Register an Azure server for Microsoft Information Protection

Prev Next

Trellix DLP Endpoint - SaaS can integrate with Azure Microsoft Information Protection (MIP). Register an Azure server and protection labels so that you can protect them with your policies.

  • Register a client application with Azure Active Directory. See KB91833 for details about registering a client application with Microsoft Azure.

  • Verify you have permissions to configure an Azure server. In ePO - SaaS, select MenuUsers & Roles and verify you have permissions for DLP Policy ManagerDLP Definitions.

  • You installed Azure Information Protection 2.6.111 on each endpoint using RM services.

  1. In ePO - SaaS, select MenuDLP Policy ManagerDefinitions.

  2. In the left pane, in the RM Servers category, select Microsoft Information protection. Click ActionsNew Item.

  3. Enter a name for the server configuration, and optional description.

  4. Enter the Application (Client) ID and Directory (Tenant) ID as defined in your Azure application registration details.

  5. Enter each AIP label name and AIP label ID as it appears in your Azure account.

  6. Click Save when you have completed the configuration.

Your Azure server and information protection labels are now saved. These files can now be tracked with classifications, encrypted with file encryption definition, and can be defined with a rule reaction for Cloud, Removable Storage, Endpoint File System Discovery and Network Share Protection rules.