How To Configure DMARC In Cloudflare

November 7, 2024  |  2 min read
DMARC record configuration for Cloudflare

This guide will walk you through adding a Skysnag DMARC CNAME record using Cloudflare’s DNS management system. Once configured, Skysnag will manage your DMARC policies, protecting your domain from phishing and email fraud while ensuring email security compliance.

Note: To successfully apply the instructions below, you must have a Skysnag account. If you haven’t created one yet, click here to do so.

Step 1: Log in to Your Cloudflare Account

  1. Go to the Cloudflare website and log in with your account credentials.
  2. Once logged in, select the domain you want to update from the list of domains on your dashboard.

Step 2: Navigate to the DNS Management Section

  1. In the dashboard, click on the DNS tab at the top of the page. This will take you to the DNS management section where you can add, modify, or delete DNS records for your domain.

Step 3: Add the CNAME Record for DMARC

  1. Under the DNS Records section, click the Add Record button.
  2. In the record details, fill in the following information:

Type: Select CNAME from the dropdown menu.

Name/Host: Enter _dmarc.

Target/Value: Enter {your-domain-name}.protect._d.skysnag.com (replace {your-domain-name} with your actual domain, e.g., example.com.protect._d.skysnag.com).

TTL: Leave it as Auto unless you need a specific TTL setting.

  1. Click Save or Add Record to apply the changes.

Step 4: Verify the CNAME Record

  1. After adding the CNAME record, wait a few minutes for it to propagate.
  2. Go to the Skysnag dashboard and locate your domain in the dashboard.
  3. Click on Verify to verify the connection between your domain and Skysnag.
  4. Once verified, Skysnag will confirm the DMARC record is correctly set up.

Step 5: Confirm Skysnag Integration

  1. Once the DMARC record has been added and propagated, Skysnag will automatically manage DMARC policies and reports for your domain, improving your email security.
  2. You can monitor the status of the DMARC integration through your Skysnag dashboard.

Troubleshooting Tips:

CNAME Record not propagating? Ensure the record was added correctly and allow up to 24 hours for full DNS propagation.

Already have a DMARC TXT record? If you previously set a DMARC record, consider removing or modifying it to avoid conflicts with the Skysnag CNAME.

By following these steps, you’ve successfully added the Skysnag DMARC CNAME record to your domain through Cloudflare. This integration will ensure DMARC compliance and reporting are managed automatically by Skysnag.

Need help? Chat with one of our email experts!

Check your domain's DMARC security compliance

Enforce DMARC, SPF and DKIM in days - not months

Skysnag helps busy engineers enforce DMARC, responds to any misconfigurations for SPF or DKIM which increases email deliverability, and eliminates email spoofing and identity impersonation.