Topics
Email security, DMARC and brand spoofing
Authenticate your domains, reach p=reject without losing legitimate mail, and watch what leaves in your name.
Email securityAugust 12, 20266 min read
Reaching p=reject without losing a single legitimate email
The method we use to take a domain from p=none to p=reject: in what order, at what pace, and the three mistakes that send everyone back to square one.
Read the article
Email securityAugust 5, 20264 min read
The SPF ten-lookup limit: the trap that breaks a domain while you fix it
Adding one more sender to your SPF record can make the whole domain fail at once, with no warning. How to know where you stand and how to come back down.
Read the article
Email securityJuly 29, 20264 min read
SPF, DKIM, DMARC: who does what, and why you need all three
Three mechanisms, three distinct jobs, and one expensive misconception: passing SPF does not mean passing DMARC. What each one checks, and where they complete each other.
Read the article
A topic, a question?
Thirty minutes to test these principles against your actual environment.