SV-207301r615936_rule
V-207301
SRG-APP-000247
EX13-MB-000175
CAT III
10
Update the EDSP.
Open the Exchange Management Shell and enter the following command:
Set-ReceiveConnector -Identity <'IdentityName'> -MaxMessageSize <'MaxReceiveSize'>
Note: The <IdentityName> and <MaxReceiveSize> values must be in quotes.
or
The value as identified by the EDSP that has obtained a signoff with risk acceptance.
Repeat the procedure for each Receive connector.
Review the Email Domain Security Plan (EDSP).
Determine the global maximum message receive size and whether signoff with risk acceptance is documented for the Receive connector to have a different value.
Open the Exchange Management Shell and enter the following command:
Get-ReceiveConnector | Select Name, Identity, MaxMessageSize
Identify Internet-facing connectors.
For each Receive connector, if the value of MaxMessageSize is not the same as the global value, this is a finding.
or
If MaxMessageSize is set to a numeric value different from the global value and has signoff and risk acceptance in the EDSP, this is not a finding.
V-207301
False
EX13-MB-000175
Review the Email Domain Security Plan (EDSP).
Determine the global maximum message receive size and whether signoff with risk acceptance is documented for the Receive connector to have a different value.
Open the Exchange Management Shell and enter the following command:
Get-ReceiveConnector | Select Name, Identity, MaxMessageSize
Identify Internet-facing connectors.
For each Receive connector, if the value of MaxMessageSize is not the same as the global value, this is a finding.
or
If MaxMessageSize is set to a numeric value different from the global value and has signoff and risk acceptance in the EDSP, this is not a finding.
M
2923