SV-44031r1_rule
V-33611
Exch-2-826
Exch-2-826
CAT II
10
Restrict any unauthorized groups or users from accessing the audit logs.
Obtain the Email Domain Security Plan (EDSP) and locate the authorized groups or users that should have access to the audit data.
If any group or user has access to the audit data that is not documented in the EDSP, this is a finding.
V-33611
False
Exch-2-826
Obtain the Email Domain Security Plan (EDSP) and locate the authorized groups or users that should have access to the audit data.
If any group or user has access to the audit data that is not documented in the EDSP, this is a finding.
M
1995