nerdexam
Microsoft

MS-102 · Question #130

You are testing a data loss prevention (DLP) policy to protect the sharing of credit card information with external users. During testing, you discover that a user can share credit card information…

The correct answer is A. the locations of the DLP policy. DLP policy locations define which Microsoft 365 services the policy is enforced on. Since the user is blocked in SharePoint but not in email, it means the DLP policy's location includes SharePoint/OneDrive but does not include Exchange (email). Adding Exchange to the policy…

Submitted by layla.eg· Apr 18, 2026Manage compliance by using Microsoft Purview

Question

You are testing a data loss prevention (DLP) policy to protect the sharing of credit card information with external users. During testing, you discover that a user can share credit card information with external users by using email. However, the user is prevented from sharing files that contain credit card information by using Microsoft SharePoint. You need to prevent the user from sharing the credit card information by using email and SharePoint. What should you configure?

Options

  • Athe locations of the DLP policy
  • Bthe conditions of the DLP policy rule
  • Cthe user overrides of the DLP policy rule
  • Dthe status of the DLP policy

How the community answered

(24 responses)
  • A
    79% (19)
  • B
    13% (3)
  • C
    4% (1)
  • D
    4% (1)

Explanation

DLP policy locations define which Microsoft 365 services the policy is enforced on. Since the user is blocked in SharePoint but not in email, it means the DLP policy's location includes SharePoint/OneDrive but does not include Exchange (email). Adding Exchange to the policy locations will extend enforcement to email, blocking credit card data from being shared via that channel as well. Option B (conditions) defines what content to detect-credit cards are already being detected. Option C (user overrides) controls whether users can bypass the policy. Option D (status) enables or disables the policy entirely-the policy is clearly already active since it works for SharePoint.

Topics

#Data Loss Prevention (DLP)#DLP Policy Configuration#Policy Locations#Email and SharePoint Protection

Community Discussion

No community discussion yet for this question.

Full MS-102 Practice