Generated by the Outlook2016Audit Module by FB Pro GmbH. Get it in the Audit Test Automation Package.
Based on DISA Microsoft Outlook 2016 Security Technical Implementation Guide V1R2 2017-07-28.
This report was generated at 04/03/2019 04:36:38 on DESKTOP-O8FO61D.
| Hostname | DESKTOP-O8FO61D |
|---|---|
| Build Number | 17763 |
| Free disk space(GB) | 109.3 |
| Operating System | Microsoft Windows 10 Enterprise Evaluation |
| Free physical memory (GB) | 0.128 |
Click the link(s) below for quick access to a report section.
This section contains all DISA recommendations
| Id | Task | Message | Audit |
|---|---|---|---|
| DTOO104 | Disabling of user name and password syntax from being used in URLs must be enforced. | Compliant | True |
| DTOO111 | Enabling IE Bind to Object functionality must be present. | Compliant | True |
| DTOO117 | Saved from URL mark to assure Internet zone processing must be enforced. | Compliant | True |
| DTOO123 | Navigation to URLs embedded in Office products must be blocked. | Compliant | True |
| DTOO124 | Scripted Window Security must be enforced. | Compliant | True |
| DTOO126 | Add-on Management functionality must be allowed. | Registry value not found. | False |
| DTOO129 | Links that invoke instances of Internet Explorer from within an Office product must be blocked. | Registry value not found. | False |
| DTOO132 | File Downloads must be configured for proper restrictions. | Registry value not found. | False |
| DTOO209 | Protection from zone elevation must be enforced. | Registry value not found. | False |
| DTOO211 | ActiveX Installs must be configured for proper restriction. | Registry value not found. | False |
| DTOO216 | Publishing calendars to Office Online must be prevented. | Compliant | True |
| DTOO217 | Publishing to a Web Distributed and Authoring (DAV) server must be prevented. | Compliant | True |
| DTOO218 | Level of calendar details that a user can publish must be restricted. | Compliant | True |
| DTOO219 | Access restriction settings for published calendars must be configured. | Registry value not found. | False |
| DTOO232 | Outlook Object Model scripts must be disallowed to run for shared folders. | Registry key not found. | False |
| DTOO233 | Outlook Object Model scripts must be disallowed to run for public folders. | Registry key not found. | False |
| DTOO234 | ActiveX One-Off forms must be configured. | Registry key not found. | False |
| DTOO236 | The Add-In Trust Level must be configured. | Registry key not found. | False |
| DTOO237 | The remember password for internet e-mail accounts must be disabled. | Registry key not found. | False |
| DTOO238 | Users customizing attachment security settings must be prevented. | Registry value not found. | False |
| DTOO239 | Outlook Security Mode must be configured to use Group Policy settings. | Registry key not found. | False |
| DTOO240 | The ability to display level 1 attachments must be disallowed. | Registry key not found. | False |
| DTOO246 | Scripts in One-Off Outlook forms must be disallowed. | Registry key not found. | False |
| DTOO247 | Custom Outlook Object Model (OOM) action execution prompts must be configured. | Registry key not found. | False |
| DTOO249 | Object Model Prompt for programmatic email send behavior must be configured. | Registry key not found. | False |
| DTOO250 | Object Model Prompt behavior for programmatic address books must be configured. | Registry key not found. | False |
| DTOO251 | Object Model Prompt behavior for programmatic access of user address data must be configured. | Registry key not found. | False |
| DTOO252 | Object Model Prompt behavior for Meeting and Task Responses must be configured. | Registry key not found. | False |
| DTOO253 | Object Model Prompt behavior for the SaveAs method must be configured. | Registry key not found. | False |
| DTOO254 | Object Model Prompt behavior for accessing User Property Formula must be configured. | Registry key not found. | False |
| DTOO257 | S/Mime interoperability with external clients for message handling must be configured. | Registry key not found. | False |
| DTOO260 | Message formats must be set to use SMime. | Registry key not found. | False |
| DTOO262 | Run in FIPS compliant mode must be enforced. | Registry key not found. | False |
| DTOO264 | Send all signed messages as clear signed messages must be configured. | Registry key not found. | False |
| DTOO266 | Automatic sending s/Mime receipt requests must be disallowed. | Registry key not found. | False |
| DTOO267 | Retrieving of CRL data must be set for online action. | Registry key not found. | False |
| DTOO270 | External content and pictures in HTML email must be displayed. | Registry key not found. | False |
| DTOO271 | Automatic download content for email in Safe Senders list must be disallowed. | Registry key not found. | False |
| DTOO272 | Permit download of content from safe zones must be configured. | Registry key not found. | False |
| DTOO273 | IE Trusted Zones assumed trusted must be blocked. | Registry key not found. | False |
| DTOO274 | Internet with Safe Zones for Picture Download must be disabled. | Registry key not found. | False |
| DTOO275 | Intranet with Safe Zones for automatic picture downloads must be configured. | Registry key not found. | False |
| DTOO276 | Always warn on untrusted macros must be enforced. | Registry key not found. | False |
| DTOO277 | Hyperlinks in suspected phishing email messages must be disallowed. | Registry key not found. | False |
| DTOO279 | RPC encryption between Outlook and Exchange server must be enforced. | Registry key not found. | False |
| DTOO280 | Outlook must be configured to force authentication when connecting to an Exchange server. | Registry key not found. | False |
| DTOO283 | Disabling download full text of articles as HTML must be configured. | Registry key not found. | False |
| DTOO284 | Automatic download of Internet Calendar appointment attachments must be disallowed. | Registry key not found. | False |
| DTOO285 | Internet calendar integration in Outlook must be disabled. | Registry key not found. | False |
| DTOO286 | User Entries to Server List must be disallowed. | Registry key not found. | False |
| DTOO313 | Automatically downloading enclosures on RSS must be disallowed. | Registry key not found. | False |
| DTOO315 | Outlook must be configured not to prompt users to choose security settings if default settings fail. | Registry key not found. | False |
| DTOO316 | Outlook minimum encryption key length settings must be set. | Registry key not found. | False |
| DTOO317 | Replies or forwards to signed/encrypted messages must be signed/encrypted. | Registry key not found. | False |
| DTOO320 | Check e-mail addresses against addresses of certificates being used must be disallowed. | Registry key not found. | False |