Enpoint DLP policy does not apply to synced OneDrive files that are using files on demand

JM 0 Reputation points
2023-11-06T14:42:48.44+00:00

Any files that are in the "Cloud" status using the Onedrive sync do not have Endpoint DLP policies applied. This allows activities that would be blocked when the file is downloaded e.g. after the first time you open the document.

Is there a way to block this behavior or is the only solution to disable OneDrive files on demand.

Azure Information Protection
Azure Information Protection
An Azure service that is used to control and help secure email, documents, and sensitive data that are shared outside the company.
525 questions
OneDrive Management
OneDrive Management
OneDrive: A Microsoft file hosting and synchronization service.Management: The act or process of organizing, handling, directing or controlling something.
1,173 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Emi Zhang-MSFT 23,191 Reputation points Microsoft Vendor
    2023-11-07T08:26:25.24+00:00

    Hi,

    I suggest you check if this article is helpful:

    https://learn.microsoft.com/en-us/purview/dlp-configure-endpoint-settings#auto-quarantine

    Just checking in to see if the information was helpful. Please let us know if you would like further assistance.


    If the response is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments