You can use Custom property in MSIP labeled classifications to identify and track sensitive content in co-authored and auto-save enabled documents using Labelinfo. Use the Labelinfo in MSIP classifications to read MIP label information or metadata in co-authored and auto-save enabled document.
Make sure that your Azure server is defined in Registered Servers in ePO - On-prem. For more information about registering Azure servers, see Configure the registered Azure server in ePO - On-prem for Microsoft Information Protection with Trellix DLP Network.
Create and configure sensitivity labels and their policies in Microsoft Purview. For more information, see https://learn.microsoft.com/en-us/microsoft-365/compliance/create-sensitivity-labels?view=o365-worldwide#create-and-configure-sensitivity-labels.
Get Label IDs of sensitivity labels needed to create MSIP labels (Labelinfo stream). See, https://learn.microsoft.com/en-us/powershell/module/exchange/get-label?view=exchange-ps.
Create a classification definition with MSIP label:
In ePO - On-prem, go to Menu → Data Protection → Classification → Definitions.
Under the Data category, click Document Properties and click Actions → New Item.
Click Custom Property. In the Custom property dialog box, enter
MSIP_Label_<labelID>_Enabledand click Add and then OK.For each of the
MSIP_Label_<labelID>_Enableddocument property, enter the comparison asEQUALSand the value asTrueand click Save.
MSIP labels with the sensitivity label IDs are created.
Include the MSIP Labelinfo in a classification:
To a create a new classification, navigate to Menu → Data Protection → Classification or you an edit an existing classification.
Click New Classification and type a unique name and an optional description. Click Save.
Click Actions, then select New Content Classification Criteria.
Browse to File conditions → Document Properties. Click ... to select the MSIP label created in Step 1.
Enter a name for the classification criteria and click Save.
In the Automatic Classification field, you can see the newly created MSIP classification criteria.
Create an Email protection rule or Web protection rule using the classification with MSIP label.
For information about how to create a rule, see Create a rule with classification grouping.
Assign the rule to a rule set and then assign the rule set to policies.
See, Create a rule set.