I suggest you ...

Enable DKIM support

Setting up DMARC for my domain after getting a spoofed email from my "support" address that was obviously not legit. While I've added RS to my SPF record, there's no DKIM signature for those emails, therefore they don't comply with DMARC. I've got it set to only monitor, but the idea is to eventually lock that down. Any thoughts on putting this in place?

8 votes
Vote
Sign in
Check!
(thinking…)
Reset
or sign in with
  • facebook
  • google
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    Jerry Nerviano shared this idea  ·   ·  Flag idea as inappropriate…  ·  Admin →

    1 comment

    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • facebook
    • google
      Password icon
      Signed in as (Sign out)
      Submitting...
      • Jerry Nerviano commented  ·   ·  Flag as inappropriate

        To clarify: From my understanding, adding the SPF record should have been sufficient, but the domains don't "align", so are still getting flagged. DKIM would bypass this entirely.

      Feedback and Knowledge Base