2.5.14.3.4 (L1) Ensure 'Outlook Security Mode' is set to 'Enabled'

Information

This policy setting enables the use of a custom set of security settings that are enforced in Outlook. This must be enabled if other Outlook security policy settings mentioned in this guide are to be applied.

The recommended state for this setting is: Enabled

Users should not be able to configure security themselves. Choosing the lowest levels of security can lead to systems being vulnerable to attack.

Note: This setting is essential for ensuring that the other Outlook security settings mentioned in this baseline are applied as suggested.

Solution

To establish the recommended state via configuration profiles, set the following Settings Catalog path to Enabled :

Microsoft Outlook 2016\Security\Security Form Settings\Outlook Security Mode

Impact:

Enabling this setting prevents users from modifying their own security settings, so it might cause an increase in support calls.

See Also

https://workbench.cisecurity.org/benchmarks/15808

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Windows

Control ID: 592ae8c1066f5d5984e784223508091f8c64ad8841f1d649335ec02a2e824080