Check: EMG2-311 Exch2K3
Microsoft Exchange Server 2003:
EMG2-311 Exch2K3
(in version v1 r5)
Title
Public Folder Stores Restore Overwrite is enabled. (Cat III impact)
Discussion
E-mail system availability depends in part on best practices strategies for setting tuning configurations. Unauthorized or accidental restoration of public folder data risks data loss or corruption. This setting controls whether the public folder store can be overwritten by a restore from backup, which will cause loss of all information added after the backup was created. It should only be enabled during maintenance windows or following an outage (immediately before a restore is to be made), and cleared again immediately afterwards. During production windows, this setting must be disabled.
Check Content
Ensure that Public Folder Restore Overwrite Protection is enabled. Procedure: Exchange System manager >>Administrative Groups >> [administrative group] >> servers >> [server name]>> [storage group] >> Public Folder store [server name] >> properties >> database tab The “This database can be overwritten by a restore” checkbox should be cleared. Criteria: If “This database can be overwritten by a restore” checkbox is cleared, this is not a finding.
Fix Text
Ensure that Public Folders Restore Overwrite Protection is enabled. Procedure: Exchange System manager >>Administrative Groups >> [administrative group] >> servers >> [server name]>> [storage group] >> Public Folder store [server name] >> properties >> database tab Clear the “This database can be overwritten by a restore” checkbox.
Additional Identifiers
Rule ID: SV-20395r1_rule
Vulnerability ID: V-18726
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |