Skip to main content
For customizing Threat Detection and Smart Access, Box Shield enables you to create Shield lists, which are lists of locations, domains, integrations, host IP addresses, or email addresses that you can later either include in or exclude from your threat detection rules. The Shield list page shows you the following information about each Shield list:
  • List name
  • When the list was last modified
  • The type of list
  • How many items are in the list
  • How many rules and policies use the list
You can use Shield lists as an allowlist or denylist when defining detection rules in Threat Detection or restrictions in Smart Access, as shown in the following table:
List TypeUsage
LocationsDetection rules: Suspicious location
DomainsAccess policies: External collaboration restriction
IntegrationAccess policies: Integration restriction
IP addressesDetection rules: Suspicious location
Email addressesAccess policies: External collaboration restriction

Shield List Limits

The following table shows the number of Shield list limits in an enterprise:
ItemLimit
Number of items in a single Shield List10,000
Number of lists in an enterprise100
Max items in all lists in an enterprise1,000,000
Number of Shield Lists per policy20

See Also