Skip to main content
Version: 2.1.1-preview

ORCA.228 - No trusted senders in Anti-phishing policy.

Overview​

Adding senders as trusted in Anti-phishing policy will result in the action for protected domains, Protected users or mailbox intelligence protection will be not applied to messages coming from these senders. If a trusted sender needs to be added based on organizational requirements it should be reviewed regularly and updated as needed.

Remediation action​

Remove allow listing on senders in Anti-phishing policy.

Test Metadata​

FieldValue
Test IDORCA.228
SeverityHigh
SuiteORCA
CategoryEXO
PowerShell testTest-ORCA228
TagsEXO, ORCA, ORCA.228

Source​

  • Pester test: tests/orca/Test-ORCA228.Tests.ps1
  • PowerShell source: powershell/public/orca/Test-ORCA228.ps1