Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
Rules, Groups, and Values defined within the XCCDF Benchmark
-
The applications built-in Malware Agent must be disabled.
Malicious code protection mechanisms include but are not limited to anti-virus and malware detection software. To minimize potential negative impact to the organization that can be caused by malici...Rule Medium Severity -
SRG-APP-000014
Group -
Exchange must use encryption for RPC client access.
This setting controls whether client machines are forced to use secure channels to communicate with the server. If this feature is enabled, clients will only be able to communicate with the server ...Rule Medium Severity -
SRG-APP-000014
Group -
SRG-APP-000014
Group -
SRG-APP-000033
Group -
Exchange must have authenticated access set to Integrated Windows Authentication only.
To mitigate the risk of unauthorized access to sensitive information by entities that have been issued certificates by DoD-approved PKIs, all DoD systems (e.g., networks, web servers, and web porta...Rule Medium Severity -
Exchange must have Administrator audit logging enabled.
Unauthorized or malicious data changes can compromise the integrity and usefulness of the data. Automated attacks or malicious users with elevated privileges have the ability to effect change using...Rule Medium Severity -
Exchange servers must use approved DoD certificates.
Server certificates are required for many security features in Exchange; without them, the server cannot engage in many forms of secure communication. Failure to implement valid certificates makes...Rule Medium Severity -
Exchange auto-forwarding email to remote domains must be disabled or restricted.
Attackers can use automated messages to determine whether a user account is active, in the office, traveling, and so on. An attacker might use this information to conduct future attacks. Verify Aut...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules