EXT-08: Audit Mailbox Delegation
Frequently asked questions about implementing and managing the EXT-08 security control in Microsoft 365 and Entra ID.
QWhat is EXT-08 (Audit Mailbox Delegation)?▼
EXT-08 is a security control that mailbox delegation enables users to send email as others or access their mailboxes. unauthorized delegation can be used for impersonation attacks or to access sensitive communications without detection. It requires that sendas permissions on mailboxes are documented and sendonbehalf permissions are tracked, fullaccess mailbox permissions are reviewed, delegation changes are monitored.
QWhy is Audit Mailbox Delegation important for Microsoft 365 security?▼
Mailbox delegation enables users to send email as others or access their mailboxes. Unauthorized delegation can be used for impersonation attacks or to access sensitive communications without detection.
QHow do I implement EXT-08 in my tenant?▼
EXT-08 requires manual implementation. Requires Exchange admin access or Microsoft Graph Reports API
QWhat license do I need for EXT-08?▼
This control can be implemented with any Microsoft 365 subscription, including free Azure AD.
QWhich security baseline includes EXT-08?▼
EXT-08 is included in the Enhanced Security baseline (Level 2). This level adds stricter controls for security-conscious organizations.
5
Questions
1
Related Controls
—
Categorized
Related Resources
Still have questions?
Our security experts are here to help. Start a free trial and get personalized guidance for your Microsoft 365 environment.
Start Free Trial