How to govern Inventory in Exchange
A step-by-step guide to governing Inventory in Exchange with Rencore: detect, review by owner and severity, and remediate with an audit trail.
Governing Inventory in Exchange means finding where it goes wrong, reviewing the findings by owner and severity, and remediating with an audit trail. Rencore covers this concern for Exchange with the pre-built controls below, so it becomes a repeatable check rather than a one-off cleanup. The steps that follow apply the same detect, review, remediate loop to Inventory.
Steps
-
Inventory Exchange
Connect Exchange and let Rencore build a continuous inventory of its resources, owners, and configuration, so governance starts from what exists rather than a stale export.
-
Detect with policies
Turn on the pre-built policies that cover Inventory in Exchange to surface oversharing, sprawl, and misconfiguration on the first scan, before writing a single custom rule.
-
Review by owner and severity
Use the Exchange reports to review findings by owner, category, and severity, and to share them with stakeholders who do not have a seat in the platform.
-
Remediate and automate
Apply automations to fix findings at scale, route sensitive changes through approvals, and keep every action reversible and logged for the audit trail.
Exchange controls for Inventory
Grounded in the Rencore catalog. See the full Exchange catalog on the Exchange connector page.
-
Mailbox
All Exchange mailboxes of your users, rooms & equipment
-
Redirect Rule
All registered Exchange mailbox redirect rules
-
Calendar Permission
Permissions configured on Exchange mailbox calendars (sharing and delegation).
-
Exchange Organization Configuration
Tenant-wide Exchange Online configuration settings.
-
Remote Domain
Exchange remote domain entries that govern message handling for specific external domains.
-
Journal Rule
Exchange journal rules that capture copies of messages to a journal recipient (compliance / legal hold).
-
Exchange Audit Event
Exchange administrative and mailbox audit events ingested from the Office 365 Management Activity API.
-
Transport Rule
Exchange mail flow / transport rules. Top governance signal for BEC and data exfiltration patterns.
-
Accepted Domain
DNS domains the tenant accepts mail for, joined with DKIM signing status.
-
Mail Flow Connector
Inbound and outbound mail flow connectors. Misconfigured connectors are a common spoofing / smart-host hijack vector.
-
Mail Contact
External recipients in the GAL. Stale contacts pointing at compromised or expired domains are a quiet leak vector.
-
Mail User
Mail-enabled users that route to an external SMTP address. Common offboarding-leak signal.
-
Distribution Group
Exchange-style distribution lists and dynamic distribution lists. Open DLs accepting external mail are a phishing relay risk.
-
Mailbox Audit Bypass
Accounts excluded from mailbox audit logging. Bypassed service accounts can read mail invisibly; high-signal finding most products miss.
-
Exchange Role Group
Exchange Online RBAC role groups (Org Management, Recipient Management, etc.).
-
Exchange Role Assignment
Direct RBAC role assignments outside of role groups. Direct assignments bypass role-group governance; auditor blind spot.
-
Exchange Security Policy
Microsoft Defender for Office 365 / EOP security policies; anti-phish, anti-spam, Safe Links, Safe Attachments, malware filter, outbound spam, and quarantine policies.
-
Resource Mailbox
Room and equipment mailboxes with Place metadata and calendar booking policies.
-
Mobile Device
Exchange ActiveSync mobile device partnerships.
-
Mobile Device Policy
Exchange ActiveSync mailbox policies controlling device password, encryption, and feature access.