I read this site, and skimmed
https://docs.microsoft.com/en-us/azure/information-protectio... , and I still don't know
how it works. If I copy a "protected" file to my disk, how can it block me from viewing it? Or, conversely, how does it allow me to view it? Are the files encrypted, and my computer would request a key from MS's servers? And Windows would apply some DRM to prevent me from intercepting the key, or copying the decrypted files from RAM?