Commands › Exchange Online

New-DataClassification

Exchange Online ExchangeOnlineManagement New-*

This cmdlet is functional only in on-premises Exchange. In Exchange Online, this cmdlet is replaced by the New-DlpSensitiveInformationType cmdlet in Security & Compliance PowerShell. Use the New-DataClassification cmdlet to create data classification rules that use document fingerprints.

Quick start script

# New-DataClassification — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org

# 2. Capture the current state first — you cannot roll back what you never recorded
$before = Get-DataClassification
$before | Format-List

# 3. Make the change (dry run first)
New-DataClassification -Description <String> -Fingerprints <MultiValuedProperty> -Name <String> -WhatIf
New-DataClassification -Description <String> -Fingerprints <MultiValuedProperty> -Name <String>

# 4. Verify and diff
$after = Get-DataClassification
Compare-Object ($before | Out-String) ($after | Out-String)

Syntax

New-DataClassification [-Name] <String> -Description <String> -Fingerprints <MultiValuedProperty>
 [-ClassificationRuleCollectionIdentity <ClassificationRuleCollectionIdParameter>]
 [-Confirm]
 [-DomainController <Fqdn>]
 [-Locale <CultureInfo>]
 [-WhatIf]
 [<CommonParameters>]

Parameters (8)

ParameterTypeRequiredWhat it controls
-Description String yes The Description parameter specifies a description for the data classification rule.
-Fingerprints MultiValuedProperty yes The Fingerprints parameter specifies the byte-encoded files to use as document fingerprints. You can use multiple document fingerprints separated by commas. For instructions on how to import documents to use as...
-Name String yes The Name parameter specifies a name for the data classification rule. The value must be less than 256 characters.
-ClassificationRuleCollectionIdentity ClassificationRuleCollectionIdParameter This parameter is reserved for internal Microsoft use.
-Confirm SwitchParameter The Confirm switch specifies whether to show or hide the confirmation prompt. How this switch affects the cmdlet depends on whether the cmdlet requires confirmation before proceeding.
-DomainController Fqdn The DomainController parameter specifies the domain controller that's used by this cmdlet to read data from or write data to Active Directory. You identify the domain controller by its fully qualified domain name...
-Locale CultureInfo The Locale parameter specifies the language that's associated with the data classification rule.
-WhatIf SwitchParameter The WhatIf switch shows what the command does without making any changes. You don't need to specify a value with this switch.

Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.