Last date modified: 2026-Sep-25

Migrate to Relativity aiR Government

Setting up Legal Hold Government is different from setting the app up in Relativity aiR. This topic covers the differences and info about migrating data into Relativity aiR Government. For example, in Relativity aiR Government, you must make additional port requests to open and domain requests to allowlist.

Communications

Legal Hold utilizes external SMTP servers to send communications, so outbound traffic from Relativity to the SMTP server needs to be allowlisted. If the client is using smtp.office365.com or smtp.office365.us, there is no more work to allowlist SMTP servers.

  1. Create a ticket with Security to approve the outbound SMTP destination.
    • Your ticket should include the tenant environment and the SMTP server and port to allowlist.
    • Security Ticket Email Template
  2. Create a ticket with Security to perform the allowlisting
    • Your ticket should include the tenant environment and the SMTP server and port to allowlist. After this Jira ticket is created, link previously created Security ticket to this Network ticket. The Network team can only allowlist after it has been approved by Security.
    • Network Ticket Email Template
  3. Allowlist inbound Relativity connection on the SMTP server.
    • The client will need to ask the team managing their SMTP server to allowlist inbound connections from Relativity.
    • Specifically from these IP addresses:
      • 52.127.162.225
      • 52.127.162.224.

Create a ticket with the Relativity aiR Network team to analyze network traffic and if they're behaving as expected. If there are this still issues with sending test emails after these allowlisting steps are complete.

Preservation in-place

When setting up Legal Hold Government around Preservation in-place functionality, the steps are the same as the commercial setup. The only difference being the selection of the Commercial and Government preservation source options. For more information on setting up Preservation in-place, see Microsoft 365 preservation source.

The list of URLs that need to be allowlisted are as follows. They also should already be allowlisted by default:

For Government clients in Azure there is a distinction between GCC High and GCC Low Azure environment, and there are different URLs that must be allowlisted

For clients who are in a GCC High Azure environment the following URLs must be allowlisted

  • https://outlook.office365.com/powershell-liveid/
  • https://outlook.office365.us/powershell-liveid/

For clients who are in a GCC Low Azure environment the following URL must be allowlisted:

  • gcc02b.ps.compliance.protection.outlook.com

Microsoft routes GCC Low tenants through Commercial endpoints. When configuring a preservation data source for such a client they will use a Source Type of Office 365 (Standard).

These URLs must be allowlisted by Relativity internal for the instance.

Feedback