Setup DLP Gateway
Setup DLP Gateway
Introduction
To use Zivver DLP Gateway with Exchange Online, configuring several mail flow rules is required. Simply put, these rules specify which outgoing emails should or should not be routed to Zivver DLP Gateway and add an email header that will be recognized by the Zivver Platform.
Follow the steps below to set up the DLP Gateway mail flow rules in Exchange Online.
If you are configuring any additional mail flow rule conditions, actions, exceptions, or settings not specified on this page, we recommend following Microsoft’s best practices for configuring mail flow rules in Exchange Online.
Prerequisites
- Exchange Administrator privileges
- Send on Behalf of all your sending domains is set up. See Send Zivver mails from your own domain for instructions on how to configure it.
- In order to follow these steps, you must have already created a connector.
- See Create a connector in Exchange Online for instructions in Exchange Online.
- See Create a send connector in Exchange on premise for instructions in Exchange On-premise.
Limitations
- If you prevent users from sending email through the Zivver WebApp while using DLP Gateway, you cannot disable the policy Automatically fall back to verification email.
By default, sending email through the Zivver WebApp is enabled. If you are not sure, go to https://app.zivver.com and try to compose a new draft message. Contact your Customer Success Manager or create a support ticket if you prevent users from sending emails through the Zivver WebApp and you want to disable the policy Automatically fall back to verification email.
Part 1: Configuring the primary mail flow rule
Depending on the Exchange version you use, please go to one of the below pages with the instructions to configure the primary mail flow rule in your Exchange version:
- Create primary DLP Gateway mail flow rule in Exchange Online
- Create primary DLP Gateway mail flow rule in Exchange On premise
Part 2: Handle exceptions
To prevent a loop where emails that originate from the Zivver Platform are rerouted back to the Zivver Platform, you need to set up additional mail flow rules. The pages below describe how to set up these additional rules for Exchange Online or Exchange On premise.
- Create DLP Gateway exception mail flow rule(s) in Exchange Online
- Create DLP Gateway exception mail flow rule(s) in Exchange On premise
Part 3: Enable the primary DLP Gateway mail flow rule
Before turning on the mail flow rule for DLP Gateway, verify that all implementation requirements for DLP Gateway are satisfied and Zivver is correctly configured for your organization. If you need help, please reach out to your relevant contact at Zivver. If you are unsure, create a support ticket.
If you configured an activation date and time in the ‘rule settings’ section, you can skip this step. In this case, it is advised to set a calendar reminder on the specified date and time to verify that the mail flow rule has indeed been automatically activated.
Depending on the Exchange version you use, please go to one of the below pages with the instructions to enable the primary mail flow rule in your Exchange version:
- Enable primary DLP Gateway mail flow rule in Exchange Online
- Enable primary DLP Gateway mail flow rule in Exchange On premise
Updated on 2026-03-12