What is the definition of "Corporate Network" when setting up exceptions in endpoint DLP ?

philippe augras 25 Reputation points
2024-03-11T16:39:25.9933333+00:00

Hello,

does anyone here know what "Corporate Network" means in Purview Information Protection's endpoint DLPs ? I can't find it in the settings, neither can I find a precise definition except "connection to corporate ressources".

User's image

Regards,

P.

Microsoft Security | Microsoft Purview
{count} vote

2 answers

Sort by: Most helpful
  1. Marcin Policht 51,370 Reputation points MVP Volunteer Moderator
    2024-03-11T21:58:27.3433333+00:00

    As per https://learn.microsoft.com/en-us/purview/dlp-configure-endpoint-settings

    Under the Network restrictions setting, you will also see Corporate network as an option. Corporate network connections are all connections to your organizations resources. You can see if device is using a Corporate network by running the Get-NetConnectionProfile cmdlet as an administrator. If the NetworkCategoryId in the output is DomainAuthenticated, it means the machine is connected to the Corporate network. If the output is anything else, the machine is not .


    hth

    Marcin

    0 comments No comments

  2. AnnuKumari-MSFT 34,561 Reputation points Microsoft Employee Moderator
    2024-04-02T09:27:20.9233333+00:00

    @philippe augras

    In addition to the above information, With respect to the Purview Information Protection's endpoint DLPs, "Corporate Network" likely refers to the network or networks that are owned and managed by the organization using Purview Information Protection.

    This could include the organization's internal network, as well as any external networks or cloud services that are used by the organization and are considered part of the corporate network.

    The endpoint DLPs in Purview Information Protection are designed to help organizations protect sensitive data that is stored on endpoints such as laptops, desktops, and mobile devices. By defining policies that specify which data should be protected and how it should be protected, organizations can help prevent data breaches and other security incidents.

    The "Corporate Network" setting in the endpoint DLPs may be used to specify which networks or network segments are considered part of the organization's corporate network, and therefore subject to the DLP policies. This can help ensure that sensitive data is protected regardless of where it is stored or accessed within the corporate network.

    Hope it helps. Kindly accept the answer by clicking on Accept answer button. Thankyou

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.