STIGQter STIGQter: STIG Summary: Microsoft Outlook 2010 STIG Version: 1 Release: 13 Benchmark Date: 27 Apr 2018:

Plain Text Options for outbound email must be configured.

DISA Rule

SV-33505r2_rule

Vulnerability Number

V-17761

Group Title

DTOO228 - Plain Text Options

Rule Version

DTOO228 - Outlook

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Set the policy value for User Configuration -> Administrative Templates -> Microsoft Outlook 2010 -> Outlook Options -> Mail format -> Internet Formatting "Plain text -> options" to "Enabled" where line length is "132" and that NO Check is visible in the "Encode all attachments in UUENCODE format when sending a plain text message" checkbox option.

Check Contents

The policy value for User Configuration -> Administrative Templates -> Microsoft Outlook 2010 -> Outlook Options -> Mail format -> Internet Formatting "Plain text options" must be set to "Enabled" where line length is "132" and that NO Check is visible in the "Encode all attachments in UUENCODE format when sending a plain text message" checkbox option.

Procedure: Use the Windows Registry Editor to navigate to the following key:

HKCU\Software\Policies\Microsoft\Office\14.0\common\mailsettings

Criteria: If the value PlainWrapLen is REG_DWORD = 132 (decimal), this is not a finding.

AND

HKCU\Software\Policies\Microsoft\Office\14.0\outlook\options\mail

Criteria: If the value Message Plain Format Mime is REG_DWORD = 1, this is not a finding.

Vulnerability Number

V-17761

Documentable

False

Rule Version

DTOO228 - Outlook

Severity Override Guidance

The policy value for User Configuration -> Administrative Templates -> Microsoft Outlook 2010 -> Outlook Options -> Mail format -> Internet Formatting "Plain text options" must be set to "Enabled" where line length is "132" and that NO Check is visible in the "Encode all attachments in UUENCODE format when sending a plain text message" checkbox option.

Procedure: Use the Windows Registry Editor to navigate to the following key:

HKCU\Software\Policies\Microsoft\Office\14.0\common\mailsettings

Criteria: If the value PlainWrapLen is REG_DWORD = 132 (decimal), this is not a finding.

AND

HKCU\Software\Policies\Microsoft\Office\14.0\outlook\options\mail

Criteria: If the value Message Plain Format Mime is REG_DWORD = 1, this is not a finding.

Check Content Reference

M

Responsibility

Information Assurance Officer

Target Key

2024

Comments