Skip to content

Microsoft Outlook 2013 STIG

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Outlook Object Model scripts must be disallowed to run for public folders.

    <VulnDiscussion>In Outlook, folders can be associated with custom forms or folder home pages that include scripts that access the Outlook obj...
    Rule Medium Severity
  • DTOO232 - OOM scripts for Shared Folders

    <GroupDescription></GroupDescription>
    Group
  • DTOO285 - Internet Calendar Integration

    <GroupDescription></GroupDescription>
    Group
  • Internet calendar integration in Outlook must be disabled.

    &lt;VulnDiscussion&gt;The Internet Calendar feature in Outlook enables users to publish calendars online (using the webcal:// protocol) and subscri...
    Rule Medium Severity
  • DTOO269 - Attachments to Secure Temporary Folder

    <GroupDescription></GroupDescription>
    Group
  • Attachments using generated name for secure temporary folders must be configured.

    &lt;VulnDiscussion&gt;The Secure Temporary Files folder is used to store attachments when they are opened in email. By default, Outlook generates a...
    Rule Medium Severity
  • DTOO280 - Authentication w/Exchange Svr

    <GroupDescription></GroupDescription>
    Group
  • Outlook must be configured to force authentication when connecting to an Exchange server.

    &lt;VulnDiscussion&gt;Exchange Server supports the Kerberos authentication protocol and NTLM for authentication. The Kerberos protocol is the more ...
    Rule Medium Severity
  • DTOO284 - Auto download attachments Internet Cal

    <GroupDescription></GroupDescription>
    Group
  • Automatic download of Internet Calendar appointment attachments must be disallowed.

    &lt;VulnDiscussion&gt;Files attached to Internet Calendar appointments could contain malicious code that could be used to compromise a computer. By...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules