2.1.3.4 Ensure allow users to chat with others is set to disabled

Information

If you select 'Only in the same organization', users may still be able to chat with external users if they are added to channels or group chats with external users. If this option is required to be enabled, then choose 'Only in the same organization and specified domains' and specify the domains for better security.

Rationale:

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Go into the Zoom Admin Dashboard on the zoom website. Account Management -> IM Management -> IM Settings -> Security -> Allow users to chat with others, and ensure it is disabled.

See Also

https://workbench.cisecurity.org/files/2986

Item Details

Audit Name: CIS Zoom L2 v1.0.0

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, CSCv7|5.1

Plugin: Zoom

Control ID: 7de99da368180c2089ca414ffd0b37e666895eca699dbe9d90c442b587373ace