Skip to content

Microsoft Office 365 ProPlus Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000605

    <GroupDescription></GroupDescription>
    Group
  • Outlook must be configured to allow retrieving of Certificate Revocation Lists (CRLs) always when online.

    &lt;VulnDiscussion&gt;This policy setting controls how Outlook retrieves Certificate Revocation Lists to verify the validity of certificates. Certi...
    Rule Medium Severity
  • SRG-APP-000516

    <GroupDescription></GroupDescription>
    Group
  • The Outlook Security Mode must be enabled to always use the Outlook Security Group Policy.

    &lt;VulnDiscussion&gt;This policy setting controls which set of security settings are enforced in Outlook. If you enable this policy setting, you c...
    Rule Medium Severity
  • SRG-APP-000207

    <GroupDescription></GroupDescription>
    Group
  • The ability to demote attachments from Level 2 to Level 1 must be disabled.

    &lt;VulnDiscussion&gt;This policy setting controls whether Outlook users can demote attachments to Level 2 by using a registry key, which will allo...
    Rule Medium Severity
  • SRG-APP-000207

    <GroupDescription></GroupDescription>
    Group
  • The display of Level 1 attachments must be disabled in Outlook.

    &lt;VulnDiscussion&gt;This policy setting controls whether Outlook blocks potentially dangerous attachments designated Level 1. Outlook uses two le...
    Rule Medium Severity
  • SRG-APP-000207

    <GroupDescription></GroupDescription>
    Group
  • Level 1 file attachments must be blocked from being delivered.

    &lt;VulnDiscussion&gt;This policy setting controls whether Outlook users can demote attachments to Level 2 by using a registry key, which will allo...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules