DISA_STIG_Microsoft_Outlook_2010_v1r13.audit for DISA Microsoft Outlook 2010 STIG v1r13 STIG | |
DTOO104 - Outlook - Disable user name and password syntax from being used in URLs | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO111 - Outlook - Enabling IE Bind to Object functionality must be present. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO117 - Outlook - Saved from URL mark to assure Internet zone processing must be enforced. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO123 - Outlook - Navigation to URL's embedded in Office products must be blocked. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO124 - Outlook - Scripted Window Security must be enforced. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO126 - Outlook - Add-on Management functionality must be allowed. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO128 - Outlook - Data Execution Prevention must be enforced. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO129 - Outlook - Links that invoke instances of IE from within an Office product must be blocked. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO132 - Outlook - File Downloads must be configured for proper restrictions. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO209 - Outlook - Protection from zone elevation must be enforced. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO211 - Outlook - ActiveX Installs must be configured for proper restriction. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO214 - Outlook - Read EMail as plain text must be enforced. | CONFIGURATION MANAGEMENT |
DTOO215 - Outlook - Read signed email as plain text must be enforced. | CONFIGURATION MANAGEMENT |
DTOO216 - Outlook - Publishing calendars to Office Online must be prevented. | CONFIGURATION MANAGEMENT |
DTOO217 - Outlook - Publishing to a Web Distributed and Authoring (DAV) server must be prevented. | CONFIGURATION MANAGEMENT |
DTOO218 - Outlook - Level of calendar details that a user can publish must be restricted. | CONFIGURATION MANAGEMENT |
DTOO219 - Outlook - Access restriction settings for published calendars must be configured. | CONFIGURATION MANAGEMENT |
DTOO220 - Outlook - Upload method for publishing calendars to Office Online must be restricted. | CONFIGURATION MANAGEMENT |
DTOO221 - Outlook - Junk Mail UI must be configured. | CONFIGURATION MANAGEMENT |
DTOO223 - Outlook - Trust EMail from senders in receiver's contact list must be enforced. | CONFIGURATION MANAGEMENT |
DTOO224 - Outlook - Recipients of sent email must be unable to be added to the safe sender's list. | CONFIGURATION MANAGEMENT |
DTOO225 - Outlook - Outlook Dial-up options to Warn user before allowing switch in dial-up access must be configured. | IDENTIFICATION AND AUTHENTICATION |
DTOO226 - Outlook - Dial-up and Hang up Options for Outlook must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO227 - Outlook - Digital signatures must be allowed. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO228 - Outlook - Plain Text Options for outbound email must be configured - Message Plain Format Mime | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO228 - Outlook - Plain Text Options for outbound email must be configured - PlainWrapLen | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO229 - Outlook - Outlook must be enforced as the default email, calendar, and contacts program. | CONFIGURATION MANAGEMENT |
DTOO230 - Outlook - Folders in non-default stores, set as folder home pages, must be disallowed. | CONFIGURATION MANAGEMENT |
DTOO231 - Outlook - Dragging Unicode eMail messages to file system must be disallowed. | CONFIGURATION MANAGEMENT |
DTOO232 - Outlook - Outlook Object Model scripts must be disallowed to run for shared folders. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO233 - Outlook - Outlook Object Model scripts must be disallowed to run for public folders. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO234 - Outlook - Active X One-Off forms must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO236 - Outlook - The Add-In Trust Level must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO237 - Outlook - The 'remember password' for internet e-mail accounts must be disabled. | IDENTIFICATION AND AUTHENTICATION |
DTOO238 - Outlook - Users customizing attachment security settings must be prevented. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO239 - Outlook - Outlook Security Mode must be configured to use Group Policy settings. | CONFIGURATION MANAGEMENT |
DTOO240 - Outlook - The ability to display level 1 attachments must be disallowed. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO241 - Outlook - Action to demote an EMail Level 1 attachment to Level 2 must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO242 - Outlook - Prompting behavior for Level 1 attachments on sending must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO243 - Outlook - Level 1 attachment close behaviors must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO244 - Outlook - Level 1 file extensions must be blocked and not removed. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO245 - Outlook - Level 2 file extensions must be blocked and not removed. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO246 - Outlook - Scripts in One-Off Outlook forms must be disallowed. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO247 - Outlook - Custom Outlook Object Model (OOM) action execution prompts must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO249 - Outlook - Object Model Prompt for programmatic email send behavior must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO250 - Outlook - Object Model Prompt behavior for programmatic address books must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO251 - Outlook - Object Model Prompt behavior for programmatic access of user address data must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO252 - Outlook - Object Model Prompt behavior for Meeting and Task Responses must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
DTOO253 - Outlook - Object Model Prompt behavior for the SaveAs method must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |