| DISA_STIG_Microsoft_Outlook_2013_v1r14.audit from DISA Microsoft Outlook 2013 v1r14 STIG | |
| DTOO104 - Disabling of user name and password syntax from being used in URLs must be enforced. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO111 - The Internet Explorer Bind to Object functionality must be enabled. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO117 - The Saved from URL mark must be selected to enforce Internet zone processing. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO123 - Navigation to URLs embedded in Office products must be blocked. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO124 - Scripted Window Security must be enforced. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO126 - Add-on Management functionality must be allowed. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO129 - Links that invoke instances of Internet Explorer from within an Office product must be blocked. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO132 - File Downloads must be configured for proper restrictions. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO209 - Protection from zone elevation must be enforced. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO211 - ActiveX installs must be configured for proper restrictions. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO214 - Read EMail as plain text must be enforced. | CONFIGURATION MANAGEMENT |
| DTOO215 - Read signed email as plain text must be enforced. | CONFIGURATION MANAGEMENT |
| DTOO216 - Publishing calendars to Office Online must be prevented. | CONFIGURATION MANAGEMENT |
| DTOO217 - Publishing to a Web Distributed and Authoring (DAV) server must be prevented. | CONFIGURATION MANAGEMENT |
| DTOO218 - Level of calendar details that a user can publish must be restricted. | CONFIGURATION MANAGEMENT |
| DTOO219 - Access restriction settings for published calendars must be configured. | CONFIGURATION MANAGEMENT |
| DTOO220 - Upload method for publishing calendars to Office Online must be restricted. | CONFIGURATION MANAGEMENT |
| DTOO221 - Junk Mail UI must be configured. | CONFIGURATION MANAGEMENT |
| DTOO223 - Trust EMail from senders in receivers contact list must be enforced. | CONFIGURATION MANAGEMENT |
| DTOO224 - Recipients of sent email must be unable to be added to the safe senders list. | CONFIGURATION MANAGEMENT |
| DTOO227 - The ability to add signatures to email messages must be allowed. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO228 - Plain Text Options for outbound email must be configured - Message Plain Format Mime | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO228 - Plain Text Options for outbound email must be configured - PlainWrapLen | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO229 - Outlook must be enforced as the default email, calendar, and contacts program. | CONFIGURATION MANAGEMENT |
| DTOO230 - Folders in non-default stores, set as folder home pages, must be disallowed. | CONFIGURATION MANAGEMENT |
| DTOO231 - Dragging Unicode email messages to file system must be disallowed. | CONFIGURATION MANAGEMENT |
| DTOO232 - Outlook Object Model scripts must be disallowed to run for shared folders. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO233 - Outlook Object Model scripts must be disallowed to run for public folders. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO234 - ActiveX One-Off forms must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO236 - The Add-In Trust Level must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO237 - The remember password for internet e-mail accounts must be disabled. | IDENTIFICATION AND AUTHENTICATION |
| DTOO238 - Users customizing attachment security settings must be prevented. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO239 - Outlook Security Mode must be configured to use Group Policy settings. | CONFIGURATION MANAGEMENT |
| DTOO240 - The ability to display level 1 attachments must be disallowed. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO241 - Action to demote an EMail Level 1 attachment to Level 2 must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO242 - The prompt to display level 1 attachments must be disallowed when sending an item. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO243 - The prompt to display level 1 attachments must be disallowed when closing an item. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO244 - Level 1 file extensions must be blocked and not removed. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO245 - Level 2 file extensions must be blocked and not removed. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO246 - Scripts in One-Off Outlook forms must be disallowed. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO247 - Custom Outlook Object Model (OOM) action execution prompts must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO249 - Object Model Prompt for programmatic email send behavior must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO250 - Object Model Prompt behavior for programmatic address books must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO251 - Object Model Prompt behavior for programmatic access of user address data must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO252 - Object Model Prompt behavior for Meeting and Task Responses must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO253 - Object Model Prompt behavior for the SaveAs method must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO254 - Object Model Prompt behavior for accessing User Property Formula must be configured. | SYSTEM AND COMMUNICATIONS PROTECTION |
| DTOO256 - Trusted add-ins behavior for email must be configured. | CONFIGURATION MANAGEMENT |
| DTOO257 - S/Mime interoperability with external clients for message handling must be configured. | IDENTIFICATION AND AUTHENTICATION |