DMARC Anti-Spoof

Conformance Fact Sheets

Comprehensive fact sheets covering DMARC anti-spoof conformance requirements and email security compliance standards. Use these resources to understand how DMARC authentication helps protect domains from email spoofing and phishing attacks.

A tall orange lighthouse on a tree-covered hill at dusk, viewed across calm water with a wooden dock, reflections of light on the water

Conformance Standards

DMARC (Domain-based Message Authentication, Reporting, and Conformance) builds on SPF and DKIM to give domain owners control over how their email is authenticated. These fact sheets outline the key conformance requirements that organizations should meet to achieve effective anti-spoof protection.

Each fact sheet addresses a specific aspect of DMARC conformance, from policy syntax and alignment modes to reporting formats and gradual enforcement strategies.

DMARC Policy Syntax

Details the structure of DMARC DNS records, including the v, p, rua, ruf, pct, and sp tags, with examples of valid configurations.

Alignment Requirements

Covers SPF and DKIM identifier alignment — both relaxed and strict modes — and how alignment failures affect DMARC evaluation and policy application.

Reporting & Feedback

Explains aggregate (rua) and forensic (ruf) reporting, including report formats, delivery expectations, and how to interpret DMARC feedback data.

Policy Enforcement

Guidance on moving from none to quarantine to reject policies, with recommendations for monitoring before full enforcement.

Subdomain Policy

How the sp tag controls DMARC policy inheritance for subdomains, and best practices for securing subdomains against spoofing.

Common Pitfalls

Identifies frequent DMARC configuration errors — such as missing SPF/DKIM setup, incorrect alignment, and overly aggressive early enforcement — with remediation steps.

Related Resources

Explore these additional Trusted Sender Score resources to deepen your understanding of DMARC and email security: