Governance guide

How to govern Operation in Exchange

A step-by-step guide to governing Operation in Exchange with Rencore: detect, review by owner and severity, and remediate with an audit trail.

Definition

Governing Operation in Exchange means finding where it goes wrong, reviewing the findings by owner and severity, and remediating with an audit trail. Rencore covers this concern for Exchange with the pre-built controls below, so it becomes a repeatable check rather than a one-off cleanup. The steps that follow apply the same detect, review, remediate loop to Operation.

Steps

  1. Inventory Exchange

    Connect Exchange and let Rencore build a continuous inventory of its resources, owners, and configuration, so governance starts from what exists rather than a stale export.

  2. Detect with policies

    Turn on the pre-built policies that cover Operation in Exchange to surface oversharing, sprawl, and misconfiguration on the first scan, before writing a single custom rule.

  3. Review by owner and severity

    Use the Exchange reports to review findings by owner, category, and severity, and to share them with stakeholders who do not have a seat in the platform.

  4. Remediate and automate

    Apply automations to fix findings at scale, route sensitive changes through approvals, and keep every action reversible and logged for the audit trail.

Exchange controls for Operation

Grounded in the Rencore catalog. See the full Exchange catalog on the Exchange connector page.

  • Mailboxes near storage quota

    Shows mailboxes that have used more than 80% of their prohibit-send quota.

    Severity: High
  • Large mailboxes without archive

    Shows mailboxes larger than 50 GB that do not have an online archive enabled.

    Severity: Medium
  • Very large mailboxes (90+ GB)

    Shows mailboxes whose total storage exceeds 90 GB.

    Severity: Low
  • Shared mailboxes with high storage

    Shows shared mailboxes that have used more than 60% of their prohibit-send quota.

    Severity: Medium
  • Mailboxes with auto-reply always enabled

    Shows mailboxes whose automatic reply is set to 'always enabled' (no end date).

    Severity: Low
  • Resource mailbox without delegate

    Detects room or equipment mailboxes that have no approval delegate assigned.

    Severity: Low
  • Mailboxes by type

    Distribution of mailboxes by user purpose (user, shared, room, equipment).

  • Top mailboxes by storage

    Top 10 mailboxes by total storage used.

  • Distribution groups by type

    Distribution of Exchange distribution groups by group type.

  • Mobile devices by operating system

    Distribution of Exchange ActiveSync device partnerships by device OS.

  • Mail flow connectors by direction

    Distribution of mail flow connectors by inbound vs outbound direction.

  • Resource mailboxes by type

    Distribution of resource mailboxes by room vs equipment type.

  • Mailboxes Near Quota

    Mailboxes that have used more than 80% of their prohibit-send quota.

  • Large Mailboxes

    Mailboxes whose total storage exceeds 50 GB.

  • DLs without owners

    Distribution groups that have no assigned owners.

  • Audit-mode transport rules

    Transport rules running in audit or audit-and-notify mode.

  • Resources without delegates

    Resource mailboxes that have no booking delegates assigned.

  • Disable Auto-Reply

    Disables the automatic reply (out-of-office) on a mailbox

  • Enable Mailbox Archive

    Enables the online archive on a large mailbox to offload older content

Explore the full Exchange governance catalog | All guides

Trusted by

MAPALBAMVille de LuxembourgWACKERGRUNDFOSAMGENOsramLufthansaThyssenKruppSunrisePattern