[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 370
  • Last Modified:

Is there a log to see who has been viewing other users mailboxes using OUTLOOK 2007 and EXCHANGE2007?

I started a new job and security is kind of weak. My new boss has asked me to lock down the email. At this point, too many people belong to domain admin and it is simple for them to open their OUTLOOK 2007, point to another user's folder and open his or her INBOX. I am working on the security issue, but in the mean time my boss wants to know if I can find out who has been peeking at his email. Is there a log somewhere that allows to to view who has been looking at a particular user's email or generally check who has been looking at INBOXES other then their own? We are using EXCHANGE 2007 and we run WINDOWS 2003 domain function level
0
Thor2923
Asked:
Thor2923
  • 4
1 Solution
 
Raheman M. AbdulCommented:
Yes, you can audit them
For details on how to setup : http://technet.microsoft.com/en-us/library/ee221156%28EXCHG.80%29.aspx
0
 
Raheman M. AbdulCommented:
With Folder access enabled, you can do so.
0
 
Raheman M. AbdulCommented:
Mailbox Access Auditing feature is introduced in Exchange Server 2007 Service Pack 2 (SP2)
0
Concerto's Cloud Advisory Services

Want to avoid the missteps to gaining all the benefits of the cloud? Learn more about the different assessment options from our Cloud Advisory team.

 
Raheman M. AbdulCommented:
Detailed information about Mailbox Access Auditing on Exchange Server 2007 is given in http://technet.microsoft.com/en-us/library/ee331009%28EXCHG.80%29.aspx
Hope this helps you.
Look under: Exchange Server Mailbox Auditing
0
 
Jon BrelieSystem ArchitectCommented:
You might also consider restricting Domain admins from viewing any mailboxes.  That should be reserved for Exchange, or Enterprise admins.
0
 
Malli BoppeCommented:
Check the below link
http://technet.microsoft.com/en-us/library/ee221156(EXCHG.80).aspx

I recommend  you to have 2 accounts for each admin. One which is normal account with mailbox. And a another account for admin purposes which is a domain admin.
Also remove domain admin to have full mailbox access on all the mailboxes.
0

Featured Post

Concerto's Cloud Advisory Services

Want to avoid the missteps to gaining all the benefits of the cloud? Learn more about the different assessment options from our Cloud Advisory team.

  • 4
Tackle projects and never again get stuck behind a technical roadblock.
Join Now