DMARC Record Generator
Create a DMARC policy record step by step – from monitoring (p=none) to full protection (p=reject) – with reporting addresses and alignment.
DMARC ties SPF and DKIM together and tells receiving servers what to do with mail that fails – and it sends you reports showing who is sending as your domain. Build the record step by step and follow the safe roll-out path from monitoring to full protection.
The safe roll-out
p=nonewith aruaaddress – collect reports for 2–4 weeks.- Fix every legitimate sender that fails (add it to SPF or set up DKIM).
p=quarantine– failures go to spam. Optionally start withpct=25.p=reject– spoofed mail is refused. Keep reading the reports.
Frequently asked questions
Where does the record go?
Create a TXT record named _dmarc (for example _dmarc.example.com) with the generated value.
More tools
All tools →DNS Lookup
Look up A, AAAA, MX, TXT, NS, CNAME, SOA, CAA, SRV and PTR records for any domain or IP address.
Open tool Email & DNSSPF, DKIM & DMARC Checker
Check a domain’s MX, SPF, DMARC and DKIM records in one go, with plain-English findings and fixes for common mistakes.
Open tool Email & DNSSPF Record Generator
Build a valid SPF TXT record for Microsoft 365, Google Workspace, your own mail server and sending services – with a lookup counter.
Open tool