Check: EMG2-139 Exch2K3
Microsoft Exchange Server 2003:
EMG2-139 Exch2K3
(in version v1 r5)
Title
E-mail Public Folders do not have Storage Quota Limitations. (Cat III impact)
Discussion
E-Mail system availability depends in part on best practices strategies for setting tuning configurations. These settings control the maximum sizes of a Public Folder and the system’s response if these limits are exceeded. There are two available controls and the system response when the quota has been exceeded. The first control sends an E-mail warning to Folder Owners roles alerting them that the folder has exceeded its quota. The second level prevents posting any additional items to the folder. As a practical matter, level 1 serves the purpose of prompting owners to manage their folders. Level 2 impedes users in their ability to work, and is not required where folder use interruption is not acceptable. Public Folder Storage Quota Limitations are not a substitute for overall disk space monitoring.
Check Content
If site is not using Public Folders, this is N/A. First, make a note of the Public Folder stores item size. Administrative Groups >> [administrative group] >> Servers >> [server name] >> Storage group >> Public Folder store [Server name] >> Properties >> Limits Tab >>Maximum item size: (KB) Use the Maximum item size value to configure the Public Folder Store quota values. Progression of configured values should be 'equal to' or 'greater than' one message size value to prevent an alert being skipped due to one message. Procedure: Exchange System Manager >> administrative groups >> [administrative group] >> servers >> [server name] >> [storage group] >> Public Folder store [server name] >> properties >> Limits tab “Issue warning at (KB)” should be selected, and have a value . No other limit should be selected. Criteria: If "Issue warning at (KB)" is selected and has value that is a multiple of a message size, with no other limits selected, this is not a finding.
Fix Text
Make a note of the Public Folder stores item size as follows: Administrative Groups >> [administrative group] >> Servers >> [server name] >> Storage group >> Public Folder store [Server name] >> Properties >> Limits Tab >>Maximum item size: (KB) Use Maximum Item size to configure Public Folder Store quota. The value should be 'equal to' or 'greater than' one Public Folder limit on item size. Procedure: Exchange System Manager >> administrative groups >> [administrative group] >> servers >> [server name] >> [storage group] >> Public folder store [server name] >> properties >> Limits tab Select “Issue warning at (KB)” and assign a value. Do not select “Prohibit post at (KB). Note: Configured actions should be multiples of one item size to prevent an alert being skipped due to one message.
Additional Identifiers
Rule ID: SV-20220r1_rule
Vulnerability ID: V-18644
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |