UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

Trust EMail from senders in receiver's contact list must be enforced.


Overview

Finding ID Version Rule ID IA Controls Severity
V-17807 DTOO223 - Outlook SV-33522r1_rule ECSC-1 Medium
Description
E-mail addresses in users' Contacts list are treated as safe senders for purposes of filtering junk e-mail. If this configuration is changed, e-mail from users' Contacts might be misclassified as junk and cause important information to be lost.
STIG Date
Microsoft Outlook 2010 2015-09-17

Details

Check Text ( C-34009r1_chk )
The policy value for User Configuration -> Administrative Templates -> Microsoft Outlook 2010 -> Outlook Options -> Preferences -> Junk E-mail “Trust E-mail from Contacts” must be set to “Enabled”.

Procedure: Use the Windows Registry Editor to navigate to the following key:

HKCU\Software\Policies\Microsoft\Office\14.0\outlook\options\mail

Criteria: If the value JunkMailTrustContacts is REG_DWORD = 1, this is not a finding.
Fix Text (F-29697r1_fix)
Set the policy value for User Configuration -> Administrative Templates -> Microsoft Outlook 2010 -> Outlook Options -> Preferences -> Junk E-mail “Trust E-mail from Contacts” to “Enabled”.