Skip to main content
🦉
Message CenterMicrosoft 365 Updates
HomePermissionsTenant FinderPortfolio
🦉
M365 Message Centerby Cengiz YILMAZ

Track the latest updates, features, and announcements for Microsoft 365 services. Comprehensive archive of service updates and important changes.

Quick Links

HomePermissionsTenant FinderPortfolio

Connect

© 2026 M365 Message Center. Created with ❤ by Cengiz YILMAZ

Data sourced from Microsoft 365 Message Center • Not affiliated with Microsoft

  1. Home
  2. /
  3. MC1009923

Microsoft Defender for Office 365: Create allow entries directly in the Tenant Allow/Block List

Plan for Change

Message ID

MC1009923
View in Admin Center

Roadmap ID

406165
View in Roadmap

Services

Microsoft Defender XDR

Affected Platforms

Web

Summary

Microsoft Defender for Office 365 will soon allow creating allow entries for domains, addresses, and URLs directly from the Tenant Allow/Block Lists page. This feature will roll out in mid-March 2025 and will not impact current entries. No admin action is required for this update.

Details

This new feature applies to customers with Exchange Online Protection, Microsoft Defender for Office 365 Plan 1 or Plan 2 service plans.

Soon, it will be possible to create allow entries for domain & addresses and URLs directly from the Tenant Allow/Block Lists page. The entries can be created directly from the Microsoft Defender portal or the New-TenantAllowBlockListItems cmdlet. Allow entries for domains & addresses override spam and phishing (not high confidence phishing) verdicts of email from domain/sender addresses for delivery to the Inbox. URL allow entries override spam and phishing (not high confidence phishing) verdicts of the URL during mail flow and at time of click. Due to secure by default in Office 365, you still need to report the email, URL, or file to override high confidence phishing and malware verdicts. The submission automatically modifies existing allow entries or adds new entries as necessary.






The same permissions required for the Tenant Allow/Block List also apply to this feature. For information about these permissions, see Allow or block email using the Tenant Allow/Block List.

This message is associated with Microsoft 365 Roadmap ID 406165.

When this will happen:

General Availability (Worldwide, GCC, GCC High, DoD): We will begin rolling out in mid-March 2025 and expect to complete by late March 2025.

How this will affect your organization:

This new feature will not impact any of your current Tenant Allow/Block List entries. 

We suggest that you use allow entries for domain & addresses and URLs directly from the Tenant Allow/Block Lists page to enable misclassified spam and bulk/low confidence phishing to get delivered to the Inbox.

What you need to do to prepare:

This rollout will happen automatically with no admin action required. 

Timeline

Published
Feb 19, 2025
Message published to Message Center
Updated
Feb 19, 2025
Message content updated
End Date
Jun 30, 2025
Message timeline ends

Tags

#New feature#Admin impact

Category

Plan for Change

Related Messages

Similar updates

MC1013453●

Upcoming Changes for M365 Copilot Chat with Link Safety

Feb 21, 2025
MC973503

Microsoft Defender for Office: Introducing "Threat classification" for email

Jan 7, 2025
MC1036566

New Health Issue in the MDI Sensors Health Issues Tab

Mar 19, 2025
MC1239187●

Defender for Office 365 URL click alerts now include Microsoft Teams

Feb 26, 2026
MC1187837●

Microsoft Defender for Office 365 Zero-hour auto-purge (ZAP) Teams protection capabilities to Defender for Office Plan 1

Nov 18, 2025