DNS & EMAIL
DMARC Record Inspector
Read DMARC tags such as policy, percentage, alignment and aggregate reporting destinations.
39DExternal testRuns from the toolbox server
RUN TEST
DMARC Record Inspector
HOW IT WORKS
About the DMARC Record Inspector
DMARC tells receivers how to handle mail that fails aligned SPF and DKIM checks. Reports can show who is sending with your domain and help you move from monitoring to quarantine or rejection.
How to use this result
- Run the test from this server.Use a public hostname, address, prefix or ASN in the format requested above.
- Compare with another observation point.Run a local command or use a second provider to identify location-specific behaviour.
- Correlate related evidence.Use the related tools below to compare DNS, routes, ports, TLS and application responses.
- Keep the time and context.Routing, DNS caches and reputation data change, so record when the result was collected.
Common interpretation issues
- A p=none policy collects information but does not request enforcement.
- Third-party senders must be configured before strict enforcement.
- Report addresses on another domain may need external-report authorisation.
NEED HELP INTERPRETING THE RESULT?
39D supports business networks, cyber security and managed IT.
For ongoing support or a larger infrastructure project, speak to the 39D team.
Frequently asked questions
What should a new deployment start with?
Many organisations begin with reporting and gradually increase enforcement after reviewing legitimate senders.
What does alignment mean?
The authenticated SPF or DKIM domain must align with the domain visible in the From header.