Connecting Microsoft 365 Purview with IBM Guardium Exposure Manager

You can connect with Microsoft™ 365 Purview accounts with IBM® Guardium® Exposure Manager to discover, monitor, classify, and secure files in Microsoft Sharepoint and Microsoft OneDrive.

Before you begin

Ensure that you performed the following tasks before you start connecting your Microsoft 365 Purview account with IBM Guardium Exposure Manager:

  1. Create a Microsoft Azure app registration.
  2. Generate a client secret for the registered app.
  3. Configure API permissions.
  4. Verify sensitivity labels configuration.

Verify that you collected the following information after completing the steps, before you start connecting your Microsoft 365 Purview account with IBM Guardium Exposure Manager.

  • An active Microsoft 365 Purview account
  • The registered application's directory ID
  • The registered application's client ID from your Microsoft 365 Purview account
  • The registered application's client secret from your Microsoft 365 Purview account
Draft comment:
Are there any prerequisites like the other connections?

About this task

Use the following steps to connect IBM Guardium Exposure Manager with your Microsoft 365 Purview account.

Procedure

  1. After you log in to IBM Guardium Exposure Manager, click Next.
  2. On the Data classification page, select the Use existing classification engine card, and then click Next.
  3. On the Data classification page, provide the following API credentials to connect to your Microsoft 365 Purview account, and then click Authenticate:
    • Enter the https://login.microsoftonline.com/ in the URL field.
    • Enter the client application ID from your registered application in the Client ID field.
    • Enter the client secret value from your registered application in the Client secret field.
    • Enter the directory ID from your registered application in the Directory ID field.

    You can refer to Client Secret Authentication Setup for guidance on the process of setting up client secret authentication.

    Note: After you enter the Microsoft 365 Purview API endpoint URL, you can see the field Directory ID.
    After the successful authentication of your Microsoft 365 Purview account, the Authenticate button changes to Connection successful message and displays the number of classification tags and data stores discovered in the Microsoft 365 Purview account.
  4. After the successful authentication of your Microsoft 365 Purview account, click Done.

Results

After successfully connecting Microsoft 365 Purview with IBM Guardium Exposure Manager, all of the assets monitored by Microsoft 365 Purview are available in IBM Guardium Exposure Manager. IBM Guardium Exposure Manager evaluates data assets against security policies and identifies issues.