Dlp policy to block un labeled files

Mohammed Alsahabi 21 Reputation points
2024-07-26T13:06:34.2133333+00:00

Hello there, we want to Create a Data Loss Prevention (DLP) policy to block or reject files without a a sensitive label. We are able to do so in office 356 app, but in files like pdf, text..etc, we want to force our employees yo label all files and a policy that check if the file has label or not , if not reject with a message saying , plz label the file and try again

Microsoft 365
Microsoft 365
Formerly Office 365, is a line of subscription services offered by Microsoft which adds to and includes the Microsoft Office product line.
5,134 questions
Office
Office
A suite of Microsoft productivity software that supports common business tasks, including word processing, email, presentations, and data management and analysis.
1,716 questions
Microsoft Purview
Microsoft Purview
A Microsoft data governance service that helps manage and govern on-premises, multicloud, and software-as-a-service data. Previously known as Azure Purview.
1,224 questions
{count} votes

1 answer

Sort by: Most helpful
  1. PRADEEPCHEEKATLA 90,226 Reputation points
    2024-07-29T07:22:04.7233333+00:00

    @Mohammed Alsahabi - Thanks for the question and using MS Q&A platform.

    To create a DLP policy to block or reject files without a sensitive label, you can follow the steps below:

    Create or modify an existing sensitivity label in the Microsoft Purview compliance portal. You can define autolabeling rules for files and schematized data assets to apply your labels automatically with each scan.

    Once you have created your labels with autolabeling rules, you can register and scan your assets in the Microsoft Purview Data Map. Microsoft Purview will apply classifications and labels automatically based on the autolabeling rules you have defined.

    After you have extended labeling to assets in the Microsoft Purview Data Map, all published sensitivity labels are available for use in the data map.

    To create a DLP policy to block or reject files without a sensitive label, you can use Microsoft Information Protection (MIP) and Azure Information Protection (AIP) to apply sensitivity labels to your files. You can then create a DLP policy in Microsoft 365 Compliance Center to block or reject files without a sensitive label.

    However, please note that this DLP policy will only work for files that are supported by MIP and AIP, such as Office documents. For files like PDFs and text files, you may need to use a third-party solution to enforce labeling.

    For more details, refer to How to automatically apply sensitivity labels to your data in the Microsoft Purview Data Map (Preview)

    I hope this helps! Let me know if you have any further questions.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.