{"id":6471,"date":"2023-07-12T20:23:00","date_gmt":"2023-07-12T20:23:00","guid":{"rendered":"https:\/\/www.smarthost.au\/blog\/?p=6471"},"modified":"2024-06-18T12:33:37","modified_gmt":"2024-06-18T12:33:37","slug":"what-is-dmarc-and-why-should-you-have-it","status":"publish","type":"post","link":"https:\/\/www.smarthost.au\/blog\/what-is-dmarc-and-why-should-you-have-it","title":{"rendered":"What is DMARC and why should you have it?"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\"><strong>SPF and DKIM are the two most popular phishing protections. To increase security, protection can be extended with the DMARC mechanism.<\/strong><\/h2>\n\n\n\n<p>Domain-based Message Authentication (DMARC) is a mechanism that defines how the mail server should behave when it receives a message that doesn&#8217;t pass verification using SPF and DKIM. So in less technical terms. If a message is classified as spam &#8211; this mechanism allows you to create a policy on what should happen with such a message. We can define whether such a message is to be quarantined or deleted.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>How to implement the DMARC mechanism?<\/strong><\/h2>\n\n\n\n<p>SPF and DKIM mechanisms are already set on our hosting by default, however, in order to set the DMARC mechanism, both protections must be active. To create a DMARC record, log in to cPanel and then go to &#8220;Zone Editor&#8221;.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"981\" height=\"193\" src=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d1-1.png\" alt=\"\" class=\"wp-image-6472\" srcset=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d1-1.png 981w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d1-1-300x59.png 300w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d1-1-768x151.png 768w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d1-1-520x102.png 520w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d1-1-740x146.png 740w\" sizes=\"auto, (max-width: 981px) 100vw, 981px\" \/><\/figure>\n\n\n\n<p>Then select the domain you are interested in and select &#8220;Manage&#8221;<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"37\" src=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d2-1.png\" alt=\"\" class=\"wp-image-6473\" srcset=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d2-1.png 1024w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d2-1-300x11.png 300w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d2-1-768x28.png 768w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d2-1-520x19.png 520w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d2-1-740x27.png 740w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>The next step is to add a DMARC record.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"711\" height=\"177\" src=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d3-1.png\" alt=\"\" class=\"wp-image-6474\" srcset=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d3-1.png 711w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d3-1-300x75.png 300w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d3-1-520x129.png 520w\" sizes=\"auto, (max-width: 711px) 100vw, 711px\" \/><\/figure>\n\n\n\n<p>Here we can choose one of the defined policies:<\/p>\n\n\n\n<p><strong>None <\/strong>&#8211; no policy is selected,<br><strong>Quarantine <\/strong>&#8211; the message is marked as spam,<br><strong>Reject <\/strong>&#8211; the message is rejected by the server.<\/p>\n\n\n\n<p>It is also possible to define optional parameters. Below is a description of what each of them does.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"385\" height=\"510\" src=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d4-1.png\" alt=\"\" class=\"wp-image-6475\" srcset=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d4-1.png 385w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d4-1-226x300.png 226w\" sizes=\"auto, (max-width: 385px) 100vw, 385px\" \/><\/figure>\n\n\n\n<p><strong>Subdomain Policy<\/strong> &#8211; here you set the policy for subdomains.<\/p>\n\n\n\n<p><strong>DKIM and SPF Mode:<\/strong><br><strong>Relaxed<\/strong> &#8211; not all messages are checked for errors.<br><strong>Strict<\/strong> &#8211;&nbsp;all messages are verified.<\/p>\n\n\n\n<p><strong>Percentage<\/strong> &#8211; here we define what percentage of messages should be checked by the server.<\/p>\n\n\n\n<p><strong>Generate Failure Reports When:<\/strong><br><strong>All Checks Fail<\/strong> &#8211; all checks fail.<br><strong>Any Check Fails<\/strong> &#8211; any check fails.<\/p>\n\n\n\n<p><strong>Report Format<\/strong> &#8211; the format in which the report is to be generated.<\/p>\n\n\n\n<p><strong>Report Interval<\/strong> &#8211; time between reports expressed in seconds.<br><strong>Send Aggregate Mail Reports To<\/strong> &#8211; send aggregate reports to (enter the e-mail address in this field).<br><strong>Send Failure Reports To<\/strong> &#8211; send failure reports to (enter an e-mail address in this field).<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Recommended settings<\/strong><\/h2>\n\n\n\n<p>Below are the recommended settings for a DMARC record:<\/p>\n\n\n\n<p><strong>Policy <\/strong>&#8211; Quarantine,<\/p>\n\n\n\n<p><strong>Subdomain Policy<\/strong> &#8211; Quarantine,<\/p>\n\n\n\n<p><strong>DKIM and SPF Mode:<\/strong><br><strong>strict<\/strong>,<\/p>\n\n\n\n<p><strong>Percentage<\/strong> &#8211; 100,<\/p>\n\n\n\n<p><strong>Generate Failure Reports When<\/strong>: Any Check Fails,<\/p>\n\n\n\n<p><strong>Report Format<\/strong> &#8211; AFRF,<\/p>\n\n\n\n<p><strong>Report Interval<\/strong> &#8211; 86400,<br><strong>Send Aggregate Mail Reports To<\/strong> &#8211; here we enter the e-mail address to which the reports are to be sent,<br><strong>Send Failure Reports To<\/strong> &#8211; leave blank.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"405\" height=\"527\" src=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d5.png\" alt=\"\" class=\"wp-image-6476\" srcset=\"https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d5.png 405w, https:\/\/www.smarthost.au\/blog\/wp-content\/uploads\/2024\/06\/d5-231x300.png 231w\" sizes=\"auto, (max-width: 405px) 100vw, 405px\" \/><\/figure>\n","protected":false},"excerpt":{"rendered":"<p>SPF and DKIM are the two most popular phishing protections. To increase security, protection can be extended with the DMARC mechanism. Domain-based Message Authentication (DMARC) is a mechanism that defines how the mail server should<a class=\"read-more\" href=\"https:\/\/www.smarthost.au\/blog\/what-is-dmarc-and-why-should-you-have-it\">Continue reading<\/a><\/p>\n","protected":false},"author":16,"featured_media":6477,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-6471","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/posts\/6471","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/users\/16"}],"replies":[{"embeddable":true,"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/comments?post=6471"}],"version-history":[{"count":1,"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/posts\/6471\/revisions"}],"predecessor-version":[{"id":6478,"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/posts\/6471\/revisions\/6478"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/media\/6477"}],"wp:attachment":[{"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/media?parent=6471"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/categories?post=6471"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.smarthost.au\/blog\/wp-json\/wp\/v2\/tags?post=6471"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}