4.1. Audit Administrative Access to Exchange

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Restrict administrative access to Exchange to only necessary administrators. Allowing too many administrators or unrestricted administrative access to Exchange can result in a system instability or security compromise. Audit the Exchange administrator list to ensure that the least privileges required are assigned to each admin. This audit will be manual and different for each organization. NOTE: Nessus did not perform this check as it requires manual verification to determine if each administrator found on the system is authorized. NOTE: The 'get-exchangeadministrator' command-let is only applicable for the Exchange Mailbox Role.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Make sure 'Audit Administrative Access to Exchange' is set to your organization's security policy.

See Also

https://workbench.cisecurity.org/files/656