You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: exchange/exchange-ps/exchange/New-TenantAllowBlockListItems.md
+16-3Lines changed: 16 additions & 3 deletions
Original file line number
Diff line number
Diff line change
@@ -82,16 +82,27 @@ The Entries parameter specifies the values that you want to add to the Tenant Al
82
82
- FileHash: Use the SHA256 hash value of the file. In Windows, you can find the SHA256 hash value by running the following command in a Command Prompt: `certutil.exe -hashfile "<Path>\<Filename>" SHA256`. An example value is `768a813668695ef2483b2bde7cf5d1b2db0423a0d3e63e498f3ab6f2eb13ea3`.
83
83
- Sender: A domain or email address value. For example, `contoso.com` or `michelle@contoso.com`.
84
84
- URL: Use IPv4 or IPv6 addresses or hostnames. Wildcards (* and ~) are supported in hostnames. Protocols, TCP/UDP ports, or user credentials are not supported. For details, see [URL syntax for the Tenant Allow/Block List](https://learn.microsoft.com/defender-office-365/tenant-allow-block-list-urls-configure#url-syntax-for-the-tenant-allowblock-list).
85
+
- IP: IPv6 addresses only:
86
+
87
+
• Single IPv6 addresses in colon-hexadecimal format (for example, 2001:0db8:85a3:0000:0000:8a2e:0370:7334).
88
+
89
+
• Single IPv6 addresses in zero-compression format (for example, 2001:db8::1 for 2001:0db8:0000:0000:0000:0000:0000:0001).
90
+
91
+
• CIDR IPv6 ranges from 1 to 128 (for example, 2001:0db8::/32).
85
92
86
93
To enter multiple values, use the following syntax: `"Value1","Value2",..."ValueN"`.
87
94
88
-
For senders, files, and URLs the maximum number of allow entries for each type is 500, and the maximum number of block entries for each type is 500 (1000 entries total for each type).
95
+
Entry limits for each list subtype (sender, URL, file, or IP address):
96
+
97
+
-**Exchange Online Protection**: The maximum number of allow entries is 500, and the maximum number of block entries is 500.
98
+
-**Defender for Office 365 Plan 1**: The maximum number of allow entries is 1000, and the maximum number of block entries is 1000.
99
+
-**Defender for Office 365 Plan 2**: The maximum number of allow entries is 5000, and the maximum number of block entries is 10000.
89
100
90
101
The maximum number of characters in a file entry is 64 and the maximum number of characters in a URL entry is 250.
91
102
92
-
You can't mix value types (file, sender, or URL) or allow and block actions in the same command.
103
+
You can't mix value types (sender, URL, file, or IP address) or allow and block actions in the same command.
93
104
94
-
In most cases, you can't modify the URL, file, or sender values after you create the entry. The only exception is allow URL entries for phishing simulations (ListType = URL, ListSubType = AdvancedDelivery).
105
+
In most cases, you can't modify the sender, URL, file, or IP address values after you create the entry. The only exception is URL allow entries for phishing simulations (ListType = URL, ListSubType = AdvancedDelivery).
95
106
96
107
```yaml
97
108
Type: String[]
@@ -135,6 +146,7 @@ The ListType parameter specifies the type of entry to add. Valid values are:
135
146
- FileHash
136
147
- Sender
137
148
- Url
149
+
- IP
138
150
139
151
```yaml
140
152
Type: ListType
@@ -156,6 +168,7 @@ This switch is available to use in the following scenarios:
156
168
157
169
- With the Block switch.
158
170
- With the Allow switch where the ListType parameter value is URL and the ListSubType parameter value is AdvancedDelivery.
171
+
- With the Allow switch where the ListType parameter value is IP.
159
172
160
173
You can't use this switch with the ExpirationDate or RemoveAfter parameter.
In most cases, you can't modify the URL, file, or sender values of an existing entry. The only exception is allow URL entries for phishing simulations (Action = Allow, ListType = URL, and ListSubType = AdvancedDelivery). For more information about allowing URLs for phishing simulations, see [Configure the advanced delivery policy for third-party phishing simulations and email delivery to SecOps mailboxes](https://learn.microsoft.com/defender-office-365/advanced-delivery-policy-configure).
52
+
In most cases, you can't modify the sender, URL, file, or IP address values after you create the entry. The only exception is URL allow entries for phishing simulations (ListType = URL, ListSubType = AdvancedDelivery). For more information about allowing URLs for phishing simulations, see [Configure the advanced delivery policy for third-party phishing simulations and email delivery to SecOps mailboxes](https://learn.microsoft.com/defender-office-365/advanced-delivery-policy-configure).
53
53
54
54
You need to be assigned permissions before you can run this cmdlet. Although this topic lists all parameters for the cmdlet, you may not have access to some parameters if they're not included in the permissions assigned to you. To find the permissions required to run any cmdlet or parameter in your organization, see [Find the permissions required to run any Exchange cmdlet](https://learn.microsoft.com/powershell/exchange/find-exchange-cmdlet-permissions).
55
55
@@ -77,10 +77,11 @@ The Entries parameter specifies the entries that you want to modify based on the
77
77
- FileHash: The exact SHA256 file hash value.
78
78
- Sender domains and email addresses: The exact domain or email address value.
79
79
- Url: The exact URL value.
80
+
- IP: IPv6 addresses only. Single IPv6 addresses in colon-hexadecimal or zero-compression format or CIDR IPv6 ranges from 1 to 128.
80
81
81
82
This value is shown in the Value property of the entry in the output of the Get-TenantAllowBlockListItems cmdlet.
82
83
83
-
You can't mix value types (file, sender, or URL) or allow and block actions in the same command.
84
+
You can't mix value types (sender, URL, file, or IP address) or allow and block actions in the same command.
84
85
85
86
You can't use this parameter with the Ids parameter.
86
87
@@ -122,6 +123,7 @@ The ListType parameter specifies the type of entry that you want to modify. Vali
122
123
- FileHash
123
124
- Sender
124
125
- Url
126
+
- IP
125
127
126
128
Use the Entries or Ids parameter with this parameter to identify the entry itself.
0 commit comments