Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-18725 | EMG2-307 Exch2K3 | SV-20393r1_rule | ECSC-1 | Low |
Description |
---|
E-mail system availability depends in part on best practices strategies for setting tuning configurations. Unauthorized or accidental restoration of mailbox data risks data loss or corruption. This setting controls whether the mailbox store can be overwritten by a backup, which will cause loss of all information added after the backup was created. It should only be enabled during maintenance windows or following an outage (immediately before a restore is to be made), and cleared again immediately afterwards. During production windows, this setting must be disabled. |
STIG | Date |
---|---|
Microsoft Exchange Server 2003 | 2014-08-19 |
Check Text ( C-22446r1_chk ) |
---|
Ensure that Mail Stores Restore Overwrite is enabled. Procedure: Exchange System manager >>Administrative Groups >> [administrative group] >> servers >> [server name]>> [storage group] >> Mailbox store [server name] >> properties >> database tab The “This database can be overwritten by a restore” checkbox should be cleared. Criteria: If “This database can be overwritten by a restore” checkbox is cleared, this is not a finding. |
Fix Text (F-19374r1_fix) |
---|
Ensure that Mail Store Restore Overwrite Protection is enabled. Procedure: Exchange System manager >>Administrative Groups >> [administrative group] >> servers >> [server name]>> [storage group] >> Mailbox store [server name] >> properties >> database tab Clear the “This database can be overwritten by a restore” checkbox. |