Free tool

DMARC record generator

Put your DMARC policy together with a handful of choices and copy the finished TXT record straight away. No account needed, nothing is stored.

v=DMARC1; p=none

Add this as a TXT record on _dmarc.yourdomain.com at your domain registrar or hosting provider.

Explanation

Which choice fits you?

When in doubt, always start with p=none. Nothing is blocked, and you simply collect reports about who is mailing on behalf of your domain. Only once you are sure that all of your own sending services (CRM, newsletter, accounting package) are set up correctly does it make sense to move up to quarantine and eventually reject.

The rua= address is where the daily, aggregated reports are sent. Without it you get no insight into who is mailing as your domain, and you will never dare move up to a stricter policy. The ruf= address is optional and delivers details of individual failed messages, but not every mailbox provider supports it.

With pct= you apply the policy to a percentage of your email, which is handy for testing carefully before setting the policy to 100%. adkim= and aspf= decide how strictly SPF and DKIM have to match the visible sender domain: relaxed (the default) allows subdomains, strict requires an exact match.

Have you not set up SPF or DKIM yet? Start there, because DMARC builds on them. Check with the free SPF check and DKIM check, and read the full explanation on the DMARC explanation page.

Publishing a record is the beginning, not the end

DuzMarc processes the reports arriving at your rua address every day, shows in a clear dashboard who is mailing on behalf of your domain and helps you move up to p=reject on solid ground.

Start a free trial