37 lines
		
	
	
		
			1.2 KiB
		
	
	
	
		
			PowerShell
		
	
	
	
	
	
			
		
		
	
	
			37 lines
		
	
	
		
			1.2 KiB
		
	
	
	
		
			PowerShell
		
	
	
	
	
	
| function Test-SharePointGuestsItemSharing {
 | |
|     [CmdletBinding()]
 | |
|     param (
 | |
|         # Aligned
 | |
|         # Define your parameters here
 | |
|     )
 | |
| 
 | |
|     begin {
 | |
|         # Dot source the class script if necessary
 | |
|         #. .\source\Classes\CISAuditResult.ps1
 | |
|         # Initialization code, if needed
 | |
| 
 | |
|         $auditResult = [CISAuditResult]::new()
 | |
|     }
 | |
| 
 | |
|     process {
 | |
|         # 7.2.5 (L2) Ensure that SharePoint guest users cannot share items they don't own
 | |
|         $SPOTenant = Get-SPOTenant | Select-Object PreventExternalUsersFromResharing
 | |
|         $isGuestResharingPrevented = $SPOTenant.PreventExternalUsersFromResharing
 | |
| 
 | |
|         # Populate the auditResult object with the required properties
 | |
|         $params = @{
 | |
|             Rec            = "7.2.5"
 | |
|             Result         = $isGuestResharingPrevented
 | |
|             Status         = if ($isGuestResharingPrevented) { "Pass" } else { "Fail" }
 | |
|             Details        = "PreventExternalUsersFromResharing: $isGuestResharingPrevented"
 | |
|             FailureReason  = if (-not $isGuestResharingPrevented) { "Guest users can reshare items they don't own." } else { "N/A" }
 | |
|         }
 | |
|         $auditResult = Initialize-CISAuditResult @params
 | |
|     }
 | |
| 
 | |
|     end {
 | |
|         # Return auditResult
 | |
|         return $auditResult
 | |
|     }
 | |
| }
 |