Skip to main content
Version: 2.1.0

ORCA.239 - No exclusions for the built-in protection policies.

Overview

Built-in protection policies provide catch-all protection against users not covered by higher order policies. Excluding users from the built-in protection policies may mean these users have reduced protections. It is important not to rely on the 'built-in' policies, as these policies only apply the minimum level of protections and should serve as a catch-all.

Remediation action

Remove exclusions from the built-in protection policies.

Test Metadata

FieldValue
Test IDORCA.239
SeverityHigh
SuiteORCA
CategoryEXO
PowerShell testTest-ORCA239
TagsEXO, ORCA, ORCA.239

Source

  • Pester test: tests/orca/Test-ORCA239.Tests.ps1
  • PowerShell source: powershell/public/orca/Test-ORCA239.ps1