Target
- Administrators who perform initial setup or operational management of Email DLP
Purpose
- This article explains the procedure to disconnect Microsoft 365 and Email DLP.
Notes
- The content of this article is based on the product specifications as of April 2025 and may be changed without prior notice.
- A Microsoft 365 global administrator account is required to perform this procedure.
- For instructions on how to access the Email DLP Administration, please refer to the following article.
How to Access the Email DLP Administration Console
Procedure
Remove Transport Rules / Connectors
1. Sign in to the Exchange admin center.
https://admin.cloud.microsoft/exchange (external link)
2. From the left menu, open [Mail flow] - [Rules], and delete the "HENNGE Email DLP Rule" or "HDE One Misdelivery Prevention Rule".
The registered rule names may differ depending on your environment.
* If the rule name is different, click the relevant rule name to view the details, and under [Do the following], confirm that the connector in use matches the connector name to be deleted in step 3 below, then delete the rule.
3. From the left menu in the Exchange admin center, open [Mail flow] - [Connectors], and delete the "HENNGE Email DLP" or "HDE One Misdelivery Prevention Connector".
* If the connector name is different, confirm that the host name specified in the routing method is either mo.xxx.hdemail.jp or gwsmtp.mo.hdems.com.
Delete Enterprise Applications
1. Access the Microsoft Entra admin center.
2. Open [Identity] - [Applications] - [Enterprise applications].
3. From the list, select "HENNGE Email DLP".
4. From the left menu, select [Manage] - [Properties].
5. At the top of the Properties screen, select [Delete], then select [Yes].
6. Return to the screen from step 1, and then select "HENNGE Email DLP Directory Sync" from the list.
* If you have not configured Group Sync with Email DLP Microsoft Entra ID, this application will not exist.
In that case, you do not need to perform steps 7 and 8 below. Please proceed to Delete SPF Record.
7. From the left menu, select [Manage] - [Properties].
8. At the top of the Properties screen, select [Delete], then select [Yes].
Delete SPF Record
1. Delete the Email DLP SPF record (in bold) that was added to the DNS server for your domain.
Example:
Before
v=spf1 include:spf.protection.outlook.com include:xxx.hdemail.jp ~all
or
v=spf1 include:spf.protection.outlook.com include:spf.mta.hdems.com ~all
After
v=spf1 include:spf.protection.outlook.com ~all
Disable DKIM
If you have configured DKIM in Email DLP, please follow the steps below.
1. Access the Email DLP Administration, and select [Tenant Settings] - [DKIM].
2. From the Active Selector, click [Disable] for the selector that is enabled.
3. Delete the TXT record corresponding to the selector you disabled from the DNS server.
* You can check the value of the TXT record to be deleted in the Email DLP Administration under [Tenant Settings] - [DKIM].