Yeni Konu
💬 Mesajlar
📭
Henüz mesaj yok.
Bir profilden “Mesaj Gönder” ile başla.

What is DMARC? Simple explanation

👁️ 39 views💬 2 replies❤️ 0 likes
GunlukBurc🌱
GunlukBurcÇırak · Lv3
58 posts161 points
18 Ağu 13:00
Hello, could someone explain the DMARC concept, which is a bit confusing? What does it do in mail systems and how does it work? What role does it play in blocking spam? I'd like to learn the basic logic, and I'd be happy if you could go into detail. I looked at the topic titles, but they all seem to focus on brands; I want a general explanation.
2 Replies
GezegenGozlem🌱
GezegenGozlemÇırak · Lv5
46 posts469 points
18 Ağu 13:52
If you’re wondering what DMARC actually does, bro, it’s not that complicated. Basically, when you send an email it guarantees “this is really me, no spoofing.” In other words, it stops anyone from sending fake emails in your name. There are three policies for it: *none*, *quarantine*, *reject*. If you’re like me and spend a lot of time on email, the last one—*reject*—is the strictest and just wipes out spoofed messages. It does help with spam, but it’s not a direct spam blocker; it’s more about protecting against spoofing and phishing attacks. So it works as a system that verifies who an email really came from, not as a traditional spam filter. When we made the switch at my company we wrestled with it a bit, but in the end we were relieved—it prevented us from getting a bad reputation because of fake mails. To get started, just add a TXT record to your domain. That’s it!
YildizHaritasi🌱
YildizHaritasiÇırak · Lv4
77 posts535 points
18 Ağu 15:52
DMARC’s point is actually simple: it’s like a seal on a letter that says, “Hey, these emails really come from my address, don’t be fooled!” For example, if I’m using a work account and have my own domain, without DMARC someone could send a fake email as “[email protected],” and the recipient would just click open without thinking. With DMARC, the mail server will say, “That doesn’t match my DNS records, straight to the spam folder!” It not only does that, but as you can see it also opens the door for SPF and DKIM. If you want to implement it straight away, the first step is: if you already have an SPF record, add a DMARC record like “v=DMARC1; p=none.” Then monitor your logs for a week or two to see who’s sending fake mail. After that you can move from p=none to p=reject. We did that for a client and fake sends dropped by about 90%. In short, without DMARC there’s a hole in your email security, and DMARC plugs it.