Enpoint DLP policy does not apply to synced OneDrive files that are using files on demand

JM 0 Reputation points
2023-11-06T14:42:48.44+00:00

Any files that are in the "Cloud" status using the Onedrive sync do not have Endpoint DLP policies applied. This allows activities that would be blocked when the file is downloaded e.g. after the first time you open the document.

Is there a way to block this behavior or is the only solution to disable OneDrive files on demand.

Azure Information Protection
Azure Information Protection
An Azure service that is used to control and help secure email, documents, and sensitive data that are shared outside the company.
559 questions
OneDrive Management
OneDrive Management
OneDrive: A Microsoft file hosting and synchronization service.Management: The act or process of organizing, handling, directing or controlling something.
1,503 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Emi Zhang-MSFT 30,036 Reputation points Microsoft External Staff
    2023-11-07T08:26:25.24+00:00

    Hi,

    I suggest you check if this article is helpful:

    https://learn.microsoft.com/en-us/purview/dlp-configure-endpoint-settings#auto-quarantine

    Just checking in to see if the information was helpful. Please let us know if you would like further assistance.


    If the response is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.