SV-221246r612603_rule
V-221246
SRG-APP-000261
EX16-ED-000500
CAT II
10
Update the EDSP to reflect the SMTP allow list settings.
Open the Exchange Management Shell and enter the following command:
Note: Remove any value(s) that are not identified by the EDSP or have not obtained a signoff with risk acceptance.
Remove-IPAllowListEntry -Identity <IP Allow List entry ID>
Review the Email Domain Security Plan (EDSP).
Identify the SMTP allow list settings.
Open the Exchange Management Shell and enter the following command:
Get-IPAllowListEntry | fl
If the result returns any values, this is a finding.
or
If the result returns any values but has signoff and risk acceptance in the EDSP, this is not a finding.
V-221246
False
EX16-ED-000500
Review the Email Domain Security Plan (EDSP).
Identify the SMTP allow list settings.
Open the Exchange Management Shell and enter the following command:
Get-IPAllowListEntry | fl
If the result returns any values, this is a finding.
or
If the result returns any values but has signoff and risk acceptance in the EDSP, this is not a finding.
M
4079