Skip to main content
Version: 2.1.1-preview

ORCA.229 - No trusted domains in Anti-phishing policy.

Overview

Adding domains as trusted in Anti-phishing policy will result in the action for protected domains, protected users or mailbox intelligence protection will be not applied to messages coming from these sender domains. If a trusted domain needs to be added based on organizational requirements it should be reviewed regularly and updated as needed. We also do not recommend adding domains from shared services.

Remediation action

Remove allow listing on domains in Anti-phishing policy.

Test Metadata

FieldValue
Test IDORCA.229
SeverityMedium
SuiteORCA
CategoryEXO
PowerShell testTest-ORCA229
TagsEXO, ORCA, ORCA.229

Source

  • Pester test: tests/orca/Test-ORCA229.Tests.ps1
  • PowerShell source: powershell/public/orca/Test-ORCA229.ps1