User Profile
ByDesign1977
Brass Contributor
Joined Nov 25, 2019
User Widgets
Recent Discussions
Re: Check Email Attachement Sensitivity label mail-flow rule
Yes you can do this using mailflow rules: Example below: If the message... Is sent to 'Outside the organization' and attachment metadata properties contain these words: 'MSIP_Label_XXXXXXXX-XXXXX-XXXXX_Enabled:True' Do the following... Prepend the subject with 'HIGHLY CONFIDENTAL MESSAGE:' and set message header 'MSIP_Header' with the value 'MSIP_Label_xxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxx'3.8KViews0likes1CommentRe: Policy Tips not showing on Outlook on Password Protected files
Do you have any exceptions in the policies? If you do remove them, then remove the xml file mentions above, close and restart Outlook and then click to create a new email to test (please note though that after removing the exceptions that it can take up to 24hrs for the polcies to fully redeploy so test ever few hours)1.7KViews0likes2CommentsAlways on VPN Split tunnel
Hi All I don't know to much about MS Always On VPN but have a question. If a user is at a client site and is trying to access a resource on the clients network that is in a similar IP range as what has been sent to go over the VPN tunnel, what would be the best way for this certain group of users to stop specific IP addresses from going over the tunnel and instead breaking out to use the local network resource? Would it also be possible to automattically detect when on these networks/sites so when these users are connecting from else where, the IP addresses are then sent back over the tunnel? I hope the above makes sense. Any advise would be greatly appreciated.953Views0likes0CommentsRe: Policy Tips not showing on Outlook on Password Protected files
It could be that the policynudgerules file isn't updating properly. If you close Outlook, rename the file to something like .old (so you are not deleteing it), reopen outlook then click to create a new email it should recreate a new version of that file. Its worth then comparing the two files to check for differenses. Also, if this is working for any of your users it is worth comparing there working policynudgerules file with your non-working one to check for differences. Does this policy work in Outlook online?1.9KViews0likes4CommentsDLP Policy tips not showing when sending to external recipient
Hi We are having an issue where if there is Pii or financial information in an email or attachment, when sending externally the policy tips are not displayed in Outlook (they do work when using Outlook online). The policy itself works as blocks happen as expected etc. Through investigating this we noticed that the policynudgerules_xxxx.xml file only has the internal config in it and not the external. As a test I found an old version of this file and copied over the external config from that file into the newer and it instantly started working. Trouble is this files gets overwritten periodically. I have also found that removing the reg key 'LastDownloadTimesPerAccount' and renaming the policynudgerules_xxxx.xml file so that it regenerates doesn't help and it only contains the config if sending internally. Has anyone else come accorss this? I have managed to recreat the exact issue in two tenants with the same results. I do have a call open with MS but they are taking ages to even unsderstand and end users are quickly loosing faith. If anyone could offer some help or advise into if this has been seen else where that would be very much appreciated. P.S., before anyone says, DLP is setup in the compliance centre and there are no other DLP rules configured in Exhange online. Many thanks in advance.Adding OneDrive for business sites to a dlp policy using powershell
Hi All I wonder if anyone can help. I am trying to add a list of onedrive for business sites to a dlp policy. The code I am using is: $new = import-csv C:\Temp\sitestoadd.csv $newlocations = $new.OD4BSites Set-DlpCompliancePolicy -Identity "Personally Identifiable Information (PII) - External" -AddOneDriveLocation $newlocations I am getting the error shown below: Cannot process argument transformation on parameter 'AddOneDriveLocation'. Cannot convert value "https://xxxuk-my.sharepoint.com/personal/x_xxxxx_xxx_com to type "Microsoft.Exchange.Data.MultiValuedProperty`1[System.String]" + CategoryInfo : InvalidData: (:) [Set-DlpCompliancePolicy], ParameterBindin...mationException + FullyQualifiedErrorId : ParameterArgumentTransformationError,Set-DlpCompliancePolicy + PSComputerName : eur03b.ps.compliance.protection.outlook.com I have searched and searched but cannot find an answer. Does anyone have any ideas? Many thanksError when accessing Relevance module in Advanced eDiscovery
Hi All I was wondering if anyone has seen the below error when trying to access the relevance module in advanced eDiscovery? Its been working fine up untill today. I have tried in Chrome, The new Edge and IE and its the same in each. I have also tried with 2 different accounts that each have full access to the case. Does anyone have any ideas? Many thanks in advance for any help.703Views0likes0CommentseDiscovery Advice needed
Hi I wonder if anyone can offer some advice. I have been tasked with performing an eDiscovery in relation to a internal subject access request (this is the first time I have had to do this). The information required is bassically, any mention of the user who made this request accross email, sharepoint etc. Firstly, I have created the case and done 3 x searches. One with the locations below: exchange, yammer, group email, sfb, teams messages, to-do, sway forms. Another with the locations below: SharePoint, OneDrive Accounts, O365 Group Sites, Teams Sites, Yammer Networks and one for public folders. I have added a condition to cover the date range from when the user started at the company and for keywords I have simply used "users name" AND "user ID". The results I have got back in term of data are huge. Just the first search mentioned above, including unindexed items is 6.69TB. I understand there are limits in terms of 2GB per export for these sorts of things. Can anyone advise how they deal with this as this would mean splitting this one search down into 3345 individual searches if my math is correct which obviously isn't very inviting to do or even achievable. Am I doing something wrong here, has anyone had similar experiances and how was this sort of task completed? Any advice will be greatfully received. Many thanks all.871Views0likes0CommentsRe: WEC Server question
For anyone that is interested, I fixed this by by creating a subscription per event log and filtering the subscription by the specific ID for that log. I also noticed that for any subscription with more than 20 event id's in the filter it didn't like it so I again split down to ensure I had no more than 20 event ID in any filter. All is working now. I hope this helps someone. Enjoy 🙂2KViews0likes0CommentsWEC Server question
Hi I am in the process of setting up a WEC server. I am filtering the subscription by event ID. When filtering by these ID's: 19,20,41,43,59,80,104,1000,1001,1002,1006,1007,1008,1009,1074,1100,1102,1102,1116,1117,1118,1119 Every thing works greats. If I add even a single ID from the list below everything stops and no new events are logged: 4103,4104,4610,4612,4616,4624,4625,4627,4648,4649,4662,4664,4672,4697,4698,4699,4700,4701,4702,4703,4706,4707,4715,4719,4720,4722,4723,4724,4726,4727,4728,4729,4730,4731,4732,4733,4734,4735,4737,4738,4739,4740,4741,4742,4743,4754,4755,4756,4757,4758,4764,4765,4766,4768,4769,4770,4771,4772,4773,4774,4775,4776,4777,4778,4779,4780,4794,4797,4798,4799,4825,4830,4865,4866,4867,4887,4888,5024,5025,5136,5137,5138,5139,5140,5141,5142,5143,5144,5145,5632,5633,5861,6006,6416,7000,7009,7040,7045,8000,30622,30624 I have split down the event ID's into different subscription's and tried just using random ones from the list of event's that are not working but nothing. Does anyone have any ideas on this? Any help would be appreciated. Kind regardsSolvedSensitivity Labels in Outlook
In Outlook, when creating a new email, if you click file > properties, in the window that loads there is a drop down called sensitivity with a set of labels within it. How do these compare to the new unified labelling and what differences are there between these in terms of functionality and intended use? This also appears in the outlook options where you can set a default from these labels. Reason I ask is that it has come to my attention that some users use these. I am currently in the process of rolling out Unified labelling and forgot that these in built Outlook labels even existed. I feel these are legacy but the fact that they are there is a potential cause for confusion so wanted to reach out to see how others have dealt with these along side the unified labelling. Many thanks in advance for your assistance with this.Solved4KViews0likes1CommentRe: Check Email Attachement Sensitivity label mail-flow rule
PeterRising Many thanks. Any ideas why this isn't working? I am attaching a word doc set to highly confidential but the initial email is confidential so I want to insert into the header so the email gateway reads it. I have tested and its not inserting the information into the email header for some reason Many thanks in advance.4.9KViews0likes6CommentsCheck Email Attachement Sensitivity label mail-flow rule
Hi All Is there a way that a mailflow rule can be used to check an attachments sensitivity label, if the attachments sensitivity label is higher than what the emails is set to then the emails sensitivity is automatically raised to match the attachment (but not lowered if the attachments is lower than the emails)? I hope this makes sense. Personally I would have thought this would be the case bydesign. What I have tried so far is below (label guid stared out). There must be a better way to do this though. Any ideas: If the message... Is sent to 'Outside the organization' and attachment metadata properties contain these words: 'MSIP_Label_******-****-****-****-*******_Enabled:True' Do the following... set message header 'MSIP_Header' with the value 'MSIP_Label_******-****-****-****-*******' This is then read by the email gateway service and is dealt with in a way that we want the sensitivity to be dealt with. Any suggestions on this would be greatly appreciated. Thanks.Solved5.2KViews0likes8Comments
Recent Blog Articles
No content to show