STIGQter STIGQter: STIG Summary: Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 30 Jan 2025:

The Exchange Simple Mail Transfer Protocol (SMTP) Sender filter must be enabled.

DISA Rule

SV-259625r961161_rule

Vulnerability Number

V-259625

Group Title

SRG-APP-000261

Rule Version

EX19-ED-000139

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Open the Exchange Management Shell and enter the following command:

Set-SenderFilterConfig -Enabled $true

Check Contents

This requirement is not applicable for SIPR enclaves.

This requirement is not applicable if the organization subscribes to EEMSG or other similar DOD enterprise protections for email services.

Open the Exchange Management Shell and enter the following command:

Get-SenderFilterConfig | Select-Object -Property Name, Enabled

If the value of "Enabled" is not set to "True", this is a finding.

Note: "Enabled" set to "True" is the default value.

Vulnerability Number

V-259625

Documentable

False

Rule Version

EX19-ED-000139

Severity Override Guidance

This requirement is not applicable for SIPR enclaves.

This requirement is not applicable if the organization subscribes to EEMSG or other similar DOD enterprise protections for email services.

Open the Exchange Management Shell and enter the following command:

Get-SenderFilterConfig | Select-Object -Property Name, Enabled

If the value of "Enabled" is not set to "True", this is a finding.

Note: "Enabled" set to "True" is the default value.

Check Content Reference

M

Target Key

5579