Microsoft Outlook 2013 STIG
Rules, Groups, and Values defined within the XCCDF Benchmark
-
RPC encryption between Outlook and Exchange server must be enforced.
The remote procedure call (RPC) communication channel between an Outlook client computer and an Exchange server is not encrypted. If a malicious individual is able to eavesdrop on the network traff...Rule Medium Severity -
DTOO221 - Junk Mail UI
Group -
Automatically downloading enclosures on RSS must be disallowed.
This policy setting controls Outlook's ability to automatically download enclosures on RSS items.Rule Medium Severity -
DTOO274 - Internet with Safe Zones
Group -
Internet with Safe Zones for Picture Download must be disabled.
Malicious email senders can send HTML email messages with embedded Web beacons, which are pictures and other content from external servers that can be used to track whether recipients open the mess...Rule Medium Severity -
DTOO275 - Incl. Intranet with Safe Zone
Group -
Intranet with Safe Zones for automatic picture downloads must be configured.
Malicious email senders can send HTML email messages with embedded Web beacons, which are pictures and other content from external servers that can be used to track whether recipients open the mess...Rule Medium Severity -
DTOO240 - Level 1 Attachments
Group -
The ability to display level 1 attachments must be disallowed.
To protect users from viruses and other harmful files, Outlook uses two levels of security, designated Level 1 and Level 2, to restrict access to files attached to email messages or other items. Po...Rule Medium Severity -
DTOO270 - External Pictures & content
Group
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.