Looking up DNS records…

DMARC record generator

Your DMARC record

Type or paste a record here, or use the form below — the two stay in sync.
Action on failing mail.
Override for subdomains.
Policy for subdomains that have no DNS records (DMARCbis).

One or more addresses, comma separated. Daily XML summaries are sent here.
Per-message forensic copies. Rarely supported and may carry personal data.

Share of failing mail the policy hits.
Seconds (default 86400).

How to use & publish

  1. Build the record with the form, or paste an existing one into the box at the top and adjust it.
  2. Copy the record from the box.
  3. In your DNS provider, add a TXT record — name / host _dmarc.yourdomain.com, value = the record.
  4. Leave TTL at the default. After it propagates, re-check it with a DNS lookup.
  5. Start at p=none with a rua address, read the aggregate reports for a few weeks, then tighten to quarantine and finally reject.
{{ n.text }}