Tenant Allow/Block Lists
Exchange Online Protection's tenant allow/block list holds the manual overrides that sit in front of the filtering stack: senders, URLs, file hashes, and IP addresses that a tenant should always block or always allow. This page shows every list type in a single table and lets you add entries to one tenant or several at once.
Allow entries weaken filtering and Microsoft treats them as temporary by design. Use them to unblock something Exchange has wrongly caught, not as a standing exemption, and prefer an expiring entry over one that never expires.
Action Buttons
Table Details
Value
The sender, URL, file hash, or IP address the entry applies to.
List Type
Which list the entry belongs to: Sender, Url, FileHash, or IP.
Action
Whether the entry blocks or allows.
Notes
The note recorded against the entry when it was created.
Last Used Date
When Exchange last matched mail against the entry. Empty if it has never been used.
Last Modified Date Time
When the entry was last changed.
Expiration Date
When Exchange will remove the entry. Empty on an entry set never to expire.
Remove After (Days of Last Use)
The number of days after last use that the entry is removed, set to 45 when the removal option is used.
If a tenant does not support one of the four list types, that type is skipped and a warning is written to the CIPP logs. The other three still load, so a partial table is not necessarily an error.
Table Actions
Remove
Removes the entry from the tenant's allow/block list. Removal is immediate and the entry cannot be recovered, so a block that is still needed has to be added again.
Feature Requests / Ideas
We value your feedback and ideas. Please raise any feature requests on GitHub.
Last updated
Was this helpful?

