Endpoint DLP Plus: Known Issues & Limitations
Understanding the issues and limitations of Endpoint DLP Plus can help in setting realistic expectations for the software and avoid any surprises down the line.
Known Issues:
- Data marked as sensitive within Outlook drafts remains vulnerable to be copied and pasted into non-enterprise applications.
- The current restrictive policy doesn't prevent dragging and copying sensitive content from Outlook emails directly to USB storage devices.
- The files with .xlsx extensions cannot currently be marked as sensitive based on data rules requiring an occurrence count to be greater than 1.
- Web upload events may not be accurately identified under certain rare circumstances.
- Data Loss Prevention (DLP) scanning cannot be applied to the content of embedded objects (like charts or spreadsheets) inside Word documents.
- In rare scenarios, when Microsoft Edge is marked as untrusted application, restrictions on trusted domains for Microsoft Edge may not be enforced correctly.
Limitations:
- File access policies will take effect only after file scanning is completed.
- The new Outlook client application is currently not supported due to the removal of the add-in support.
- Printing policies are not currently supported for Windows Store applications
- Printing restriction is not currently supported for context-based classification (file extension based classification).
- The watermarks functionality is limited to print operations originating from enterprise applications.
- Sensitive content saved directly to removable devices from applications cannot be audited or blocked.
- Image files are not currently supported for sensitive content inspection.
- Windows Portable Devices (WPD) are not currently supported for data leak prevention measures.