加密的連線。If you decide to require encrypted data transmission, you will have to manually configure IPsec or SSL. You can require encrypted connections between client computers and front-end web servers while enabling connections that are not encrypted between front-end web servers and Excel Services application servers.