Skip to content

Commit 98230aa

Browse files
authored
Update how-policies-and-protections-are-combined.md
1 parent 3c8c546 commit 98230aa

File tree

1 file changed

+3
-4
lines changed

1 file changed

+3
-4
lines changed

defender-office-365/how-policies-and-protections-are-combined.md

Lines changed: 3 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -180,10 +180,9 @@ Tenant allows and blocks are able to override some filtering stack verdicts as d
180180
|Bulk|**Tenant wins**: Email delivered to mailbox|**Tenant wins**: Email delivered to user's Junk Email folder|
181181
|Not spam|**Tenant wins**: Email delivered to mailbox|**Tenant wins**: Email delivered to user's Junk Email folder|
182182

183-
- [Allow entries in the Tenant Allow/Block List](tenant-allow-block-list-about.md#allow-entries-in-the-tenant-allowblock-list):
184-
- There are two type of allow here: message level allow and entity level allow
185-
- Message level allow which act on the entire message irrespective of the entity present. Email address/domain allow is an example of this type.
186-
- Entity level allow which act on the filter verdict for that entity. URL, Spoofed sender, file allow are example of this type. To override malware and high confidence phishing verdict you need to have these type of allow which can be created by submission only due to [Secure by default in Office 365](secure-by-default.md).
183+
- [Allow entries in the Tenant Allow/Block List](tenant-allow-block-list-about.md#allow-entries-in-the-tenant-allowblock-list): There are two types of allow entries:
184+
- Message level allow entries act on the entire message, regardless of the entities in the message. Allow entries for email address and domains are message level allow entries.
185+
- Entity level allow entries act on the filtering verdict of entities. Allow entries for URLs, spoofed senders, and files are entity level allow entries. To override malware and high confidence phishing verdicts, you need to use entity level allow entries, which you can create by submission only due to [Secure by default in Microsoft 365](secure-by-default.md).
187186

188187
|Filtering stack verdict|Email address/domain|
189188
|---|---|

0 commit comments

Comments
 (0)