SOLVED

Microsoft 365 Apps for enterprise security baseline by default?

%3CLINGO-SUB%20id%3D%22lingo-sub-2995225%22%20slang%3D%22en-US%22%3EMicrosoft%20365%20Apps%20for%20enterprise%20security%20baseline%20by%20default%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2995225%22%20slang%3D%22en-US%22%3E%3CP%3EStupid%20or%20simple%20question%20-%20i%20couldnt%20find%20an%20answer.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EGiven%20i%20use%20config.office.com%20to%20deploy%20(user)%20policies%20to%20M365%20Apps%20for%20Enterprise.%26nbsp%3B%3C%2FP%3E%3CP%3EI%20see%20132%20%3CEM%3Esecurity%20baseline%3C%2FEM%3E%20policies.%20I%20read%20%22microsoft%20recommended%20security%20baseline%22%20and%20%22if%20you%20disable%20or%20_not_%20configure%22%20the%20xyz%20secure%20setting%20is%20active.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThat%20means%3A%3C%2FP%3E%3CP%3EMicrosoft%20365%20Apps%20for%20enterprise%20are%26nbsp%3B%3CEM%3Eby%20default%3C%2FEM%3E%20using%20the%20settings%20of%20the%20security%20baseline%20if%20I%20configure%20nothing%3F%3C%2FP%3E%3CP%3EHere%20the%20security%20baseline%20policies%20purpose%20would%20be%20to%20set%20policies%20to%20the%20less%20secure%20setting%20-%20in%20case%20needed%3F%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3Ebest%20regards%3C%2FP%3E%3CP%3EMarkus%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2995262%22%20slang%3D%22en-US%22%3ERe%3A%20Microsoft%20365%20Apps%20for%20enterprise%20security%20baseline%20by%20default%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2995262%22%20slang%3D%22en-US%22%3EMost%20(if%20not%20all)%20of%20the%20time%2C%20when%20the%20description%20says%20the%20default%20behavior%20is%20equivalent%20to%20what%20the%20baseline%20would%20configure%2C%20without%20enforcing%20the%20baseline%20the%20user%20can%20choose%20a%20less-secure%20configuration.%20The%20baseline%20ensures%20that%20the%20secure%20choice%20is%20not%20overridden%20by%20a%20user.%3C%2FLINGO-BODY%3E
New Contributor

Stupid or simple question - i couldnt find an answer.

 

Given i use config.office.com to deploy (user) policies to M365 Apps for Enterprise. 

I see 132 security baseline policies. I read "microsoft recommended security baseline" and "if you disable or _not_ configure" the xyz secure setting is active.

 

That means:

Microsoft 365 Apps for enterprise are by default using the settings of the security baseline if I configure nothing?

Here the security baseline policies purpose would be to set policies to the less secure setting - in case needed?

 

best regards

Markus 

1 Reply
best response confirmed by Rick_Munck (Microsoft)
Solution
Most (if not all) of the time, when the description says the default behavior is equivalent to what the baseline would configure, without enforcing the baseline the user can choose a less-secure configuration. The baseline ensures that the secure choice is not overridden by a user.
www.000webhost.com