UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

Exchange Mail quota settings must not restrict receiving mail.


Overview

Finding ID Version Rule ID IA Controls Severity
V-228379 EX16-MB-000310 SV-228379r612748_rule Low
Description
Mail quota settings control the maximum sizes of a user’s mailbox and the system’s response if these limits are exceeded. Mailbox data that is not monitored against a quota increases the risk of mail loss due to filled disk space, which can also render the system unavailable. Failure to allow mail receipt may impede users from receiving mission-critical data.
STIG Date
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide 2021-03-25

Details

Check Text ( C-30612r496933_chk )
Open the Exchange Management Shell and enter the following command:

Get-MailboxDatabase | Select Name, Identity, ProhibitSendReceiveQuota

If the value of "ProhibitSendReceiveQuota" is not set to "Unlimited", this is a finding.

or

If the value of "ProhibitSendReceiveQuota" is set to an alternate value and has signoff and risk acceptance in the EDSP, this is not a finding.
Fix Text (F-30597r496934_fix)
Open the Exchange Management Shell and enter the following command:

Set-MailboxDatabase -Identity <'IdentityName'> -ProhibitSendReceiveQuota Unlimited

Note: The value must be in single quotes.

or

Enter the value as identified by the EDSP that has obtained a signoff with risk acceptance.