Blog Post

Microsoft Security Community Blog
3 MIN READ

Azure RMS Documentation Update for August 2016

Azure Information Protection Team's avatar
Sep 08, 2018
First published on CloudBlogs on Aug 31, 2016
Hi everybody Our technical writer, Carol Bailey, is letting you know what’s new and hot in the docs for this month. Reminders: Follow us on Twitter ( http://twitter.com/TheRMSGuy ) and join in our peer community at http://www.yammer.com/AskIPTeam . Dan (on behalf of the Information Protection team) The https://docs.microsoft.com/en-us/rights-management/ has been updated on the web and the latest content has a August 2016 (or later) date at the top of the article. In addition to the Azure RMS doc updates listed below, if you've been following and evaluating the Azure Information Protection preview, you might be interested in these doc updates:
  • Requirements and additional information for the https://blogs.technet.microsoft.com/enterprisemobility/2016/08/10/azure-information-protection-with-hyok-hold-your-own-key/ "hold your own key" feature, which uses AD RMS to protect the small percentage of documents or emails that must use an on-premises key: https://docs.microsoft.com/en-us/rights-management/information-protection/configure-adrms-restrictions .
  • Additional information and examples for the variables that you can use in the headers and footers: See the https://docs.microsoft.com/en-us/rights-management/information-protection/configure-policy-markings#using-variables-in-the-text-string section from the policy configuration documentation.
  • Try some of the example conditions documented in the https://docs.microsoft.com/en-us/rights-management/information-protection/configure-policy-classification#information-about-the-built-in-conditions section, also from the policy configuration documentation.
We invite you to share your findings or ask questions about the preview with the https://www.yammer.com/askipteam/#/threads/inGroup?type=in_group&feedId=8652489&view=all on Yammer. If you have feedback about the documentation for Azure RMS, the RMS sharing application, or Azure Information Protection: Email mailto:askipteam@microsoft.com?subject=Documentation%20feedback . We value customer feedback and try to incorporate it whenever possible.

What's new in the documentation for Azure Rights Management, August 2016

The following information lists the articles that have significant technical changes since the last update (July 2016). If you have problems finding information on the new publishing site, let us know and we will help you locate it while the search engines index these new pages. https://docs.microsoft.com/en-us/rights-management/get-started/requirements-applications - Updated the table for Android and Office Mobile for Word, Excel, PowerPoint to clarify that this is supported for Azure RMS only. This clarification is also added to the https://technet.microsoft.com/en-us/library/dn673574(v=ws.11).aspx documentation. https://docs.microsoft.com/en-us/rights-management/plan-design/plan-implement-tenant-key - Updates throughout now that Azure RMS bring you own key (BYOK) uses Azure Key Vault. Also clarified that you can move to BYOK at any time and retain access to previously protected documents and emails by using the previous, now archived key. https://docs.microsoft.com/en-us/rights-management/plan-design/migrate-from-ad-rms-to-azure-rms - Updates to procedures for when you want to manage your own tenant key (BYOK with Azure Key Vault), and the new requirements that your AD RMS servers must be in cryptographic mode 2 and running at least Windows Server 2008 R2 (Windows Server 2008 is no longer supported). https://docs.microsoft.com/en-us/rights-management/deploy-use/configure-usage-rights - Updated to clarify that the Full Control right is required to re-protect documents and emails. https://docs.microsoft.com/en-us/rights-management/deploy-use/log-analyze-usage - Updated for the new request types (KeyVaultDecryptRequest, KeyVaultGetKeyInfoRequest, KeyVaultSignDigest) now that BYOK uses Azure Key Vault. https://docs.microsoft.com/en-us/rights-management/deploy-use/install-powershell - Updated for the latest Azure RMS PowerShell module: version 2.5.0.0. For this new version, you must uninstall any previously installed versions of the Azure Rights Management Administration Tool, and you no longer need the Microsoft Online Services Sign-In Assistant. You can use this version of the PowerShell module to connect to Azure RMS with an account that uses MFA, by using the https://msdn.microsoft.com/en-us/library/dn629415.aspx cmdlet without any parameters. https://docs.microsoft.com/en-us/rights-management/rms-client/sharing-app-admin-guide - Updated the automatic deployment instructions, for Office 2010 and AD RMS: Step 2 has new instructions for Windows 7, where the aadrmpep.exe /configureO2010 command must be run from within the context of the x64\win 7 or x86\win7 folder. https://msdn.microsoft.com/en-us/library/mt759829.aspx - New Azure RMS cmdlet for when you want to manage your own tenant key (BYOK) by using Azure Key Vault.
Published Sep 08, 2018
Version 1.0
No CommentsBe the first to comment