Validate the My Site Host and individual My Sites are on a dedicated Web application and separate URL domain (SharePoint Server)

APPLIES TO: yes-img-132013 no-img-162016 no-img-192019 no-img-seSubscription Edition no-img-sopSharePoint in Microsoft 365

Important

This health analyzer rule only applies to SharePoint 2010 as this was removed in KB4011601 for SharePoint Server 2013 and KB4011576 for SharePoint Server 2016.

Rule Name: Validate the My Site Host and individual My Sites are on a dedicated Web application and separate URL domain.

Summary: For performance and manageability reasons, we recommend that the My Site host and individual My Sites be deployed in a dedicated Web application. The owner of each individual My Site is the site collection administrator for that My Site. Having a dedicated Web application for the My Site host and individual My Sites reduces the security risk that a My Site owner can introduce same-domain scripting attacks on other sites that are hosted on the same Web application.

Cause: The My Site host and individual My Sites are deployed in the same Web application as the root site collection. If the User Profile Service was configured by using the Farm Configuration Wizard, this is how My Sites are set up.

Resolution: Set up a dedicated Web application

See also

Concepts

Configure My Sites in SharePoint Server