UCF STIG Viewer Logo

Trust EMail from senders in receiver's contact list - Outlook.


Overview

Finding ID Version Rule ID IA Controls Severity
V-17807 DTOO223 - Outlook SV-19040r1_rule ECSC-1 Medium
Description
By default, e-mail addresses in users' Contacts list are treated as safe senders for purposes of filtering junk e-mail. If this configuration is changed, e-mail from users' Contacts might be misclassified as junk and cause important information to be lost.
STIG Date
Microsoft Outlook 2007 2015-09-17

Details

Check Text ( C-19068r1_chk )
The policy value for User Configuration -> Administrative Templates -> Microsoft Office Outlook 2007 -> Tools \ Options -> Preferences -> Junk E-mail “Trust E-mail from Contacts” will be set to “Enabled”.

Procedure: Use the Windows Registry Editor to navigate to the following key:

HKCU\Software\Policies\Microsoft\Office\12.0\Outlook\Options\Mail

Criteria: If the value JunkMailTrustContacts is REG_DWORD = 1, this is not a finding.
Fix Text (F-17708r1_fix)
The policy value for User Configuration -> Administrative Templates -> Microsoft Office Outlook 2007 -> Tools \ Options -> Preferences -> Junk E-mail “Trust E-mail from Contacts” will be set to “Enabled”.