Exchange Server Security and Compliance Assessment Results

exchange server assessment results n.w
1 / 8
Embed
Share

"Discover the findings from an Exchange Server assessment, including areas of success, areas needing improvement, and high-priority recommendations for security and compliance. Take action to enhance your server's performance and safeguard against potential vulnerabilities."

  • Exchange Server
  • Assessment Results
  • Security
  • Compliance
  • Recommendations

Uploaded on | 1 Views


Download Presentation

Please find below an Image/Link to download the presentation.

The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author. If you encounter any issues during the download, it is possible that the publisher has removed the file from their server.

You are allowed to download the files provided on this website for personal or commercial use, subject to the condition that they are used lawfully. All files are the property of their respective owners.

The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author.

E N D

Presentation Transcript


  1. Exchange Server Assessment Results Click here to view in Azure Log Analytics

  2. Executive Summary 1. What went well: 88 88% % Passed Passed Operations and Monitoring 2. What needs Improvement: Security and Compliance 3. Highest Priority Recommendations: 8 High Priority Configure and Enforce the Setting "Windows Firewall: Domain: Firewall state" via GPO 53 Low Priority 0 Resolved 432 Passed Checks

  3. Security and Compliance Highest Priority Recommendations Configure and Enforce the Setting "Windows Firewall: Domain: Firewall state" via GPO Enable and Enforce the Setting "Turn off Autoplay" via GPO Configure and Enforce the Setting "Windows Firewall: Public: Firewall state" via GPO Mitigations missing for speculative execution side-channel vulnerabilities Configure the Setting "Network security: LAN Manager authentication level" and Enforce via GPO Ensure that the default Exchange ActiveSync policy reflects the security requirements of your organization. Use the default client throttling values in the default throttling policy Define and Enforce Setting "Back up files and directories" via GPO for Accounts Which Need This Level of Access Configure Authorized User List for Setting "Restore files and directories" and Enforce via GPO Review permissions on the "Exchange Administrative Group (FYDIBOHF23SPDLT)" object in the configuration partition 71 71% % Passed Passed 6 High Priority 41 Low Priority 0 Resolved 112 Passed Checks

  4. Operations and Monitoring Highest Priority Recommendations Investigate reasons why Event ID 15006, MSExchangeTransport, The Microsoft Exchange Transport service is rejecting messages because available disk space is below the configured threshold has occurred. 99 99% % Passed Passed 0 High Priority 1 Low Priority 0 Resolved 87 Passed Checks

  5. Upgrade, Migration and Deployment Highest Priority Recommendations Install the latest updates on your Exchange Servers. Exchange databases that host mailboxes should always have an offline address book configured. Ensure that each site containing Exchange Server computers has at least two Domain Controllers that are also Global Catalog servers. Configure Windows SmartScreen 90 90% % Passed Passed 1 High Priority 3 Low Priority 0 Resolved 33 Passed Checks

  6. Availability and Business Continuity Highest Priority Recommendations Ensure that all your production Exchange databases which do not have circular logging configured are being backed up on a regular basis. Ensure that all required Exchange Server services are running. Ensure that the Offline Address Book (OAB) mailbox where the Offline Address Book (OAB) is generated is hosted on a database which is replicated within a Database Availability Group (DAG) on computers running Exchange Server 2013/2016. If a content index catalog on a mailbox database copy becomes corrupted, reseed the catalog from another Exchange Server. Check the health status of your Exchange servers. Consider upgrading BIOS Versions that are between 7 and 10 years old. 97 97% % Passed Passed 1 High Priority 5 Low Priority 0 Resolved 163 Passed Checks

  7. Performance and Scalability Highest Priority Recommendations If Microsoft Exchange back pressure events are detected, ensure that your Exchange servers have adequate system resources for the task. 97 97% % Passed Passed 0 High Priority 1 Low Priority 0 Resolved 26 Passed Checks

  8. Change and Configuration Management Highest Priority Recommendations Servers should only be in Maintenance Mode while undergoing maintenance operations. Return the maximum allowed recipients value to its default setting. 85 85% % Passed Passed 0 High Priority 2 Low Priority 0 Resolved 11 Passed Checks

Related


More Related Content