Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-70075 | EX13-MB-000305 | SV-84697r1_rule | Medium |
Description |
---|
Identification and authentication provide the foundation for access control. Access to email services applications require NTLM authentication. Outlook Anywhere, if authorized for use by the site, must use NTLM authentication when accessing email. Note: There is a technical restriction in Exchange OA that requires a direct SSL connection from Outlook to the CA server. There is also a constraint where Microsoft supports that the CA server must participate in the AD domain inside the enclave. For this reason, Outlook Anywhere must be deployed only for enclave-sourced Outlook users. |
STIG | Date |
---|---|
MS Exchange 2013 Mailbox Server Security Technical Implementation Guide | 2019-09-25 |
Check Text ( C-70549r1_chk ) |
---|
Open the Exchange Management Shell and enter the following command: Get-OutlookAnywhere Get-OutlookAnywhere | Select Name, Identity, InternalClientAuthenticationMethod, ExternalClientAuthenticationMethod If the value of InternalClientAuthenticationMethod and the value of ExternalClientAuthenticationMethod is not set to NTLM, this is a finding. |
Fix Text (F-76311r1_fix) |
---|
Open the Exchange Management Shell and enter the following command: For InternalClientAuthenticationMethod: Set-OutlookAnywhere -Identity ' For ExternalClientAuthenticationMethod: Set-OutlookAnywhere -Identity ' |