STIGhub
STIGs
RMF Controls
Compare
← SI-8 (2) — Spam Protection
CCI-001308
Definition
Automatically update spam protection mechanisms on an organization-defined frequency.
Parent Control
SI-8 (2)
Spam Protection
System and Information Integrity
Linked STIG Checks (62)
V-205024
CAT II
The ALG that implements spam protection mechanisms must be updated automatically.
Application Layer Gateway Security Requirements Guide
V-213454
CAT II
Microsoft Defender AV must be configured to check for definition updates daily.
Microsoft Defender Antivirus Security Technical Implementation Guide
V-221232
CAT II
Exchange messages with a blank sender field must be rejected.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221233
CAT II
Exchange messages with a blank sender field must be filtered.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221234
CAT II
Exchange filtered messages must be archived.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221235
CAT II
The Exchange Sender filter must block unaccepted domains.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221236
CAT II
Exchange nonexistent recipients must not be blocked.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221237
CAT II
The Exchange Sender Reputation filter must be enabled.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221238
CAT II
The Exchange Sender Reputation filter must identify the spam block level.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221239
CAT II
Exchange Attachment filtering must remove undesirable attachments by file type.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221240
CAT II
The Exchange Spam Evaluation filter must be enabled.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221241
CAT II
The Exchange Block List service provider must be identified.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221242
CAT II
Exchange messages with a malformed From address must be rejected.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221243
CAT II
The Exchange Recipient filter must be enabled.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221244
CAT II
The Exchange tarpitting interval must be set.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221245
CAT II
Exchange internal Receive connectors must not allow anonymous connections.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221246
CAT II
Exchange Simple Mail Transfer Protocol (SMTP) IP Allow List entries must be empty.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221247
CAT II
The Exchange Simple Mail Transfer Protocol (SMTP) IP Allow List Connection filter must be enabled.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221248
CAT II
The Exchange Simple Mail Transfer Protocol (SMTP) Sender filter must be enabled.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221249
CAT II
Exchange must have antispam filtering installed.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221250
CAT II
Exchange must have antispam filtering enabled.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221251
CAT II
Exchange must have antispam filtering configured.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221252
CAT II
Exchange Sender Identification Framework must be enabled.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-221253
CAT I
Exchange must render hyperlinks from email sources from non-.mil domains as unclickable.
Microsoft Exchange 2016 Edge Transport Server Security Technical Implementation Guide
V-228391
CAT II
Exchange Internal Receive connectors must not allow anonymous connections.
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
V-228392
CAT II
Exchange external/Internet-bound automated response messages must be disabled.
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
V-228393
CAT II
Exchange must have anti-spam filtering installed.
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
V-228394
CAT II
Exchange must have anti-spam filtering enabled.
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
V-228395
CAT II
Exchange must have anti-spam filtering configured.
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
V-228396
CAT II
Exchange must not send automated replies to remote domains.
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
V-228397
CAT I
Exchange servers must have an approved DoD email-aware virus protection software installed.
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
V-228398
CAT III
The Exchange Global Recipient Count Limit must be set.
Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
V-259608
CAT II
Active hyperlinks in messages from non .mil domains must be rendered unclickable.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259609
CAT II
Exchange messages with a blank sender field must be rejected.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259610
CAT II
Exchange messages with a blank sender field must be filtered.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259611
CAT II
Exchange filtered messages must be archived.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259612
CAT II
The Exchange sender filter must block unaccepted domains.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259613
CAT II
Exchange nonexistent recipients must not be blocked.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259614
CAT II
The Exchange Sender Reputation filter must be enabled.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259615
CAT II
The Exchange Sender Reputation filter must identify the spam block level.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259616
CAT II
Exchange Attachment filtering must remove undesirable attachments by file type.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259617
CAT II
The Exchange Spam Evaluation filter must be enabled.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259618
CAT II
The Exchange Block List service provider must be identified.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259619
CAT II
Exchange messages with a malformed From address must be rejected.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259620
CAT II
The Exchange Recipient filter must be enabled.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259621
CAT II
The Exchange tarpitting interval must be set.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259622
CAT II
Exchange internal Receive connectors must not allow anonymous connections.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259623
CAT II
Exchange Simple Mail Transfer Protocol (SMTP) IP Allow List entries must be empty.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259624
CAT II
The Exchange Simple Mail Transfer Protocol (SMTP) IP Allow List Connection filter must be enabled.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259625
CAT II
The Exchange Simple Mail Transfer Protocol (SMTP) Sender filter must be enabled.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259626
CAT II
Exchange must have anti-spam filtering installed.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259627
CAT II
Exchange must have anti-spam filtering enabled.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259628
CAT II
Exchange must have anti-spam filtering configured.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259629
CAT II
Exchange Sender Identification Framework must be enabled.
Microsoft Exchange 2019 Edge Server Security Technical Implementation Guide
V-259686
CAT I
Exchange servers must have an approved DOD email-aware virus protection software installed.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
V-259687
CAT II
Exchange internal receive connectors must not allow anonymous connections.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
V-259688
CAT II
Exchange external/internet-bound automated response messages must be disabled.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
V-259689
CAT II
Exchange must have anti-spam filtering installed.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
V-259690
CAT II
Exchange must have anti-spam filtering enabled.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
V-259691
CAT II
Exchange must have anti-spam filtering configured.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
V-259692
CAT II
Exchange must not send automated replies to remote domains.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
V-259693
CAT III
The Exchange Global Recipient Count Limit must be set.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide