Azure Information Protection

All ideas that relate to Azure Information Protection (AIP)

(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Enable Governance actions for Anomaly policies in Cloud app Security

    Currently you can only take governance actions (such as suspend user automatically) for Activity policies in Cloud app security. This should also be done for Anomaly policies. For instance, the Anomaly policy impossible travel. If an alert for this gets generated I would like the user to be suspended automatically in order to better ensure that their account did not get compromised.

    2 votes
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • facebook
    • google
      Password icon
      Signed in as (Sign out)

      We’ll send you updates on this idea

      0 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
    • Read only access to AIP portal for auditing

      Read only role for the AIP console to allow auditing the policy without being able to make changes

      5 votes
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • facebook
      • google
        Password icon
        Signed in as (Sign out)

        We’ll send you updates on this idea

        0 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
      • Serverless execution of Protect-RMSFile/Unprotect-RMSFile

        If exposed as a service in Azure, this could allow for more modern application/deployment frameworks. Authentication to the service should be possible using a certificate. Should allow for both RMS-template based protection as well as AdHoc

        3 votes
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • facebook
        • google
          Password icon
          Signed in as (Sign out)

          We’ll send you updates on this idea

          0 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
        • Allow usage of Multiple Keys in AIP

          Currently AIP only support one Key (Either BYOK or Microsoft Managed) for Azure RMS (protection) of emails and document.
          I'd like to see an option which will allow the usage of multiple Keys and allow organization to use different keys based on the security needs, business requirements or different division within the company.

          3 votes
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • facebook
          • google
            Password icon
            Signed in as (Sign out)

            We’ll send you updates on this idea

            0 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
          • OCR support to classify images based on images

            AIP Autoclassification for Images : Is it possible to run a script for images and do autoclassification. AIP will do image processing and can able to discover some words even it’s an image or document and then classify the document.

            10 votes
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • facebook
            • google
              Password icon
              Signed in as (Sign out)

              We’ll send you updates on this idea

              Proposed  ·  0 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
            • Allow AIP authentication with identity realms other than Azure AD

              The AIP Viewer can only authenticate via Azure AD, which is limiting to the way of sharing protected files, which is not sent by email where the federation is in place with Google, Yahoo, etc .. and the OTP code option

              19 votes
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • facebook
              • google
                Password icon
                Signed in as (Sign out)

                We’ll send you updates on this idea

                5 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
              • Detect tampering of labels

                Enforce an anti-tampering mechanism (such as the client having a hash of the label and knowing if it was changed) and log centrally for reporting.

                36 votes
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • facebook
                • google
                  Password icon
                  Signed in as (Sign out)

                  We’ll send you updates on this idea

                  Proposed  ·  3 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
                • Maintain classification history of documents

                  Provide a client and admin view of document classification, labeling and protection history

                  38 votes
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • facebook
                  • google
                    Password icon
                    Signed in as (Sign out)

                    We’ll send you updates on this idea

                    Proposed  ·  0 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
                  • SPIF support for AIP labels

                    http://www.xmlspif.org/ defines a very powerful model to describe security policy and labels.

                    Being able to make more complex labels in AIP could be really useful.

                    SPIF support mean the ability to create complexe security policies (with classification and tags) and being able to choose which policy to use when creating a label.

                    1 vote
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • facebook
                    • google
                      Password icon
                      Signed in as (Sign out)

                      We’ll send you updates on this idea

                      Under Review  ·  0 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
                    • Obfuscate the DLP AIP automation rules stored on the clients so users can't see them / leak then / work around them

                      Currently the policy.msip file is a plain text JSON file that can be viewed and edited locally. Customers have asked for this to be encrypted so it is not readable by users and other applications.

                      18 votes
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • facebook
                      • google
                        Password icon
                        Signed in as (Sign out)

                        We’ll send you updates on this idea

                        3 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
                      • 3 votes
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • facebook
                        • google
                          Password icon
                          Signed in as (Sign out)

                          We’ll send you updates on this idea

                          Under Review  ·  2 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
                        • Implement additional checks to prevent rogue applications being able to open protected content

                          Implement a more robust SDK and application verification process to prevent a rogue developer building an app to gain access to protected content and allow actions outside the provided permissions

                          3 votes
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • facebook
                          • google
                            Password icon
                            Signed in as (Sign out)

                            We’ll send you updates on this idea

                            Under Review  ·  0 comments  ·  Security  ·  Flag idea as inappropriate…  ·  Admin →
                          • Don't see your idea?

                          Feedback and Knowledge Base