Skip to content

Commit 638fc32

Browse files
Merge pull request #4763 from MicrosoftDocs/main
[AutoPublish] main to live - 08/18 10:32 PDT | 08/18 23:02 IST
2 parents 9070e5b + fe2ba5c commit 638fc32

File tree

2 files changed

+6
-1
lines changed

2 files changed

+6
-1
lines changed
-78 Bytes
Loading

defender-office-365/submissions-admin.md

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@ ms.collection:
1616
ms.custom: seo-marvel-apr2020
1717
description: "Admins can learn how to use the Submissions page in the Microsoft Defender portal to submit messages, URLs, and email attachments to Microsoft for analysis. Reasons for submission include: legitimate messages that were blocked, suspicious messages that were allowed, suspected phishing email, spam, malware, and other potentially harmful messages."
1818
ms.service: defender-office-365
19-
ms.date: 06/13/2025
19+
ms.date: 08/18/2025
2020
appliesto:
2121
- ✅ <a href="https://learn.microsoft.com/defender-office-365/eop-about" target="_blank">Default email protections for cloud mailboxes</a>
2222
- ✅ <a href="https://learn.microsoft.com/defender-office-365/mdo-about#defender-for-office-365-plan-1-vs-plan-2-cheat-sheet" target="_blank">Microsoft Defender for Office 365 Plan 1 and Plan 2</a>
@@ -140,6 +140,11 @@ For other ways that **admins** can report messages to Microsoft in the Defender
140140

141141
After a few moments, the block entry is available on the **Domains & addresses** tab on the **Tenant Allow/Block Lists** page at <https://security.microsoft.com/tenantAllowBlockList?viewid=Sender>.
142142

143+
> [!NOTE]
144+
> Admin submissions for on-premises mailboxes are supported only for messages less than 7 days old.
145+
>
146+
> Currently, admin submissions by uploading files from on-premises mailboxes isn't supported.
147+
143148
### Report questionable email attachments to Microsoft
144149

145150
1. In the Microsoft Defender portal at <https://security.microsoft.com>, go to **Actions & submissions** \> **Submissions**. Or, to go directly to the **Submissions** page, use <https://security.microsoft.com/reportsubmission>.

0 commit comments

Comments
 (0)