Revise Implementation Steps for MS.EXO.7.1v1 #1629
Labels
baseline-document
Issues relating to the text in the baseline documents themselves
enhancement
This issue or pull request will add new or improve existing functionality
Milestone
Prerequisites
💡 Summary
Add flexibility in how MS.EXO.7.1v1 can be implemented, as there are multiple valid methods.
Motivation and context
MS.EXO.7.1v1, "External sender warnings SHALL be implemented," has multiple possible implementations. The current baseline implementation steps suggest using mail flow rules to add the warning. The Rego checks to ensure that a mail flow rule exists that:
The baseline and Rego implementations are at the same time to proscriptive (there are other ways of doing this) and too vague (we don't proscribe what to prepend to the subject in the baseline so the Rego can't check what is being prepended).
The primary alternative to using mail flow rules is
Set-ExternalOutlook
. Multiple users have reported using this method (e.g., #1624). Also, this is the approach recommended by the latest CIS benchmark.Implementation notes
Acceptance criteria
The text was updated successfully, but these errors were encountered: