Commands › Exchange Online
Set-DlpPolicy
**Note**: This cmdlet is retired from the cloud-based service. For more information, see this blog post. Use the Set-DlpCompliancePolicy and Set-DlpComplianceRule cmdlets instead. This cmdlet is functional only in on-premises Exchange. Use the Set-DlpPolicy cmdlet to modify data loss prevention (DLP) policies that are based on transport rules (mail flow rules) in your organization.
Quick start script
# Set-DlpPolicy — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org
# 2. Capture the current state first — you cannot roll back what you never recorded
$before = Get-DlpPolicy
$before | Format-List
# 3. Make the change (dry run first)
Set-DlpPolicy -Identity <DlpPolicyIdParameter> -WhatIf
Set-DlpPolicy -Identity <DlpPolicyIdParameter>
# 4. Verify and diff
$after = Get-DlpPolicy
Compare-Object ($before | Out-String) ($after | Out-String)
Syntax
Set-DlpPolicy [-Identity] <DlpPolicyIdParameter>
[-Confirm]
[-Description <String>]
[-DomainController <Fqdn>]
[-Mode <RuleMode>]
[-Name <String>]
[-State <RuleState>]
[-WhatIf]
[<CommonParameters>]
Parameters (8)
Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.