The Exchange local machine policy must require signed scripts.
An XCCDF Rule
Description
Scripts, especially those downloaded from untrusted locations, often provide a way for attackers to infiltrate a system. By setting machine policy to prevent unauthorized script executions, unanticipated system impacts can be avoided.
- ID
- SV-84433r1_rule
- Version
- EX13-EG-000075
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Open the Exchange Management Shell and enter the following command:
Set-ExecutionPolicy RemoteSigned