
There was no way for to circumvent a good backup strategy! Out of scope: malicious action by the administrator Step 1: a test email was sent from an external domain to an account called can see clearly that the test email was eventually backed up and stored in the backup PST file, created by BackupAssist 365.
Inspect the backup to see if the item, which should no longer exist, was captured in the backup. Configure BackupAssist 365 to back up the Recoverable Items folder. Follow the instructions outlined in the Tufts University guide. Create a test email from an external domain. We followed this process to examine whether the “securely deleting email” procedure can work: We ran through their process and gathered the results. This creates the impression that Recoverable Items can be bypassed. For instance, the article Securely Deleting Email published by Tufts University suggests that it’s possible to securely delete and purge emails from your account, such that “they can no longer be recovered.” It also gives instructions on how to purge your items from the Recoverable Items folder. There is confusion about this topic because there are webpages that say this is possible. Is it still possible for your users to delete items without a trace? This article assumes you haven’t turned on those enterprise features, and you’re running Microsoft 365 (Office 365) in its default configuration. However, what if you’re not running any of these kinds of solutions? Is there a grey area here? If you run a mail archiver on your mail gateway, then additionally, emails coming in and out of the domain will be captured there. Then every incoming and outgoing email to any mailbox will be captured. It’s clear that if you run one of these kinds of solutions: A good backup solution for Microsoft 365, like BackupAssist 365, can capture deleted emails when configured to back up the Recoverable Items folder. You don’t need to turn on Journaling or use any of the Enterprise features like Legal Hold.
Microsoft 365 in its default configuration is sufficient.Ordinary users cannot delete items “without a trace.”.We ran some experiments to see if it’s possible to permanently delete emails without a trace.