UCF STIG Viewer Logo

Microsoft Exchange 2010 Mailbox Server Role


Overview

Date Finding Count (16)
2012-05-31 CAT I (High): 0 CAT II (Med): 8 CAT III (Low): 8
STIG Description
The Microsoft Exchange Server 2010 STIGs cover four of the five roles available with Microsoft Exchange Server 2010, plus core Exchange Server 2010 global requirements. The Email Services Policy STIG must also be reviewed for each site hosting email services. The core Exchange Server guidance must be reviewed on each server role prior to the role-specific guidance. Also, for the Client Access server, the IIS guidance must be reviewed prior to the OWA checks.

Available Profiles



Findings (MAC III - Administrative Public)

Finding ID Severity Title
EXCH-MB-407 Medium Email "Subject Line" logging must be enabled.
EXCH-MB-405 Medium The Public Folder Stores must mount at startup.
EXCH-MB-415 Medium Email SMTP forwarding must be restricted.
EXCH-MB-414 Medium Mailbox databases must reside on a dedicated partition.
EXCH-MB-408 Medium Message Tracking Logging must be disabled.
EXCH-MB-409 Medium Queue monitoring must be configured with threshold and action.
EXCH-MB-411 Medium Public Folder stores must be retained until backups are complete.
EXCH-MB-410 Medium Mail must be retained until backups are complete.
EXCH-MB-402 Low Mail Store storage quota must issue a warning.
EXCH-MB-403 Low Public Store storage quota must be limited.
EXCH-MB-400 Low Mail quota settings must not restrict receiving mail.
EXCH-MB-401 Low Mail Store storage quota must be limited.
EXCH-MB-406 Low The email server Circular Logging must be disabled.
EXCH-MB-404 Low The Mailbox Stores must mount at startup.
EXCH-MB-413 Low Public Folder database must not be overwritten by a restore.
EXCH-MB-412 Low Mailbox database must not be overwritten by a restore.