Data Loss Prevention (DLP) issues - Windows LTSC

Youcef Sifi 0 Reputation points
2025-06-12T18:09:01.9533333+00:00

Hello, I have deployed DLP policies for endpoint across multiple tenants, as I work as a consultant for several companies. One of my clients is using both Windows 11 Pro (General Availability) and Windows 11 LTSC (Build 26100.2894). The DLP policies are working correctly on the Windows 11 Pro devices, but not on the LTSC devices. I’m wondering if there might be a limitation with LTSC regarding DLP support. However, I couldn't find any official Microsoft documentation that confirms this. I’m opening this support ticket to get your input on the matter. Please respond as soon as possible. Thank you

Microsoft Security | Microsoft Purview
{count} votes

1 answer

Sort by: Most helpful
  1. Chandra Boorla 14,685 Reputation points Microsoft External Staff Moderator
    2025-06-12T18:54:03.49+00:00

    @Youcef Sifi

    Thank you for raising this important question.

    You're absolutely right to notice a difference in behavior between Windows 11 Pro and Windows 11 LTSC devices regarding Endpoint DLP. Based on current Microsoft support and documentation, Endpoint Data Loss Prevention (DLP) is not officially supported on Windows 11 LTSC editions.

    The LTSC (Long-Term Servicing Channel) is designed for stability-focused environments and does not receive regular feature updates like the General Availability (GA) channel. As a result, several modern Microsoft 365 features, including Microsoft Purview Endpoint DLP, may not function as expected or may be unsupported entirely on LTSC builds.

    Based on the current information from Microsoft:

    • Endpoint DLP is officially supported on Windows 10/11 Enterprise or Professional editions that are part of the Current (Semi-Annual) Channel.
    • Windows 11 LTSC editions, designed for stability and long-term servicing, do not receive regular feature updates and therefore lack support for several modern Microsoft 365 features, including Endpoint DLP.
    • While Microsoft has not explicitly published a standalone statement declaring Endpoint DLP unsupported on LTSC, this limitation is clearly implied by the product lifecycle, update model, and observed behavior in real-world environments.

    For full Endpoint DLP functionality and reliable policy enforcement, we recommend using supported Windows editions such as Windows 11 Pro or Enterprise running in the Current Channel across all endpoints.

    If DLP enforcement is a critical requirement for your client, migrating devices from LTSC to a supported edition will be necessary to achieve full compliance and feature support.

    I hope this information helps. Please do let us know if you have any further queries.

    Kindly consider upvoting the comment if the information provided is helpful. This can assist other community members in resolving similar issues.

    Thank you.

    1 person found this answer helpful.

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.