Skip to content

Sender Authentication

In the console: Settings › MTA › Inbound › Sender Authentication

The checks that tell real mail from forged mail (SPF, DKIM, DMARC), and how strict to be with mail that fails them.

DKIM Verification

Strategy

Whether DKIM verification is strict, relaxed or disabled.

Settings of their own: see Expression. Name in the API: dkimVerify.

Ignore insecure DKIM signatures

Whether to ignore insecure DKIM signatures such as those containing a length parameter.

On or off. Default: On. Name in the API: dkimStrict.

DKIM Signing

Signature

Domain to use for DKIM signing.

Settings of their own: see Expression. Name in the API: dkimSignDomain.

DMARC Verification

Strategy

Whether DMARC verification is strict, relaxed or disabled.

Settings of their own: see Expression. Name in the API: dmarcVerify.

ARC Verification

Strategy

Whether ARC verification is strict, relaxed or disabled.

Settings of their own: see Expression. Name in the API: arcVerify.

SPF Verification

EHLO

Whether SPF EHLO verification is strict, relaxed or disabled.

Settings of their own: see Expression. Name in the API: spfEhloVerify.

MAIL FROM

Whether SPF MAIL FROM verification is strict, relaxed or disabled.

Settings of their own: see Expression. Name in the API: spfFromVerify.

Reverse IP Verification

Reverse IP

How strict to be when verifying the reverse DNS of the client IP.

Settings of their own: see Expression. Name in the API: reverseIpVerify.