I have a friend who acts as a client for beer money at times. He recently changed email services and wound up with someone that runs a tight ship. All of a sudden, clients are calling him saying their emails are being rejected what's up?
I start looking at the addresses. Many of them are other small business suppliers that are depending on third-party third-parties like thomasnet, and they haven't touched configs since they day they were set up 15 years ago. Others, like GE, were quite surprising.
Turns out that in almost every case, these companies don't have a DMARC or SPF record set up. In particular, GE has no SPF record which really surprised me. If you can get into GE's mail server, there's nothing stopping you from validating and sending emails - but there's nothing stopping a secure email receiver from saying "I don't think you know who you are, rejected!"
If you're sending email professionally, there's absolutely no excuse to not have this set up. It took me about 30 minutes to do on my own mail service, and most of that was just reading about how to construct the proper record.
I have a friend who acts as a client for beer money at times. He recently changed email services and wound up with someone that runs a tight ship. All of a sudden, clients are calling him saying their emails are being rejected what's up?
I start looking at the addresses. Many of them are other small business suppliers that are depending on third-party third-parties like thomasnet, and they haven't touched configs since they day they were set up 15 years ago. Others, like GE, were quite surprising.
Turns out that in almost every case, these companies don't have a DMARC or SPF record set up. In particular, GE has no SPF record which really surprised me. If you can get into GE's mail server, there's nothing stopping you from validating and sending emails - but there's nothing stopping a secure email receiver from saying "I don't think you know who you are, rejected!"
If you're sending email professionally, there's absolutely no excuse to not have this set up. It took me about 30 minutes to do on my own mail service, and most of that was just reading about how to construct the proper record.
(post is archived)