STIGQter STIGQter: STIG Summary: MS Exchange 2010 Edge Transport Server STIG Version: 1 Release: 15 Benchmark Date: 26 Apr 2019:

Global outbound message size must be controlled.

DISA Rule

SV-44047r2_rule

Vulnerability Number

V-33627

Group Title

Exch-2-015

Rule Version

Exch-2-015

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Open the Exchange Management Shell and enter the following command:

Set-TransportConfig -MaxSendSize 10MB

If an alternate value is desired, obtain signoff with risk acceptance and document in the EDSP.

Check Contents

Obtain the Email Domain Security Plan (EDSP) and locate the global maximum message send size.

Open the Exchange Management Shell and enter the following command:
Get-TransportConfig | Select Identity, MaxSendSize

If the value of 'MaxSendSize' is set to 10MB, this is not a finding.

If the value of 'MaxSendSize' is set to an alternate value, and has signoff and risk acceptance in the EDSP, this is not a finding.

If the value of 'MaxSendSize' is set to “Unlimited”, this is a finding.

Vulnerability Number

V-33627

Documentable

False

Rule Version

Exch-2-015

Severity Override Guidance

Obtain the Email Domain Security Plan (EDSP) and locate the global maximum message send size.

Open the Exchange Management Shell and enter the following command:
Get-TransportConfig | Select Identity, MaxSendSize

If the value of 'MaxSendSize' is set to 10MB, this is not a finding.

If the value of 'MaxSendSize' is set to an alternate value, and has signoff and risk acceptance in the EDSP, this is not a finding.

If the value of 'MaxSendSize' is set to “Unlimited”, this is a finding.

Check Content Reference

M

Target Key

1995

Comments