Updates from: 03/17/2023 03:08:02
Category Microsoft Docs article Related commit history on GitHub Change details
admin Add Users https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/add-users/add-users.md
Last updated 07/01/2020
# Add users and assign licenses at the same time
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ Check out [Microsoft 365 small business help](https://go.microsoft.com/fwlink/?linkid=2197659) on YouTube. The people on your team each need a user account before they can sign in and access [Microsoft 365 for business](https://www.microsoft.com/microsoft-365/business). The easiest way to add user accounts is to add them one at a time in the <a href="https://go.microsoft.com/fwlink/p/?linkid=2024339" target="_blank">Microsoft 365 admin center</a>. After you do this step, your users have Microsoft 365 licenses, sign in credentials, and Microsoft 365 mailboxes.
admin Let Users Reset Passwords https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/add-users/let-users-reset-passwords.md
description: "Learn how you can set a policy in the Microsoft 365 admin center t
# Let users reset their own passwords
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ Check out [Microsoft 365 small business help](https://go.microsoft.com/fwlink/?linkid=2197659) on YouTube. As the Microsoft 365 admin, you can let people use the [self-service password reset tool](https://go.microsoft.com/fwlink/p/?LinkId=522677) so you don't have to reset passwords for them. Less work for you!
admin Reset Passwords https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/add-users/reset-passwords.md
description: "Sign in with your Microsoft 365 admin account to reset passwords f
# Reset passwords in Microsoft 365 for business
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ Check out [Microsoft 365 small business help](https://go.microsoft.com/fwlink/?linkid=2197659) on YouTube. This article explains how to reset passwords for yourself and for your users when you have a Microsoft 365 for business subscription.
admin Set Password To Never Expire https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/add-users/set-password-to-never-expire.md
description: "Sign in to your Microsoft 365 admin account to set some individual
# Set an individual user's password to never expire
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ This article explains how to set a password for an individual user to not expire. You have to complete these steps using PowerShell. ## Before you begin
admin Admin Center Overview https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/admin-overview/admin-center-overview.md
description: "Use either simplified view in the Microsoft 365 admin center to ma
# Overview of the Microsoft 365 admin center
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ The Microsoft 365 admin center gives users a central location to take care of common admin tasks, such as: - Manage users: [Add users and assign licenses at the same time](../add-users/add-users.md), [Delete or restore users](../add-users/delete-a-user.md), or [Reset a user's password](../add-users/reset-passwords.md).
admin Admin Mobile App https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/admin-overview/admin-mobile-app.md
description: "Get the Microsoft 365 Admin app, your companion to the web-based M
# About the Microsoft 365 Admin mobile app
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ Check out [Microsoft 365 small business help](https://go.microsoft.com/fwlink/?linkid=2197659) on YouTube. Are you an admin whoΓÇÖs usually on the go? Even if you arenΓÇÖt, there may be times when you need to manage Microsoft 365 from your phone or tablet. Check out the free [Microsoft 365 Admin app](https://go.microsoft.com/fwlink/?LinkID=627216), the perfect companion to the web-based Microsoft 365 admin center. You can download the app from the [Apple App Store](https://apps.apple.com/app/apple-store/id761397963?pt=80423&ct=docsaboutadminapp&mt=8), and from the [Google Play Store](https://play.google.com/store/apps/details?id=com.ms.office365admin&referrer=utm_source%3Ddocsaboutadminapp%26utm_campaign%25docsaboutadminapp), as well as from Microsoft 365 Admin app link in the upper right in the <a href="https://go.microsoft.com/fwlink/p/?linkid=2024339" target="_blank">Microsoft 365 admin center</a>.
admin Sign Up For Office 365 https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/admin-overview/sign-up-for-office-365.md
Last updated 03/17/2021
# How to sign up - Admin Help
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ Check out [Microsoft 365 small business help](https://go.microsoft.com/fwlink/?linkid=2197659) on YouTube. Sign up for Microsoft 365 for business so that your team can begin using the latest versions of Word, Excel, PowerPoint, and other Office programs.
admin What Is Microsoft 365 For Business https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/admin-overview/what-is-microsoft-365-for-business.md
Last updated 04/27/2022
# What is Microsoft 365 for business
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ > [!VIDEO https://www.microsoft.com/videoplayer/embed/RE4U5xs?autoplay=false] [Microsoft 365 for business](https://www.microsoft.com/microsoft-365/business) is a subscription service that lets you run your organization in the cloud while Microsoft takes care of the IT for you. It connects employees to the people, information, and content they need to do their best work, from any device.
admin What Subscription Do I Have https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/admin-overview/what-subscription-do-i-have.md
Last updated 01/21/2021
# Which Microsoft 365 subscription do I have?
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ If you're an admin, you can verify which subscriptions your organization has by going to the admin center. **Not an admin?** See [What Microsoft 365 for business product or license do I have?](https://support.microsoft.com/office/f8ab5e25-bf3f-4a47-b264-174b1ee925fd)
admin Meetings New https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/adoption/meetings-new.md
description: "Learn more about Meetings insights score - people experiences Adop
# Meetings insights score ΓÇô People experiences
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ Adoption Score provides insights into your organization's digital transformation journey through its use of Microsoft 365 and the technology experiences that support it. Your organization's score reflects people and technology experience measurements and can be compared to benchmarks from organizations similar to yours. The meetings category is part of the people experiences measures. To learn more, check out the [Adoption Score overview](adoption-score.md) and read [Microsoft's Privacy Statement](https://privacy.microsoft.com/privacystatement). > [!NOTE]
admin Overview https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/basic-mobility-security/overview.md
description: "Manage and secure mobile devices connected to your Microsoft 365 o
# Overview of Basic Mobility and Security for Microsoft 365
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ You can manage and secure mobile devices when they're connected to your Microsoft 365 organization by using Basic Mobility and Security. Mobile devices like smartphones and tablets that are used to access work email, calendar, contacts, and documents play a significant part in making sure that employees get their work done anytime, from anywhere. So itΓÇÖs critical that you help protect your organization's information when people use devices. You can use Basic Mobility and Security to set device security policies and access rules, and to wipe mobile devices if theyΓÇÖre lost or stolen. :::image type="content" source="../../media/basic-mobility-security/bms-3-setup.png" alt-text="Basic Mobility and Security Setup.":::
admin Set Up https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/basic-mobility-security/set-up.md
description: "Set up Basic Mobility and Security to secure and manage your users
# Set up Basic Mobility and Security
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ The built-in Basic Mobility and Security for Microsoft 365 helps you secure and manage users' mobile devices such as iPhones, iPads, Androids, and Windows phones. You can create and manage device security policies, remotely wipe a device, and view detailed device reports. Have questions? For a FAQ to help address common questions, see [Basic Mobility and Security Frequently-asked questions (FAQ)](frequently-asked-questions.yml). Be aware that you cannot use a delegated administrator account to manage Basic Mobility and Security. For more info, see [Partners: Offer delegated administration](https://support.microsoft.com/office/partners-offer-delegated-administration-26530dc0-ebba-415b-86b1-b55bc06b073e).
admin Update Dns Records To Retain Current Hosting Provider https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/dns/update-dns-records-to-retain-current-hosting-provider.md
description: "Learn how to route traffic to an existing public website hosted ou
# Update DNS records to keep your website with your current hosting provider
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ **If you manage your domain's Microsoft records at your DNS hosting provider**, you don't have to worry about the steps in this topic. Your website stays where it is and people can still get to it. **If Microsoft manages your DNS records**, to route traffic to an existing public website hosted outside of Microsoft, after you add your domain to Microsoft, do the following:
admin Add User Or Contact To Distribution List https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/email/add-user-or-contact-to-distribution-list.md
description: "Learn how to add a Microsoft 365 user or contact such as an employ
# Add a user or contact to a Microsoft 365 distribution group
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ As the admin of an organization, you may need to add one of your users or contacts to a distribution group (see [Create distribution groups in Microsoft 365](../setup/create-distribution-lists.md). For example, you can add employees or external partners or vendors to an email distribution group. ## Add a user or contact to a distribution group
admin Select Domain To Use For Email From Microsoft 365 Products https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/email/select-domain-to-use-for-email-from-microsoft-365-products.md
+
+ Title: "Select the domain to use for email from Microsoft 365 products"
+f1.keywords:
+- NOCSH
+++ Last updated : 03/15/2023
+audience: Admin
++
+ms.localizationpriority: medium
+
+- Tier3
+- scotvorg
+- M365-subscription-management
+- Adm_O365
+- Adm_TOC
+
+- MSStore_Link
+- AdminSurgePortfolio
+- okr_smb
+- AdminTemplateSet
+- business_assist
+search.appverid:
+- BCS160
+- MET150
+- MOE150
+ms.assetid:
+description: "Let Microsoft send notification messages from an email address within your organization instead of Microsoft's default external email address."
++
+# Select the domain to use for email from Microsoft 365 products
+
+> [!NOTE]
+> The following feature will be rolling out to public preview shortly, and may currently not be available to you.
+
+Emails sent out to users as they interact with each other and across various products within Microsoft 365 are designed to provide insights and information about their organization. These emails are typically sent out between users based on those interactions, which means that they are often sent from the userΓÇÖs email address. Those emails will remain unchanged and will continue to work as they do today.
+
+There are several scenarios where emails are sent from a ΓÇ£no-replyΓÇ¥ system-based product account. For example, batched comments, news, digests, and system notification emails are currently sent from a no-reply product address. These include addresses such no-reply@sharepointonline.com, no-reply@planner.com, no-reply@project.com.
+
+The default option is that users receive no-reply emails sent by Microsoft on behalf of your organization, which users receive as [EXTERNAL] notifications. You now have the option to use a custom domain as the sender of these notifications. Using this feature means that emails will now be sent from your own Exchange Online instance and they become internal communication. For example, **no-reply@sharepointonline.com [External]** could become **no-reply@contoso.com**, if **Contoso.com** is the domain that has been selected.
+
+> [!NOTE]
+> Only domains registered within your tenant can be used and you must be the domain owner.
+
+## Configure the "Send email notifications from your domain" setting
+
+The setting is available via the Microsoft 365 Admin Center Settings menu item. Select Settings, select Org Settings, and then the Organizational Settings profile tab as illustrated below.
++
+> [!NOTE]
+> - This setting is an opt-in setting which allows the Microsoft 365 system administrators to select a verified domain within the tenant. This means that the domain has been validated for ownership.
+> - The recommendation is to use a domain that has the appropriate DNS records to facilitate email validation, like SPF, DKIM, DMARC, and MX as this then complies with the [RFC compliance](https://www.ietf.org/rfc/rfc2142.txt) for sending and receiving email. Please see [Learn more about Exchange Online Email Routing](/exchange/mail-flow-best-practices/mail-flow-best-practices) for more information.
+> - Please ensure that you comply with all privacy, compliance and security requirements and policies within your organization.
+
+**To configure the "Send email notifications from your domain" setting:**
+
+1. In the Microsoft 365 admin center, in the navigation pane select **Settings**.
+2. Select **Org settings**.
+3. On the **Org settings** page, select **Organizational profile**.
+4. On the **Organizational profile** page, select **Send email notifications from your domain**.
+5. In the **Send email notifications from your domain** page, select **Use a custom send-from domain address**.
+6. The **Domains** menu, select the domain that you want to use for your email replies.The domains listed in the menu includes verified complete and incomplete domains as Microsoft 365 allows DNS settings to be configured and managed outside of the tenant. Your System or Exchange administrator must ensure that they follow and meet all DNS and domain requirements.
+7. For **Custom username**, administrators can optionally configure the no-reply prefix. They could then create a matching email address in Exchange, if they would like to monitor responses from users.
+8. Select **Save**. Changes will take a few minutes to complete.
++
+> [!NOTE]
+> If you make a mistake or would like to roll-back the change, de-select the **Use a custom send-from domain address** checkbox and then select **Save**. The setting will revert to the original configuration.
+
+## Supported Products
+
+Please note that the following products currently support this feature:
+- SharePoint Online
+- OneDrive for Business
+- Office
+- Stream
+- Planner
+- Project
+- Viva Connections
+- Viva Topics
+- Viva Amplify
+
+> [!NOTE]
+> The supported products list will be updated as each product migrates to support the setting and no action will be required as these products onboard to the centralized setting.
+
+## Excluded Scenarios
+Sharing One Time Passcodes (OTP) will continue to use no-reply@notify.microsoft.com.
++
admin Get Help Support https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/get-help-support.md
Last updated 11/08/2022
::: moniker range="o365-worldwide"
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ Check out [Microsoft 365 small business help](https://go.microsoft.com/fwlink/?linkid=2197659) on YouTube. ## Watch: Get help or support
admin Buy A Domain Name https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/get-help-with-domains/buy-a-domain-name.md
description: "Learn how to buy a domain name in Microsoft 365."
# Buy a domain name
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ > [!NOTE] > If your organization uses Office 365 operated by 21Vianet in China, see [How to buy a domain for Office 365 operated by 21Vianet in China](#how-to-buy-a-domain-for-office-365-operated-by-21vianet).
admin Change Nameservers At Any Domain Registrar https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/get-help-with-domains/change-nameservers-at-any-domain-registrar.md
description: "Learn how to add and set up your domain in Microsoft 365 so that y
# Change nameservers to set up Microsoft 365 with any domain registrar ++ **[Check the Domains FAQ](../setup/domains-faq.yml)** if you don't find what you're looking for. Follow these instructions to add and set up your domain in Microsoft 365 so your services like email and Teams will use your own domain name. To do this, you'll verify your domain, and then change your domain's nameservers to Microsoft 365 so the correct DNS records can be set up for you. Follow these steps if the following statements describe your situation:
admin Create Dns Records At Any Dns Hosting Provider https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/get-help-with-domains/create-dns-records-at-any-dns-hosting-provider.md
# Add DNS records to connect your domain
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ If you purchased a domain from a third-party hosting provider, you can connect it to Microsoft 365 by updating the DNS records in your registrarΓÇÖs account. At the end of these steps, your domain will stay registered with the host that you purchased the domain from, but Microsoft 365 can use it for your email addresses (like user@yourdomain.com) and other services.
admin Dns Basics https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/get-help-with-domains/dns-basics.md
description: "The domain name system maps computer hostnames to IP addresses and
::: moniker range="o365-worldwide"
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ Domain names, like contoso.com, are managed by using a worldwide system of domain registrars and databases. The Domain Name System (DNS) provides a mapping between human-readable computer hostnames and the IP addresses used by networking equipment. An understanding of DNS and domain registrar basics can help you manage domains. ## Watch: Domains & DNS: An overview
admin Find And Fix Issues https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/get-help-with-domains/find-and-fix-issues.md
description: "Learn to track down any problems you run into while setting up a c
# Find and fix issues after adding your domain or DNS records
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ **[Check the Domains FAQ](../setup/domains-faq.yml)** if you don't find what you're looking for. Getting your domain set up to work with Microsoft 365 can be challenging. The DNS system is nitpicky to work with, and the DNS setup for your domain affects important business activities, like email!
admin Find Your Domain Registrar https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/get-help-with-domains/find-your-domain-registrar.md
description: "Learn to find your domain registrar and DNS hosting provider using
# Find your domain registrar
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ **[Check the Domains FAQ](../setup/domains-faq.yml)** if you don't find what you're looking for. ## Domain registrar
admin Information For Dns Records https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/get-help-with-domains/information-for-dns-records.md
description: "Gather the values/information you need to create DNS records to co
# Gather the information you need to create DNS records
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ **[Check the Domains FAQ](../setup/domains-faq.yml)** if you don't find what you're looking for. ### Step 1: Find the TXT record value and verify
admin What Is A Domain https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/get-help-with-domains/what-is-a-domain.md
# What is a domain?
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ **[Check the Domains FAQ](../setup/domains-faq.yml)** if you don't find what you're looking for. A domain is a unique name that appears after the **@** sign in email addresses, and after **www.** in web addresses. It typically takes the form of your organization's name and a standard Internet suffix, such as *yourbusiness.<span>com* or *stateuniversity.<span>edu*.
admin Assign Licenses To Users https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/manage/assign-licenses-to-users.md
Last updated 01/10/2023
# Assign Microsoft 365 licenses to users
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ You can assign licenses to users on either the **Active users** page, or on the **Licenses** page. The method you use depends on whether you want to assign product licenses to specific users or assign users licenses to a specific product. > [!NOTE]
admin Find Your Partner Or Reseller https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/manage/find-your-partner-or-reseller.md
description: "Learn how to find a new Microsoft 365 partner, or get contact info
# Find your Microsoft 365 subscriptions partner or reseller
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ As an admin, you can work with a partner to purchase, activate, and renew Microsoft 365 subscriptions through a Microsoft Open Volume Licensing program. **Not sure if Open Volume Licensing is for you?** Check out the [Microsoft Open Programs overview](https://go.microsoft.com/fwlink/p/?LinkId=613298).
admin Set Password Expiration Policy https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/manage/set-password-expiration-policy.md
description: "Learn how an admin can set a password expiration policy for your b
# Set the password expiration policy for your organization
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ ## Before you begin This article is for people who set password expiration policy for a business, school, or nonprofit. To complete these steps, you need to sign in with your Microsoft 365 admin account. [What's an admin account?](/microsoft-365/admin/add-users/about-admin-roles).
admin Password Policy Recommendations https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/misc/password-policy-recommendations.md
description: "Make your organization more secure against password attacks, and b
# Password policy recommendations for Microsoft 365 passwords
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ As the admin of an organization, you're responsible for setting the password policy for users in your organization. Setting the password policy can be complicated and confusing, and this article provides recommendations to make your organization more secure against password attacks. Microsoft cloud-only accounts have a pre-defined password policy that cannot be changed. The only items you can change are the number of days until a password expires and whether or not passwords expire at all.
admin Set Up Dns Records Vsb https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/misc/set-up-dns-records-vsb.md
# Connect your domain to Microsoft 365
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ > [!NOTE] > If you don't add a domain, people in your organization will use the onmicrosoft.com domain for their email addresses until you do. It's important to add your domain before you add users, so you don't have to set them up twice.
admin Add Google Domain https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/admin/moveto-microsoft-365/add-google-domain.md
description: "Learn how to move your domain from Google Workspace to Microsoft 3
# Add your Google Workspace domain to Microsoft 365
+Check out all of our small business content on [Small business help & learning](https://go.microsoft.com/fwlink/?linkid=2224585).
+ Check out [Microsoft 365 small business help](https://go.microsoft.com/fwlink/?linkid=2197659) on YouTube. ## Watch: Add Google Workspace domain
compliance Apply Retention Labels Automatically https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/compliance/apply-retention-labels-automatically.md
When you create auto-apply retention label policies for sensitive information, y
![Policy templates with sensitive information types.](../media/sensitive-info-configuration.png)
-To learn more about the sensitivity information types, see [Learn about sensitive information types](sensitive-information-type-learn-about.md#learn-about-sensitive-information-types). Currently, [exact data match based sensitive information types](sit-learn-about-exact-data-match-based-sits.md#learn-about-exact-data-match-based-sensitive-information-types) and [document fingerprinting](document-fingerprinting.md) aren't supported for this scenario.
+To learn more about the sensitive information types, see [Learn about sensitive information types](sensitive-information-type-learn-about.md#learn-about-sensitive-information-types). Currently, [exact data match based sensitive information types](sit-learn-about-exact-data-match-based-sits.md#learn-about-exact-data-match-based-sensitive-information-types) and [document fingerprinting](document-fingerprinting.md) aren't supported for this scenario.
After you select a policy template, you can add or remove any types of sensitive information, and you can change the confidence level and instance count. In the previous example screenshot, these options have been changed so that a retention label will be auto-applied only when:
compliance Microsoft 365 Compliance Center Permissions https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/compliance/microsoft-365-compliance-center-permissions.md
f1.keywords:
Previously updated : 03/14/2023 Last updated : 03/15/2023 audience: ITPro
Complete the following steps to add users or groups to a Microsoft Purview role
2. Expand the **Microsoft Purview solutions** section and select **Roles**. 3. On the **Role groups for Microsoft Purview solutions** page, select a Microsoft Purview role group you want to add users to, then select **Edit** on the control bar. 4. On the **Edit members of the role group** page, select **Choose users** or **Choose groups**.+
+ > [!IMPORTANT]
+ > Security groups are supported only in Microsoft 365 commercial cloud organizations.
+ 5. Select the checkbox for all users or groups you want to add to the role group. 6. Select **Select**. 7. If the selected users or groups need organization-wide access as part of this role group assignment, go to Step 10.
Complete the following steps to create a custom Microsoft Purview role group:
6. Select the checkboxes for the roles to add to the custom role group. Select **Select**. 7. Select **Next** to continue. 8. On the **Add members to the role group** page, select **Choose users** (or **Choose groups** if applicable).+
+ > [!IMPORTANT]
+ > Security groups are supported only in Microsoft 365 commercial cloud organizations.
+ 9. Select the checkboxes for the users (or groups) to add to the custom role group. Select **Select**. 10. Select **Next** to continue. 11. If the selected users or groups need organization-wide access as part of this role group assignment, go to Step 14.
compliance Sensitivity Labels Office Apps https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/compliance/sensitivity-labels-office-apps.md
When the policy setting **Require users to apply a label to their email and docu
- For labeling built in to Office apps: - For documents (Word, Excel, PowerPoint): When an unlabeled document is opened or saved.
- - For emails (Outlook): At the time users send an unlabeled email message.
+ - For emails (Outlook): At the time users send an unlabeled email message. For Outlook Mobile, this can be changed to [when the email message is first composed](#for-outlook-mobile-change-when-users-are-prompted-for-a-label).
Additional information for built-in labeling:
For guidance about when to use this setting, see the information about [policy s
> > Now rolling out: Office apps that use built-in labeling and support a default label for existing documents. For details, see the [capabilities table](sensitivity-labels-versions.md#sensitivity-label-capabilities-in-word-excel-and-powerpoint) for Word, Excel, and PowerPoint.
+### For Outlook Mobile, change when users are prompted for a label
+
+Now available in the Beta Channel for Android, and not yet for iOS, you can use a Microsoft Intune [Managed apps app configuration policy](/mem/intune/apps/app-configuration-policies-managed-app#add-a-managed-apps-app-configuration-policy) to configure a setting from the Intune App Software Development Kit (SDK) that changes when users are prompted to select a sensitivity label for Outlook Mobile.
+
+Instead of prompting for a label on send when mandatory labeling is configuring for emails, this configuration results in prompting for a label when a user first composes a message.
+
+This configuration requires you to specify the following key/value pair as a general configuration setting in the policy:
+
+|Key|Value|
+| | |
+|com.microsoft.outlook.Mail.LouderMandatoryLabelEnabled|true|
+ ## Outlook-specific options for default label and mandatory labeling For built-in labeling, identify the minimum versions of Outlook that support these features by using the [capabilities table for Outlook](sensitivity-labels-versions.md#sensitivity-label-capabilities-in-outlook) and the row **Different settings for default label and mandatory labeling**. All versions of the Azure Information Protection unified labeling client support these Outlook-specific options.
compliance Use Notifications And Policy Tips https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/compliance/use-notifications-and-policy-tips.md
Here are some fine points to understand about using a policy tip to override a r
- The option to override is per rule, and it overrides all of the actions in the rule (except sending a notification, which can't be overridden). -- It's possible for content to match several rules in a DLP policy, but only the policy tip from the most restrictive, highest-priority rule will be shown. For example, a policy tip from a rule that blocks access to content will be shown over a policy tip from a rule that simply sends a notification. This prevents people from seeing a cascade of policy tips.
+- It's possible for content to match several rules in a DLP policy or several different DLP policies, but only the policy tip from the most restrictive, highest-priority rule will be shown (including policies in Test mode). For example, a policy tip from a rule that blocks access to content will be shown over a policy tip from a rule that simply sends a notification. This prevents people from seeing a cascade of policy tips.
- If the policy tips in the most restrictive rule allow people to override the rule, then overriding this rule also overrides any other rules that the content matched.
compliance Whats New https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/compliance/whats-new.md
f1.keywords:
Previously updated : 03/14/2023 Last updated : 03/15/2023 audience: Admin
Whether it be adding new solutions to the [Microsoft Purview compliance portal](
- **In preview**: Prevent [oversharing of labeled emails as a DLP policy tip](dlp-create-deploy-policy.md#scenario-2-show-policy-tip-as-oversharing-popup-preview). This DLP policy configuration is an equivalent for the AIP add-in with PowerShell advanced settings that implement pop-up messages in Outlook that warn, justify, or block emails being sent. - **In preview**: As a parity feature for the AIP add-in, built-in labeling for Windows supports [label inheritance from email attachments](sensitivity-labels-office-apps.md#configure-label-inheritance-from-email-attachments). - **In preview**: Preview versions of Outlook for Mac now support [label colors](sensitivity-labels-office-apps.md#label-colors) but don't yet support the sensitivity bar.
+- **In preview**: For mandatory labeling, Outlook for Android in the Beta Channel supports a setting that you can configure with Microsoft Intune to [prompt users to select a sensitivity label when they first compose an email](sensitivity-labels-office-apps.md#for-outlook-mobile-change-when-users-are-prompted-for-a-label) instead of when they send it.
- **In preview**: Now rolling out in preview to SharePoint and Teams, users can select and change a sensitivity label from the details pane from these apps when [sensitivity labels are enabled for Office files in SharePoint and OneDrive](sensitivity-labels-sharepoint-onedrive-files.md). - **Removal of restrictions for prevent copying chat for protected meetings**: The label setting that [prevents copying chat to the clipboard](sensitivity-labels-meetings.md#prevent-copying-chat-to-the-clipboard-label-setting) now supports users outside your organization and also users who join a chat but weren't invited to the meeting.
enterprise Manage Microsoft 365 Groups With Powershell https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/enterprise/manage-microsoft-365-groups-with-powershell.md
The following cmdlets can be used with Microsoft 365 Groups.
## Related topics
-[Upgrade distribution lists to Microsoft 365 Groups](/office365/admin/manage/upgrade-distribution-lists)
- [Manage who can create Microsoft 365 Groups](/office365/admin/create-groups/manage-creation-of-groups) [Manage guest access to Microsoft 365 Groups](https://support.office.com/article/bfc7a840-868f-4fd6-a390-f347bf51aff6)
enterprise Multi Geo Capabilities In Teams In Microsoft 365 https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/enterprise/multi-geo-capabilities-in-teams-in-microsoft-365.md
Teams uses the Preferred Data Location (PDL) for users and groups to determine w
> [!NOTE] > Multi-Geo capabilities in Teams rolled out in July 2021. Your chat and channel messages will be automatically migrated to the correct geo location over the next few quarters. Any new PDL changes will be processed after the tenant has completed the initial sync, and new PDL changes beyond that will be queued and processed in the order they are received. >
-> Enable port 8653 to allow execution of this command.
## User chat
To find the current location of a user's Teams data, [connect to Teams PowerShel
```PowerShell Get-MultiGeoRegion -EntityType User -EntityId <UPN> ```
+Enable port 8653 to allow execution of this command.
## Channel messages
frontline Ehr Admin Oracle Health https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/frontline/ehr-admin-oracle-health.md
The communication and collaboration platform of Teams makes it easy for clinicia
This article describes how to set up and configure the Teams EHR connector to integrate with the Oracle Health platform. It also gives you an overview of the Teams Virtual Appointments experience from the Oracle Health EHR system.
+> [!NOTE]
+> Cerner has been renamed to Oracle Health. The video below refers to Oracle Health as Cerner.
+ > [!VIDEO https://www.microsoft.com/videoplayer/embed/RE5d6gj] ## Before you begin
security Faqs Tamper Protection https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/security/defender-endpoint/faqs-tamper-protection.md
description: Frequently asked questions on configuring tamper protection.
keywords: malware, defender, antivirus, tamper protection ms.localizationpriority: medium Previously updated : 03/09/2023 Last updated : 03/15/2023 audience: ITPro
search.appverid: met150
- [Microsoft Defender for Endpoint Plan 1](https://go.microsoft.com/fwlink/p/?linkid=2154037) - [Microsoft Defender for Endpoint Plan 2](https://go.microsoft.com/fwlink/p/?linkid=2154037)-- Microsoft Defender Antivirus
+- [Microsoft Defender Antivirus](microsoft-defender-antivirus-windows.md)
+- [Microsoft Defender for Business](../defender-business/mdb-overview.md)
+- [Microsoft 365 Business Premium](../../business-premium/index.md)
**Platforms** - Windows
search.appverid: met150
If you're using Configuration Manager, version 2006, with tenant attach, tamper protection can be extended to Windows Server 2012 R2, Windows Server 2016, Windows Server 2019, and Windows Server 2022. See [Tenant attach: Create and deploy endpoint security Antivirus policy from the admin center (preview)](/mem/configmgr/tenant-attach/deploy-antivirus-policy).
+## Is tamper protection available on Mac?
+
+Yes. See [Protect macOS security settings with tamper protection](tamperprotection-macos.md).
+ ## How do I turn tamper protection on or off? If you're an organization using [Microsoft Defender for Endpoint](/microsoft-365/security/defender-endpoint), you can choose from several options to manage tamper protection:
If you're an organization using [Microsoft Defender for Endpoint](/microsoft-365
- [Configuration Manager](manage-tamper-protection-configuration-manager.md) (with tenant attach, you can configure tamper protection for some or all devices by using the Windows Security experience profile) - [Windows Security app](manage-tamper-protection-individual-device.md) (for an individual device used at home or that isn't centrally managed by a security team)
+> [!IMPORTANT]
+> If you're using Group Policy, keep in mind that any changes you make to tamper protected settings will be ignored. You can't use Group Policy to enable or disable tamper protection. Use Intune, the Microsoft 365 Defender portal, or Configuration Manager to manage tamper protection.
+ For more information, see [How do I configure or manage tamper protection](prevent-changes-to-security-settings-with-tamper-protection.md#how-do-i-configure-or-manage-tamper-protection)? ## Tamper protection is preventing my security team from managing a device. What should we do?
If tamper protection prevents your IT or security team from performing a necessa
## Can I change individual tamper-protected settings?
-If tamper protection is turned on for your organization, you won't be able to make changes to individual settings that are tamper protected. However, if you're using Intune or Configuration Manager, you can exclude devices from tamper protection. And if you're using Intune, you can edit exclusions for Microsoft Defender Antivirus. See [Tamper protection for antivirus exclusions](manage-tamper-protection-intune.md#tamper-protection-for-antivirus-exclusions).
+If tamper protection is turned on for your organization, you won't be able to make changes to individual settings that are tamper protected.
+
+If you're using [Intune](manage-tamper-protection-intune.md) or [Configuration Manager](manage-tamper-protection-configuration-manager.md), you can exclude devices from tamper protection. And if you're using Intune, you can edit exclusions for Microsoft Defender Antivirus. See [Tamper protection for antivirus exclusions](manage-tamper-protection-intune.md#tamper-protection-for-antivirus-exclusions).
## Does tamper protection apply to Microsoft Defender Antivirus exclusions?
New functionality is rolling out now to protect Microsoft Defender Antivirus exc
## How does configuring tamper protection in Intune affect how I manage Microsoft Defender Antivirus with Group Policy?
-If you're currently using Intune to configure and manage tamper protection, you should continue using Intune. When tamper protection is turned on and you use Group Policy to make changes to Microsoft Defender Antivirus settings, any settings that are protected by tamper protection will be ignored.
+If you're currently using Intune to configure and manage tamper protection, you should continue using Intune.
+
+When tamper protection is turned on, and you use Group Policy to make changes to Microsoft Defender Antivirus settings, any changes to settings that are tamper protected will be ignored. See [What happens when tamper protection is turned on](prevent-changes-to-security-settings-with-tamper-protection.md#what-happens-when-tamper-protection-is-turned-on)?
## If we use Microsoft Intune to configure tamper protection, does it apply only to the entire organization?
No. Non-Microsoft antivirus offerings will continue to register with the Windows
Devices that are onboarded to Microsoft Defender for Endpoint will have Microsoft Defender Antivirus running in passive mode. In these cases, tamper protection will continue to protect the service and its features.
-## I have the Windows E3 enrollment. Can I use configuring tamper protection in Intune?
+## What subscriptions include tamper protection?
+
+Tamper protection is included in the following subscriptions:
+
+- [Microsoft Defender for Endpoint Plan 1 and Plan 2](defender-endpoint-plan-1-2.md)
+- [Microsoft Defender for Business](../defender-business/mdb-overview.md)
+- [Microsoft 365 Business Premium](../../business-premium/index.md)
-Currently, configuring tamper protection in Intune is only available for customers whose subscriptions include [Microsoft Defender for Endpoint Plan 1 or Plan 2](/microsoft-365/security/defender-endpoint).
+If your subscription includes Intune, you can use Intune to configure tamper protection. You can also turn tamper protection on tenant-wide using the Microsoft 365 Defender portal. See [Use PowerShell to determine whether tamper protection and real-time protection are turned on](prevent-changes-to-security-settings-with-tamper-protection.md#use-powershell-to-determine-whether-tamper-protection-and-real-time-protection-are-turned-on).
## I'm an enterprise customer. Can local admins change tamper protection on their devices? In general, tamper protection helps protect against users being able to change security settings directly on devices. Tamper protection is part of anti-tampering capabilities that include [standard protection attack surface reduction rules](attack-surface-reduction-rules-reference.md). To further prevent malware from running in kernel, consider using [driver block rules with Application Control for Windows](/windows/security/threat-protection/windows-defender-application-control/microsoft-recommended-driver-block-rules).
-## What happens if my device is onboarded with Microsoft Defender for Endpoint and then goes into an off-boarded state?
+## What happens if my device is onboarded to Defender for Endpoint and then goes into an off-boarded state?
If a device is off-boarded from Microsoft Defender for Endpoint, tamper protection is turned on, which is the default state for unmanaged devices. ## If the status of tamper protection changes, are alerts shown in the Microsoft 365 Defender portal?
-Alerts should be listed in the [Microsoft 365 Defender portal](https://security.microsoft.com) under **Alerts**.
+Alerts should be listed in the [Microsoft 365 Defender portal](https://security.microsoft.com) under **Incidents**.
Your security operations team can also use hunting queries, such as the following example:
security Manage Tamper Protection Configuration Manager https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/security/defender-endpoint/manage-tamper-protection-configuration-manager.md
search.appverid: met150
- [Microsoft Defender for Endpoint Plan 1](https://go.microsoft.com/fwlink/p/?linkid=2154037) - [Microsoft Defender for Endpoint Plan 2](https://go.microsoft.com/fwlink/p/?linkid=2154037)-- Microsoft Defender Antivirus
+- [Microsoft Defender Antivirus](microsoft-defender-antivirus-windows.md)
+- [Microsoft Defender for Business](../defender-business/mdb-overview.md)
+- [Microsoft 365 Business Premium](../../business-premium/index.md)
**Platforms** - Windows
security Manage Tamper Protection Individual Device https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/security/defender-endpoint/manage-tamper-protection-individual-device.md
search.appverid: met150
# Manage tamper protection on an individual device **Applies to:**- - [Microsoft Defender for Endpoint Plan 1](https://go.microsoft.com/fwlink/p/?linkid=2154037) - [Microsoft Defender for Endpoint Plan 2](https://go.microsoft.com/fwlink/p/?linkid=2154037)-- Microsoft Defender Antivirus
+- [Microsoft Defender Antivirus](microsoft-defender-antivirus-windows.md)
+- [Microsoft Defender for Business](../defender-business/mdb-overview.md)
+- [Microsoft 365 Business Premium](../../business-premium/index.md)
**Platforms** - Windows
security Manage Tamper Protection Intune https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/security/defender-endpoint/manage-tamper-protection-intune.md
search.appverid: met150
**Applies to:** -- [Microsoft Defender for Endpoint Plan 1 and Plan 2](https://go.microsoft.com/fwlink/p/?linkid=2154037)-- Microsoft Defender Antivirus
+- [Microsoft Defender for Endpoint Plan 1](https://go.microsoft.com/fwlink/p/?linkid=2154037)
+- [Microsoft Defender for Endpoint Plan 2](https://go.microsoft.com/fwlink/p/?linkid=2154037)
+- [Microsoft Defender Antivirus](microsoft-defender-antivirus-windows.md)
+- [Microsoft Defender for Business](../defender-business/mdb-overview.md)
+- [Microsoft 365 Business Premium](../../business-premium/index.md)
**Platforms** - Windows
security Manage Tamper Protection Microsoft 365 Defender https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/security/defender-endpoint/manage-tamper-protection-microsoft-365-defender.md
search.appverid: met150
- [Microsoft Defender for Endpoint Plan 1](https://go.microsoft.com/fwlink/p/?linkid=2154037) - [Microsoft Defender for Endpoint Plan 2](https://go.microsoft.com/fwlink/p/?linkid=2154037)-- Microsoft Defender Antivirus
+- [Microsoft Defender Antivirus](microsoft-defender-antivirus-windows.md)
+- [Microsoft Defender for Business](../defender-business/mdb-overview.md)
+- [Microsoft 365 Business Premium](../../business-premium/index.md)
**Platforms** - Windows
security Prevent Changes To Security Settings With Tamper Protection https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/security/defender-endpoint/prevent-changes-to-security-settings-with-tamper-protection.md
description: Use tamper protection to prevent malicious apps from changing impor
keywords: malware, defender, antivirus, tamper protection ms.localizationpriority: medium Previously updated : 03/09/2023 Last updated : 03/15/2023 audience: ITPro
search.appverid: met150
**Applies to:** -- [Microsoft Defender for Endpoint Plan 1 and Plan 2](https://go.microsoft.com/fwlink/p/?linkid=2154037)-- Microsoft Defender Antivirus
+- [Microsoft Defender for Endpoint Plan 1](https://go.microsoft.com/fwlink/p/?linkid=2154037)
+- [Microsoft Defender for Endpoint Plan 2](https://go.microsoft.com/fwlink/p/?linkid=2154037)
+- [Microsoft Defender Antivirus](microsoft-defender-antivirus-windows.md)
+- [Microsoft Defender for Business](../defender-business/mdb-overview.md)
+- [Microsoft 365 Business Premium](../../business-premium/index.md)
**Platforms** - Windows
You can use Microsoft Intune and other methods to configure or manage tamper pro
| [Configuration Manager](manage-tamper-protection-configuration-manager.md) | Turn tamper protection on (or off) for some or all devices by using Configuration Manager with tenant attach. This method won't override settings managed in Intune. <br/><br/>See [Manage tamper protection for your organization using tenant attach with Configuration Manager, version 2006](manage-tamper-protection-configuration-manager.md). | | [Windows Security app](manage-tamper-protection-individual-device.md) | Turn tamper protection on (or off) on an individual device that isn't managed by a security team (such as devices for home use). This method won't override tamper protection settings that are managed by the Microsoft 365 Defender portal, Intune, or Configuration Manager, and it isn't intended to be used by organizations. <br/><br/>See [Manage tamper protection on an individual device](manage-tamper-protection-individual-device.md). |
+> [!TIP]
+> If you're using Group Policy to manage Microsoft Defender Antivirus settings, keep in mind that any changes made to tamper-protected settings will be ignored. We recommend using the Microsoft 365 Defender portal, Intune, or Configuration Manager to manage tamper protection.
+ ## What about exclusions? Under certain conditions, tamper protection can now protect antivirus exclusions that are defined for Microsoft Defender Antivirus. For more information, see [Tamper protection for exclusions](manage-tamper-protection-intune.md#tamper-protection-for-antivirus-exclusions).
security Supported Capabilities By Platform https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/security/defender-endpoint/supported-capabilities-by-platform.md
The following table gives information about the supported Microsoft Defender for
|||||| |**Response**||||| |[Automated Investigation & Response (AIR)](automated-investigations.md)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|![No](images/svg/check-no.svg)|![No](images/svg/check-no.svg)|
-|[Device response capabilities: collect investigation package, run AV scan](respond-machine-alerts.md)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg) <sup>[[2](#fn2)][[3](#fn3)]</sup>|![Yes.](images/svg/check-yes.svg) <sup>[[2](#fn2)][[3](#fn3)]</sup>|
-|[Device isolation](respond-machine-alerts.md)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg) <sup>[[2](#fn2)][[3](#fn3)]</sup>|![Yes (public preview)](images/svg/check-no.svg)|
+|[Device response capabilities: collect investigation package, run AV scan](respond-machine-alerts.md)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg) <sup>[[3](#fn3)]</sup>|![Yes.](images/svg/check-yes.svg) <sup>[[3](#fn3)]</sup>|
+|[Device isolation](respond-machine-alerts.md)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg) <sup>[[3](#fn3)]</sup>|![Yes (public preview)](images/svg/check-yes.svg)|
|File response capabilities: collect file, deep analysis, block file, stop, and quarantine processes|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|![No](images/svg/check-no.svg) <sup>[[4](#fn4)]</sup>|![No](images/svg/check-no.svg) <sup>[[4](#fn4)]</sup>|
-|[Live Response](live-response.md)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg) <sup>[[2](#fn2)]</sup>|![Yes.](images/svg/check-yes.svg) <sup>[[2](#fn2)]</sup>|
+|[Live Response](live-response.md)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|![Yes.](images/svg/check-yes.svg)|
(<a id="fn1">1</a>) Refers to the modern, unified solution for Windows Server 2012 R2 and 2016. For more information, see [Onboard Windows Servers to the Defender for Endpoint service](configure-server-endpoints.md).
security Email Authentication Dmarc Configure https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/security/office-365-security/email-authentication-dmarc-configure.md
DMARC ensures the destination email systems trust messages sent from your domain
> Visit the [Microsoft Intelligent Security Association (MISA)](https://www.microsoft.com/misapartnercatalog) catalog to view third-party vendors offering DMARC reporting for Microsoft 365. > [!TIP]
-> **Hove you seen our step-by-step guides?** Configuration 1-2-3s and no frills, for admins in a hurry. Visit for the steps to *[enable DMARC Reporting for Microsoft Online Email Routing Addresses (MOERA) and parked Domains](step-by-step-guides/how-to-enable-dmarc-reporting-for-microsoft-online-email-routing-address-moera-and-parked-domains.md)*.
+> **Have you seen our step-by-step guides?** Configuration 1-2-3s and no frills, for admins in a hurry. Visit for the steps to *[enable DMARC Reporting for Microsoft Online Email Routing Addresses (MOERA) and parked Domains](step-by-step-guides/how-to-enable-dmarc-reporting-for-microsoft-online-email-routing-address-moera-and-parked-domains.md)*.
## How do SPF and DMARC work together to protect email in Microsoft 365?
security Safe Links About https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/security/office-365-security/safe-links-about.md
You turn on or turn off Safe Links protection for Office apps in Safe Links poli
Safe Links protection for Office apps has the following client requirements: -- Microsoft 365 Apps or Microsoft 365 Business Premium.
+- Microsoft 365 Apps or Microsoft 365 Business Premium:
- Current versions of Word, Excel, and PowerPoint on Windows, Mac, or in a web browser. - Office apps on iOS or Android devices. - Visio on Windows. - OneNote in a web browser. - Outlook for Windows when opening saved EML or MSG files. -- Office apps are configured to use modern authentication. For more information, see [How modern authentication works for Office 2013, Office 2016, and Office 2019 client apps](../../enterprise/modern-auth-for-office-2013-and-2016.md).
+- Supported Office apps and Microsoft 365 services are configured to use modern authentication. For more information, see [How modern authentication works for Office client apps](../../enterprise/modern-auth-for-office-2013-and-2016.md).
- Users are signed in using their work or school accounts. For more information, see [Sign in to Office](https://support.microsoft.com/office/b9582171-fd1f-4284-9846-bdd72bb28426).
syntex Create A Classifier https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/syntex/create-a-classifier.md
Title: Create a classifier in Microsoft Syntex
+ Title: Train an unstructured document processing model in Microsoft Syntex
ms.localizationpriority: medium
description: Learn how to create a classifier in Microsoft Syntex.
-# Create a classifier in Microsoft Syntex
+# Train an unstructured document processing model in Microsoft Syntex
<sup>**Applies to:** &ensp; &#10003; Unstructured document processing </sup> Follow the instructions in [Create a model in Syntex](create-syntex-model.md) to create an unstructured document processing model in a content center. Or, follow the instructions in [Create a model on a local SharePoint site](create-local-model.md) to create the model on a local site. Then start with this article to begin training your model.
+## Create a classifier
+
+A classifier is a type of model that you can use to automate identification and classification of a document type.
+ </br> > [!VIDEO https://www.microsoft.com/videoplayer/embed/RE4CL0R] </br>
-A classifier is a type of model that you can use to automate identification and classification of a document type. For example, you might want to identify all *Contract Renewal* documents that are added to your document library, such as is shown in the following illustration.
+For example, you might want to identify all *Contract Renewal* documents that are added to your document library, such as is shown in the following illustration.
![Contract Renewal document.](../media/content-understanding/contract-renewal.png) Creating a classifier enables you to create a new [SharePoint content type](/sharepoint/governance/content-type-and-workflow-planning#content-type-overview) that will be associated to the model.
-When creating the classifier, you need to create *explanations* to define the model. This enables you to note common data that you would expect to consistently find this document type.
+When creating the classifier, you need to create *explanations* to define the model. This step enables you to note common data that you would expect to consistently find this document type.
Use examples of the document type ("example files") to "train" your model to identify files that have the same content type. To create a classifier, you need to:
-1. Name your model.
-2. Add your example files.
-3. Label your example files.
-4. Create an explanation.
-5. Test your model.
+1. [Name your model.](#name-your-model)
+2. [Add your example files.](#add-your-example-files)
+3. [Label your example files.](#label-your-example-files)
+4. [Create an explanation.](#create-an-explanation)
+5. [Test your model.](#test-your-model)
> [!NOTE] > While your model uses a classifier to identify and classify document types, you can also choose to pull specific pieces of information from each file identified by the model. Do this by creating an **extractor** to add to your model. See [Create an extractor](create-an-extractor.md).
The first step to create your model is to give it a name:
4. On the **Create a model with the teaching method** page, in the **Model name** field, type the name of the model. For example, if you want to identify contract renewal documents, you could name the model *Contract Renewal*.
-5. Choose **Create**. This creates a home page for the model.
+5. Choose **Create**. This action creates a home page for the model.
![Classifier model home page.](../media/content-understanding/model-home.png)
-When you create a model, you are also creating a new site content type. A content type represents a category of documents that have common characteristics and share a collection of columns or metadata properties for that particular content. SharePoint content types are managed through the [Content types gallery](https://support.microsoft.com/office/create-or-customize-a-site-content-type-27eb6551-9867-4201-a819-620c5658a60f). For this example, when you create the model, you are creating a new *Contract Renewal* content type.
+When you create a model, you're also creating a new site content type. A content type represents a category of documents that have common characteristics and share a collection of columns or metadata properties for that particular content. SharePoint content types are managed through the [Content types gallery](https://support.microsoft.com/office/create-or-customize-a-site-content-type-27eb6551-9867-4201-a819-620c5658a60f). For this example, when you create the model, you're creating a new *Contract Renewal* content type.
-Select **Advanced settings** if you want to map this model to an existing enterprise content type in the SharePoint <a href="https://go.microsoft.com/fwlink/?linkid=2185074" target="_blank">Content type gallery</a> to use its schema. Enterprise content types are stored in the Content Type Hub in the SharePoint admin center and are syndicated to all sites in the tenant. Note that while you can use an existing content type to leverage its schema to help with identification and classification, you still need to train your model to extract information from files it identifies.</br>
+Select **Advanced settings** if you want to map this model to an existing enterprise content type in the SharePoint <a href="https://go.microsoft.com/fwlink/?linkid=2185074" target="_blank">Content type gallery</a> to use its schema. Enterprise content types are stored in the Content Type Hub in the SharePoint admin center and are syndicated to all sites in the tenant. Note that even though you can use an existing content type to leverage its schema to help with identification and classification, you still need to train your model to extract information from files it identifies.
![Advanced settings.](../media/content-understanding/advanced-settings.png) ## Add your example files
-On the model home page, add your examples files you will need to help train the model to identify your document type.
+On the model home page, add your examples files you'll need to help train the model to identify your document type.
</br>
On the model home page, add your examples files you will need to help train the
For your training set, you want to use both positive and negative examples: - Positive example: Documents that represent the document type. These contain strings and information that would always be in this type of document.-- Negative example: Any other document that does not represent the document you want to classify.
+- Negative example: Any other document that doesn't represent the document you want to classify.
-Be sure to use at least five positive examples and at least one negative example to train your model. You want to create additional ones to test your model after the training process.
+Be sure to use at least five positive examples and at least one negative example to train your model. You want to create another ones to test your model after the training process.
To add example files:
-1. On the model home page, in the **Add example files** tile, click **Add files**.
-2. On the **Select example files for your model** page, select your example files from the Training files library in the content center. If you had not already uploaded them there, choose to upload them now by clicking **Upload** to copy them to the Training files library.
-3. After selecting your example files to use to train the model, click **Add**.
+1. On the model home page, in the **Add example files** tile, select **Add files**.
+2. On the **Select example files for your model** page, select your example files from the Training files library in the content center. If you hadn't already uploaded them there, choose to upload them now by clicking **Upload** to copy them to the Training files library.
+3. After selecting your example files to use to train the model, select **Add**.
![Select example files.](../media/content-understanding/select-sample.png)
To add example files:
After adding your example files, you need to label them as either positive or negative examples.
-1. From the model home page, on the **Classify files and run training** tile, click **Train classifier**.
- This displays the label page that shows a listing of your example files, with the first file visible in the viewer.
-2. In the viewer on the top of the first example file, you should see text asking if the file is an example of the model you just created. If it is a positive example, select **Yes**. If it is a negative example, select **No**.
+1. From the model home page, on the **Classify files and run training** tile, select **Train classifier**.
+ This step displays the label page that shows a listing of your example files, with the first file visible in the viewer.
+2. In the viewer on the top of the first example file, you should see text asking if the file is an example of the model you just created. If it's a positive example, select **Yes**. If it's a negative example, select **No**.
3. From the **Labeled examples** list on the left, select additional files that you want to use as examples, and label them. ![Classifier home page.](../media/content-understanding/classifier-home-page.png)
To create an explanation:
a. Type the **Name** (for example, "Disclosure Block").</br> b. Select the **Type**. For the sample, select **Phrase list**, since you add a text string.</br> c. In the **Type here** box, type the string. For the sample, add "Request for additional disclosure". You can select **Case sensitive** if the string needs to be case sensitive.</br>
- d. Click **Save**.
+ d. Select **Save**.
![Create explanation.](../media/content-understanding/explanation.png)
To create an explanation:
![Match value.](../media/content-understanding/match.png)
- If you receive a **Mismatch** on the labeled files, you might need to create an additional explanation to provide the model more information to identify the document type. If this happens, click on the file to get more information about why the mismatch occurred.
+ If you receive a **Mismatch** on the labeled files, you might need to create an additional explanation to provide the model more information to identify the document type. If a mismatch happens, select the file to get more information about why the mismatch occurred.
Once you've trained an extractor, that trained extractor can be used as an explanation. In the **Explanations** section, this is shown as a **Model reference**.
Once you've trained an extractor, that trained extractor can be used as an expla
## Test your model
-If you received a match on your labeled sample files, you can now test your model on your remaining unlabeled example files that the model has not seen before. This is optional, but a useful step to evaluate the ΓÇ£fitnessΓÇ¥ or readiness of the model before using it, by testing it on files the model hasnΓÇÖt seen before.
+If you received a match on your labeled sample files, you can now test your model on your remaining unlabeled example files that the model hasn't seen before. This step is optional, but a useful step to evaluate the ΓÇ£fitnessΓÇ¥ or readiness of the model before using it, by testing it on files the model hasnΓÇÖt seen before.
1. From the model home page, select the **Test** tab. This runs the model on your unlabeled sample files. 2. In the **Test files** list, your example files display and shows if the model predicted them to be positive or negative. Use this information to help determine the effectiveness of your classifier in identifying your documents.
syntex Train Model https://github.com/MicrosoftDocs/microsoft-365-docs/commits/public/microsoft-365/syntex/train-model.md
Title: Train your model in Microsoft Syntex
+ Title: Train your custom model in Microsoft Syntex
ms.localizationpriority: medium
description: Learn how to train custom models in Microsoft Syntex.
-# Train your model in Microsoft Syntex
+# Train your custom model in Microsoft Syntex
<sup>**Applies to:** &ensp; &#10003; All custom models &ensp; </sup>
-The steps to train your model depends on the type of model you are using.
+The method to train your model depends on the type of custom model you're using.
-|Model type |Steps to train |
-|||
-|Unstructured document processing |[Train your unstructured document processing model](create-a-classifier.md) |
-|Freeform document processing |[Train your freeform document processing model](train-freeform-document-processing-model.md) |
-|Structured document processing |[Train your structured document processing model](create-a-form-processing-model.md) |
+|Model type |Use the steps in this article to train |
+||||
+|**Unstructured document processing**<br>[:::image type="content" source="../medi) |
+|**Freeform document processing**<br>[:::image type="content" source="../medi) |
+|**Structured document processing**[:::image type="content" source="../medi) |
## See also