DMARC Anti-Spoof
Comprehensive fact sheets covering DMARC anti-spoof conformance requirements and email security compliance standards. Use these resources to understand how DMARC authentication helps protect domains from email spoofing and phishing attacks.
Conformance Standards
DMARC (Domain-based Message Authentication, Reporting, and Conformance) builds on SPF and DKIM to give domain owners control over how their email is authenticated. These fact sheets outline the key conformance requirements that organizations should meet to achieve effective anti-spoof protection.
Each fact sheet addresses a specific aspect of DMARC conformance, from policy syntax and alignment modes to reporting formats and gradual enforcement strategies.
DMARC Policy Syntax
Details the structure of DMARC DNS records, including the v, p, rua, ruf, pct, and sp tags, with examples of valid configurations.
Alignment Requirements
Covers SPF and DKIM identifier alignment — both relaxed and strict modes — and how alignment failures affect DMARC evaluation and policy application.
Reporting & Feedback
Explains aggregate (rua) and forensic (ruf) reporting, including report formats, delivery expectations, and how to interpret DMARC feedback data.
Policy Enforcement
Guidance on moving from none to quarantine to reject policies, with recommendations for monitoring before full enforcement.
Subdomain Policy
How the sp tag controls DMARC policy inheritance for subdomains, and best practices for securing subdomains against spoofing.
Common Pitfalls
Identifies frequent DMARC configuration errors — such as missing SPF/DKIM setup, incorrect alignment, and overly aggressive early enforcement — with remediation steps.
Related Resources
Explore these additional Trusted Sender Score resources to deepen your understanding of DMARC and email security: