Home › Knowledgebase › KB-287

How to set up and manage retention policies for automated cloud backups in Microsoft 365

Summary

This guide helps you troubleshoot and resolve: How to set up and manage retention policies for automated cloud backups in Microsoft 365. Follow the steps below to fix the issue.

Quick Tip: Need immediate assistance? 💻 Open a Ticket

Common Causes

Retention policies in Microsoft 365 control how long your automated cloud backups keep copies of emails, OneDrive files, SharePoint documents, and Teams conversations before they're permanently deleted. Setting these up correctly helps you stay within your storage quota, meet Australian compliance obligations (such as the Privacy Act record-keeping requirements), and ensure critical data isn't purged too early. This guide walks you through creating, editing, and monitoring retention policies through the Microsoft Purview compliance portal.

Before You Begin

You'll need a Microsoft 365 admin account with one of the following roles assigned:

Have a clear idea of which workloads you want to cover (Exchange, SharePoint, OneDrive, Teams) and how long each data type must be retained. If you're unsure, check with your accountant, legal adviser, or industry body for minimum retention periods relevant to your business.

Retention policies and backup retention are different things. Your automated cloud backup (managed by 220) keeps a copy of your data for a set period. A retention policy controls when Microsoft 365 itself deletes items from mailboxes and sites. Both work together to keep your data safe.

Quick Fix Steps

  1. Sign in to the Microsoft Purview compliance portal at https://compliance.microsoft.com.
  2. Navigate to Data lifecycle managementRetention policies.
  3. Click + New retention policy to start the wizard.
  4. Name the policy, choose the scope (static or adaptive), pick the workloads (Exchange, SharePoint, OneDrive, Teams), and set a retention period.
  5. Review and submit, then publish the policy to your chosen users or groups.

Detailed Instructions

Step 1: Access the Microsoft Purview Compliance Portal

  1. Open a browser and go to https://compliance.microsoft.com.
  2. Sign in with your Microsoft 365 admin credentials.
  3. If prompted for MFA, complete the authentication on your device.

Step 2: Start the Retention Policy Wizard

  1. In the left-hand menu, click Data lifecycle management.
  2. Click Retention policies.
  3. Select + New retention policy from the top toolbar.

Step 3: Name Your Policy and Choose a Description

  1. Enter a descriptive Name, for example 7-Year Business Records Retention.
  2. Optionally, add a Description so other admins understand the policy's purpose.
  3. Click Next.

Step 4: Choose the Policy Scope

You'll be asked whether the policy uses a Static or Adaptive scope.

Select Static scope for most small business scenarios, then click Next.

Step 5: Select Workloads to Include

  1. Tick the boxes for the workloads you want to cover:
    • Exchange email
    • SharePoint sites
    • OneDrive accounts
    • Microsoft Teams chat and channel messages
    • Microsoft Teams meeting recordings
  2. Click Next.

Step 6: Decide Whether to Retain or Delete

Choose what happens to items when the retention period ends:

Enter the retention period in days, months, or years. Common choices are 7 years for financial records or 5 years for tax-related correspondence under ATO guidance.

Once a retention policy deletes an item, it cannot be recovered from Microsoft 365. However, your 220 automated cloud backup will still hold a copy according to your backup retention schedule. Always confirm your backup retention window covers any compliance minimums before shortening a policy.

Step 7: Apply the Policy to Users, Sites, or Groups

  1. For Exchange: Choose All recipients, Specific recipients, or a distribution group.
  2. For SharePoint sites: Add site URLs individually or select All sites.
  3. For OneDrive: Choose All users or pick specific users.
  4. For Teams: Choose All teams or specific team names.
  5. Click Next.

Step 8: Review and Submit

  1. Review the summary of your selections on the final screen.
  2. Click Submit.
  3. Wait for the confirmation message. The policy can take up to 7 days to fully propagate across your tenant.

Step 9: Monitor Policy Status

  1. Return to Data lifecycle managementRetention policies.
  2. Find your policy in the list and check the Status column. It will show Pending, Success, or Error.
  3. Click the policy name to view deployment progress per workload.

Managing Existing Retention Policies

Edit a Policy

  1. In the Retention policies list, select the policy.
  2. Click Edit from the toolbar.
  3. Update the workload coverage, retention period, or scope as needed.
  4. Click Save. Changes apply within 24 hours to new items; existing items may take up to 7 days.

Disable or Delete a Policy

  1. Select the policy from the list.
  2. Click Disable to pause it without removing the configuration, or Delete to remove it permanently.
  3. Confirm the action when prompted.

Disabling a policy stops new items from being retained but does not delete items already held under it. If you want to release storage, you'll need to wait for the retention period to expire or manually purge items from the relevant mailboxes or sites.

Storage Quota Tips

Troubleshooting

Policy Won't Apply to a User

Policy Shows 'Error' Status

Items Deleted Too Early

Storage Quota Exceeded

Still Having Issues?

Need more help? If the issue persists after trying these steps, please open a support ticket and our team will assist you.

💻 Open a Ticket