Skip to content
Release: Australia · Updated: 2026-07-09 · Official documentation · View source

DLP Incidents Archival

The Data Loss Prevention Incident Response is provisioned with one archival rule in the base system for the DLP incident table. The related records are also added in the base system to the DLP incident archive rule.

Before you begin

Role required: admin

Procedure

  1. Navigate to All > System Archiving > Archive Rules.

    The system archiving rules that are in the base system are displayed.

  2. View the DLP archiving rule.

    Note: DLP Incidents inactive over 15 days is the default base system archiving rule for DLP incidents. You can modify the archiving rule if necessary. This rule signifies that the incidents that are inactive above 15 days are automatically archived.

Image omitted: dlp-archiving-rule.png
DLP incidents archival
**Note:** For information on how the archival rules are created, see [Create an archive rule](../../platform-administration/t_CreateAnArchiveRule.md).

For information on how to view the archived incidents, see [View archived DLP incidents](using-dlp-ops-portal.md).
  1. Update the rule.

  2. Archive DLP related records
    Use the Archive Related Records related list for DLP incidents to add the related records to the archive rule.

Parent Topic:DLP Incident Response Administration

Related topics

DLP default configuration settings

Create end user lookup rules

Create assignment rules

Create incident consolidation rules

Create response due date rules

Create Approval Rules

Create user instructions templates

Create email templates

Create a Data Loss Prevention Incident Response SLA trigger

Create a Data Loss Prevention Incident Response SLA definition

Create assessments

Configure response option for your DLP incidents

Create incident response option rules

Create age chart configurations

Create user delegate configurations

Create repeat offender identification rules

Create additional incident data fields

DLP SLA Definition form

Configure advanced settings

Monitor DLP Integration Run process

DLP Incident Access Restrictions