Turn on e-mail scanningID: oval:org.secpod.oval:def:40322 | Date: (C)2017-04-25 (M)2023-07-04 |
Class: COMPLIANCE | Family: windows |
This policy setting allows you to configure e-mail scanning. When e-mail scanning is enabled, the engine will parse the mailbox and mail files, according to their specific format, in order to analyze the mail bodies and attachments. Several e-mail formats are currently supported, for example: pst (Outlook), dbx, mbx, mime (Outlook Express), binhex (Mac).
If you enable this setting, e-mail scanning will be enabled.
If you disable or do not configure this setting, e-mail scanning will be disabled.
Vulnerability:
Disabling or not configuring this setting prevents e-mail scans, which may be contrary to your organization's security requirements.
Counter Measure:
Configure this setting depending on your organization's requirements.
Potential Impact:
Scanning can impact performance.
Fix:
(1) GPO: Computer Configuration\Administrative Templates\Windows Components\Windows Defender\Scan\Turn on e-mail scanning
(2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows Defender\Scan!DisableEmailScanning
Platform: |
Microsoft Windows Server 2016 |