2.5.14.2.3 Ensure 'Do not provide Continue option on Encryption warning dialog boxes' is set to 'Enabled'

Information

This setting controls whether Outlook users are allowed to send e-mail messages after they see an encryption warning dialog.

The recommended state for this setting is: Enabled.

Rationale:

If users send messages after seeing an encryption error, it is likely that recipients will not be able to read the e-mail message.

Impact:

Enabling this setting can cause disruptions if Outlook users attempt to send messages with encryption errors, although the errors themselves would likely cause disruptions in most cases if the messages were allowed to be sent.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled:

User Configuration\Administrative Templates\Microsoft Outlook 2016\Security\Cryptography\Do not provide Continue option on Encryption warning dialog boxes

Default Value:

Disabled. (Outlook users see an encryption-related dialog box when attempting to send a message, they can choose to dismiss the warning and send the message anyway.)

See Also

https://workbench.cisecurity.org/benchmarks/12129

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-8(1)

Plugin: Windows

Control ID: f58f14b5e70e60fac8dd95e54acb28b4f0e13404b1abdd81fad219d81e05e676