SV-84517r1_rule
V-69895
SRG-APP-000261
EX13-EG-000250
CAT II
10
Update the EDSP.
Open the Exchange Management Shell and enter the following command:
Note: Remove any value(s) that are not identified by the EDSP or have not obtained a signoff with risk acceptance.
Remove-IPAllowListEntry -Identity <IP Allow List entry ID>
Review the Email Domain Security Plan (EDSP).
Identify the SMTP allow list settings.
Open the Exchange Management Shell and enter the following command:
Get-IPAllowListEntry | fl
If the result returns any values, this is a finding.
or
If the result returns any values but has signoff and risk acceptance in the EDSP, this is not a finding.
V-69895
False
EX13-EG-000250
Review the Email Domain Security Plan (EDSP).
Identify the SMTP allow list settings.
Open the Exchange Management Shell and enter the following command:
Get-IPAllowListEntry | fl
If the result returns any values, this is a finding.
or
If the result returns any values but has signoff and risk acceptance in the EDSP, this is not a finding.
M
3099