DMARC - Online Help | Zoho Campaigns

DMARC

Spammers will often try to forge the "From" address in an email to deceive recipients and perform unlawful activities. Obviously mailbox providers want to prevent such emails landing in the inbox of their users, and email senders don't want their emails to be tampered with. The only way to achieve these goals, though, is by implementing domain authentication techniques.
 
DMARC (Domain-based Message Authentication Reporting and Conformance) is an authentication technique that uses the Sender Policy Framework (SPF) and DomainKeys Identified Mail (DKIM) to validate emails. DMARC allows a business to publish a policy that provides instructions to the receiving servers of mailbox providers on how to handle unauthenticated emails sent from their domain.



When you implement DMARC, there are three actions you can instruct the receiving server to perform when they receive unauthenticated emails from your domain.

Take no action [ p = none ]
You can design a policy and set it as "p=none". When a receiving server identifies an unauthenticated email, it will accept it without taking any action.
 
Quarantine the email [ p = quarantine ]
You can design a policy and set it as "p=quarantine". When the receiving server identifies an unauthenticated email, it will accept the email and store it in the quarantine folder on the server. Only the server's administrators will  be able to view these emails.
 
Reject the email [ p = reject ]
You can design a policy and set it as "p=reject". The policy will instruct the receiving server to reject unauthenticated email. You can learn more about the email that got rejected by analyzing the DMARC failure report.

How DMARC works 

DMARC is dependant on two other email authentication techniques, SPF and DKIM. For an email to pass the DMARC validation, it must either pass the SPF authentication and alignment validation or DKIM authentication and alignment validation.
 
Step 1
You need to publish the DMARC policy that provides instructions to the receiving servers of mailbox providers on handling emails that violate the policy. The record may take 24 hours to get reflected. 
 
Step 2
You need to authenticate your sender domain by implementing SPF and DKIM. If you send emails without implementing SPF and DKIM, your emails may bounce. After implementing SPF and DKIM, when you send emails, the receiving server of the mailbox provider will use the DNS to identify the DMARC record corresponding to the sender domain. The receiving server will perform the following actions:
  1. ‌Validate the DKIM key.
  2. Verify whether the email was sent from an IP address that's listed in the SPF record.
  3. Verify whether the headers in the email message show proper domain alignment.
Step 3
‌The receiving server will apply the DMARC policy and carry out the instruction defined in the policy.
 
Step 4
‌The receiving server will send a report on how it handled the email to the reporting email address listed in the DMARC record.

Decoding the DMARC record

Here's a sample DMARC record:
v=DMARC1\; p=none\; rua=mailto:dmarc-aggregate@mydomain.com\; ruf=mailto:dmarc-afrf@mydomain.com\; pct=100

- Indicates the version of DMARC that's being used.
p - Indicates the policy set by the business.
rua - Indicates the URI to which a consolidated report will be sent detailing the SPF and DKIM validation results, information about the sending and receiving domains, and the percentage of successful authentications.
ruf - Indicates the email address to which the detailed SPF/DKIM failure report will be sent.
pct - Indicates the percentage of emails on which the policy will be applied.

How to implement DMARC records

DMARC implementation consists of three steps which are described in more detail below:
  1. Validate your SPF and DKIM records
  2. Generate a DMARC record
  3. Add the record to your domain's DNS

Validate your SPF and DKIM records

You need to verify if your SPF and DKIM records are authenticated and properly aligned. Please remember that it is mandatory to set up SPF and DKIM records for your domain to implement DMARC. If either SPF/ DKIM record's authentication and alignment check fails then the DMARC test will also automatically fail.
To check the SPF / DKIM alignment:
  1. For your SPF record, ensure that the "from address" and the "return-path address" match
  2. For your DKIM record, ensure that the "from address" and the "d" tag of the record match.
Learn how to set up SPF and DKIM records for your domain. 

Generate a DMARC record

You can use any tool recommended listed by DMARC.org to generate a new DMARC record. 

Add DMARC record to your domain's DNS

The final step is to add the DMARC record to the DNS server as a TXT record. Each domain hosting provider has a different process for completing this task. You can do this last step on your own or get your domain hosting provider to help you. 

Choose an email account to receive DMARC reports

You must choose an email account to receive reports on the performance of your email. We recommend that you use a distinct email account so that the emails do not get lost in the flood of other emails you receive on a regular basis. These reports will help you understand how your email is performing and will assist you in changing the way you communicate with your recipients.

Benefits of implementing DMARC  

Implementing DMARC has the following benefits:
  1. Prevents fraudsters from using your sender domain to perform spoofing activities.
  2. Improves email deliverability as implementing DMARC will get you into the good books of mailbox providers and anti-spam service.
  3. It helps you monitor the emails you send and gives you control over how mailbox providers handle unauthenticated emails sent from your domain.
At Zoho Campaigns, we urge our users to implement SPF, DKIM, and DMARC, as it is the best way to safeguard your emails. Read our help article to learn more about setting up the SPF and DKIM TXT records of your sender domain.

    Zoho CRM Training Programs

    Learn how to use the best tools for sales force automation and better customer engagement from Zoho's implementation specialists.

    Zoho CRM Training
      Redefine the way you work
      with Zoho Workplace

        Zoho DataPrep Personalized Demo

        If you'd like a personalized walk-through of our data preparation tool, please request a demo and we'll be happy to show you how to get the best out of Zoho DataPrep.

        Zoho CRM Training

          Create, share, and deliver

          beautiful slides from anywhere.

          Get Started Now


            Zoho Sign now offers specialized one-on-one training for both administrators and developers.

            BOOK A SESSION








                                    You are currently viewing the help pages of Qntrl’s earlier version. Click here to view our latest version—Qntrl 3.0's help articles.




                                        Manage your brands on social media

                                          Zoho Desk Resources

                                          • Desk Community Learning Series


                                          • Digest


                                          • Functions


                                          • Meetups


                                          • Kbase


                                          • Resources


                                          • Glossary


                                          • Desk Marketplace


                                          • MVP Corner


                                          • Word of the Day


                                            Zoho Marketing Automation

                                              Zoho Sheet Resources

                                               

                                                  Zoho Forms Resources


                                                    Secure your business
                                                    communication with Zoho Mail


                                                    Mail on the move with
                                                    Zoho Mail mobile application

                                                      Stay on top of your schedule
                                                      at all times


                                                      Carry your calendar with you
                                                      Anytime, anywhere




                                                            Zoho Sign Resources

                                                              Sign, Paperless!

                                                              Sign and send business documents on the go!

                                                              Get Started Now




                                                                      Zoho TeamInbox Resources



                                                                              Zoho DataPrep Resources



                                                                                Zoho DataPrep Demo

                                                                                Get a personalized demo or POC

                                                                                REGISTER NOW


                                                                                  Design. Discuss. Deliver.

                                                                                  Create visually engaging stories with Zoho Show.

                                                                                  Get Started Now









                                                                                                      • Related Articles

                                                                                                      • Can I use a public domain-based email address to send marketing emails?

                                                                                                        Some of the major email service providers have framed new policies that mandate the implementation of DMARC. If you don't authenticate your sender domain by implementing DMARC, your emails will bounce. It implies that you can't use third-party sender ...
                                                                                                      • How to create a custom return-path address

                                                                                                        As marketers, you know that the race to achieve inbox placement is getting tougher every day. The best way to land your emails in your contact's inbox is by implementing email authentication techniques. At Zoho Campaigns, we urge our users to ...
                                                                                                      • When SPF or DKIM alignment fails

                                                                                                        A DMARC check includes SPF and DKIM alignment. If your DMARC report says that SPF or DKIM alignment has failed for your emails even though you've properly authenticated your domain with Zoho Campaigns, read the information below to learn why this may ...
                                                                                                      • What is BIMI and why is it important?

                                                                                                        What is BIMI? Nobody wants their inboxes to be flooded with spam or unwanted emails. To combat this, SPF, DKIM, and DMARC are email authentication methods that most businesses employ to inform their recipients that the emails they receive are ...
                                                                                                      • Why shouldn't I use a public domain address?

                                                                                                        An email from a public domain sender address may make recipients hesitate to read your email, and they may even mark it as spam. Spammers often use public domains for their sender addresses therefore their domain reputation tends to be low. Using a ...
                                                                                                        Wherever you are is as good as
                                                                                                        your workplace

                                                                                                          Resources

                                                                                                          Videos

                                                                                                          Watch comprehensive videos on features and other important topics that will help you master Zoho CRM.



                                                                                                          eBooks

                                                                                                          Download free eBooks and access a range of topics to get deeper insight on successfully using Zoho CRM.



                                                                                                          Webinars

                                                                                                          Sign up for our webinars and learn the Zoho CRM basics, from customization to sales force automation and more.



                                                                                                          CRM Tips

                                                                                                          Make the most of Zoho CRM with these useful tips.



                                                                                                            Zoho Show Resources