Defender for Email URL Submit and Allow Action

This guide will show an administrator how to access the URLs Submission page to submit a desired URL that will reduce the likelihood of security scanning criteria holding messages that possess this site reference.

Role Requirements

Procedure Scope: Administrators

Required Group Membership: Admin.Security

Handbook Reference

Package: TBD

Domain: TBD

Modifies: TBD

Defender for Email URL Submit and Allow Action

  1. If an email is captured in Quarantine due to detected malware related to URL or File Attachments but you know that the source is reputable, gather the embedded link or file for the next step.
  2. Navigate to the URL Submissions – Microsoft Defender portal, locate and select the + Submit to Microsoft for analysis action, a flyout will be generated where you will be able to supply the desired URL that keeps getting quarantined within the URL field, make sure to select the URL from the propagated list. We will also want to make sure to have the I’ve confirmed it’s clean option selected under the Why are you submitting this URL to Microsoft? Select Next to continue.
  3. On the following prompt, select Allow this URL, along with setting the entry to expire after the desired amount of time and adding an optional note. Click Submit to finalize.

Need Assistance?

Reach out to your Customer Success Manager to discuss how a Sittadel cybersecurity analyst can assist in managing these tasks for you. New to our services? Inquire about arranging a consultation to explore optimizing your Azure environment for painless management.