Email authentication records help receiving systems evaluate mail sent using your domain. The right values depend on every service allowed to send mail for you.
Steps
- Identify your mailbox provider and any website, newsletter, or business applications that send as your domain.
- Copy the SPF and DKIM values supplied by those providers into the authoritative DNS zone.
- Use one SPF policy for the domain, combining authorized senders as the providers instruct, rather than publishing several competing SPF records.
- Introduce or change DMARC after checking alignment and reporting. Ask Support for help if messages from a legitimate sender are failing.
Good to know
Do not copy another domain authentication records. Tightening DMARC before all senders are configured can reject genuine mail. DNS management in the hosting panel has no effect if another provider hosts the live zone.
Need help? Open a support ticket and include your domain and the step where you need assistance. Never include your password.