DTOO317 - Replies or forwards to signed/encrypted messages must be signed/encrypted.

Information

This policy setting controls whether replies and forwards to signed/encrypted mail should also be signed/encrypted. If you enable this policy setting, signing/encryption will be turned on when replying/forwarding a signed or encrypted message, even if the user is not configured for SMIME. If you disable or do not configure this policy setting, signing/encryption is not enforced.

Solution

Set the policy value for User Configuration -> Administrative Templates -> Microsoft Outlook 2016 -> Security -> Cryptography 'Replies or forwards to signed/encrypted messages are signed/encrypted' to 'Enabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Outlook_2016_V2R3_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-228475r508021_rule, STIG-ID|DTOO317, STIG-Legacy|SV-85899, STIG-Legacy|V-71275, Vuln-ID|V-228475

Plugin: Windows

Control ID: 20c367e8c75458d750b424ad91cf791f0929c5f0aea039844f007804621ff3b0