From the course: Microsoft Information Security Administrator Associate (SC-401) Cert Prep by Microsoft Press
Unlock this course with a free trial
Join today to access over 25,300 courses taught by industry experts.
Configure Endpoint DLP settings - Microsoft 365 Tutorial
From the course: Microsoft Information Security Administrator Associate (SC-401) Cert Prep by Microsoft Press
Configure Endpoint DLP settings
Now, let's look at how we configure global endpoint DLP settings within Purview. There's quite a number of different things that we can add here. One setting is advanced classification scanning and protection, and that way if you turn this on, it allows the endpoint agent to do things like EDM detection and to use trainable classifiers on the device. Essentially, advanced classification lets the endpoint perform more sophisticated content analysis, for example, matching a sensitive information type exactly from a database rather than the pattern guessing. You can also set rules based on sensitivity labels here. For instance, you might configure that any file labeled highly confidential is always blocked from being printed or moved to USB no matter what content is inside. This can be done in policy too, but the settings page provides a central switch if you want to uniformly enforce label-based actions. If you're looking at endpoints, you may have hundreds or even thousands of them so…
Contents
-
-
-
-
-
-
-
(Locked)
Learning objectives1m 8s
-
(Locked)
Specify device requirements for Endpoint DLP, including extensions3m 6s
-
(Locked)
Configure advanced DLP rules for devices in DLP policies5m 31s
-
(Locked)
Configure Endpoint DLP settings7m 5s
-
(Locked)
Configure just-in-time protection7m 45s
-
(Locked)
Monitor endpoint activities4m 42s
-
(Locked)
-
-
-
-
-