Forum Discussion

dilanmic's avatar
Jun 21, 2023

Help on few DLP scenarios

Hi all,

 

I would appreciate that if anyone would help me on below DLP requirements.

 

  • Block sending emails to external domains, if @xxx.com email ID (Our email domain) is not mentioned in the "To" or "CC" field (Office 365 DLP).
  • Block the screen capturing activities on Windows 10/11 devices (Endpoint DLP).

 

thanks in advance!

 

Thanks,

Dilan

2 Replies

  • miller34mike's avatar
    miller34mike
    Steel Contributor

    Hi dilanmic 

     

    Unfortunately, Endpoint DLP cannot prevent screen capturing. It can prevent copying and pasting the content into a different file, but not an action such as using winkey+shift+s to capture your screen.

     

    For your email needs, can you help me better understand the entire goal?

    • Are you wanting to block any email from being sent to an external recipient unless there is an internal email as a recipient as well?
    • Are you only wanting to block emails from being sent externally if they contain a certain type of content?

     

    If you're wanting to better understand Exchange Online DLP, check out my blog post linked below!

     

    Microsoft Purview DLP – Part 4 – Exchange DLP – Cloudy Security (cloudy-sec.com)

     

     

    • dilanmic's avatar
      dilanmic
      MCT

      Thank you very much for the reply.

      below is our real scenario for Exchange DLP,

      block emails from being sent external Gmail addresses if they contain a certain type of content and doesn't "CC" or "To" none of company email addresses.

      actually, we want to block any email being sent to Gmail addresses but unfortunately we have certain customers do have Gmail therefore we are not able to block all Gmail addresses. because of that we don't want to block if there are any company email addresses in "To" or "CC" field which send to Gmail address.

      Thanks!
      Dilan