O365-EX-000033 - Files failing file validation must be opened in Excel in Protected view mode and disallow edits.

Information

This policy setting controls how Office handles documents when they fail file validation.

If you enable this policy setting, you can configure the following options for files that fail file validation:
- Block files completely. Users cannot open the files.
- Open files in Protected View and disallow edit. Users cannot edit the files. This is also how Office handles the files if you disable this policy setting.
- Open files in Protected View and allow edit. Users can edit the files. This is also how Office handles the files if you do not configure this policy setting.

If you disable this policy setting, Office follows the 'Open files in Protected View and disallow edit' behavior.

If you do not configure this policy setting, Office follows the 'Open files in Protected View and allow edit' behavior.

Solution

Set the policy value for User Configuration >> Administrative Templates >> Microsoft Excel 2016 >> Excel Options >> Security >> Trust Center >> Protected View >> Set document behavior if file validation fails to 'Enabled: Open in Protected View'.

Uncheck the 'Allow edit' check box.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Office_365_ProPlus_V3R1_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(4), CAT|II, CCI|CCI-001170, Rule-ID|SV-223342r961092_rule, STIG-ID|O365-EX-000033, STIG-Legacy|SV-108863, STIG-Legacy|V-99759, Vuln-ID|V-223342

Plugin: Windows

Control ID: c81b5747d47f4c0dbec0c45ccb70ea795abbf38dadecbf2f002e04e7bf0ba231