[GH-ISSUE #677] FEATURE REQUEST: Deploy standardized security policies to tenants #350

Closed
opened 2026-03-02 12:41:33 +03:00 by kerem · 1 comment
Owner

Originally created by @Jen-Butler on GitHub (Jan 26, 2022).
Original GitHub issue: https://github.com/KelvinTegelaar/CIPP/issues/677

Is your feature request related to a problem? Please describe.
A clear and concise description of what the problem is. Ex. I'm always frustrated when [...]

This feature request is not related to a problem with CIPP directly, however one issue I point out in the last question is related to a feature currently available in CIPP

Describe the solution you'd like
A clear and concise description of what you want to happen.

I would like to be able to deploy a standard set of security policies to a tenant. I envision this request in one of two ways:

  1. A standardized set of anti-spam/anti-malware/anti-phishing/safe attachment and safe links policies that we can deploy via the "Apply Standard" section under Tenant Administration - I have my own script I use and can provide it upon request
  2. (More complicated and time-consuming) Another section in Tenant Administration that allows you to create a custom policy with sliders for the settings / options to include all domains or select individual domains to cover with similar options to add users etc. in cases where specific users could be protected

There are obviously different settings for each policy and each policy also needs a rule to apply it to the tenant and specify which domains/users are protected by the policy

There is also a quarantine policy that needs to be created to deal with user permissions re: quarantined items and notifications to users if so desired

Another feature: it would be great to see the other kinds of policies (anti-spam/anti-malware/safe attachment and safe links). You have a section to see the Phishing policies which I have notes on in the last question.

Describe alternatives you've considered
A clear and concise description of any alternative solutions or features you've considered.

I have scripts to do number 1 above, with the secure app model that I can provide if you need or want the raw PowerShell, although there are more options/switches that may not be included in my scripts that may want to be options in the portal - I can discuss as necessary

Additional context
Add any other context or screenshots about the feature request here.

I see there was another issue #232 to add showing the Phishing policies under Reports which is another issue, you are only showing the policy and not the rule that applies it to the tenant or specific domains, there could be a policy but have no rule that assigns it

In any event there was another request #89 which was merged into it and this issue is more like what I am wanting but I can provide you with the PowerShell scripts and it is not simply seeing the policies/rules in the portal but configuring the policies and rules that I am wanting to do

Originally created by @Jen-Butler on GitHub (Jan 26, 2022). Original GitHub issue: https://github.com/KelvinTegelaar/CIPP/issues/677 **Is your feature request related to a problem? Please describe.** A clear and concise description of what the problem is. Ex. I'm always frustrated when [...] This feature request is not related to a problem with CIPP directly, however one issue I point out in the last question is related to a feature currently available in CIPP **Describe the solution you'd like** A clear and concise description of what you want to happen. I would like to be able to deploy a standard set of security policies to a tenant. I envision this request in one of two ways: 1. A standardized set of anti-spam/anti-malware/anti-phishing/safe attachment and safe links policies that we can deploy via the "Apply Standard" section under Tenant Administration - I have my own script I use and can provide it upon request 2. (More complicated and time-consuming) Another section in Tenant Administration that allows you to create a custom policy with sliders for the settings / options to include all domains or select individual domains to cover with similar options to add users etc. in cases where specific users could be protected There are obviously different settings for each policy and each policy also needs a rule to apply it to the tenant and specify which domains/users are protected by the policy There is also a quarantine policy that needs to be created to deal with user permissions re: quarantined items and notifications to users if so desired Another feature: it would be great to see the other kinds of policies (anti-spam/anti-malware/safe attachment and safe links). You have a section to see the Phishing policies which I have notes on in the last question. **Describe alternatives you've considered** A clear and concise description of any alternative solutions or features you've considered. I have scripts to do number 1 above, with the secure app model that I can provide if you need or want the raw PowerShell, although there are more options/switches that may not be included in my scripts that may want to be options in the portal - I can discuss as necessary **Additional context** Add any other context or screenshots about the feature request here. I see there was another issue #232 to add showing the Phishing policies under Reports which is another issue, you are only showing the policy and not the rule that applies it to the tenant or specific domains, there could be a policy but have no rule that assigns it In any event there was another request #89 which was merged into it and this issue is more like what I am wanting but I can provide you with the PowerShell scripts and it is not simply seeing the policies/rules in the portal but configuring the policies and rules that I am wanting to do
Author
Owner

@github-actions[bot] commented on GitHub (Feb 5, 2022):

This issue is stale because it has been open 10 days with no activity. We will close this issue soon. If you want this feature implemented you can contribute it. See: https://cipp.app/GettingStarted/Contributions/ . Please notify the team if you are working on this yourself.

<!-- gh-comment-id:1030492713 --> @github-actions[bot] commented on GitHub (Feb 5, 2022): This issue is stale because it has been open 10 days with no activity. We will close this issue soon. If you want this feature implemented you can contribute it. See: https://cipp.app/GettingStarted/Contributions/ . Please notify the team if you are working on this yourself.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/CIPP#350
No description provided.