Mimecast's DMARC solution protects beyond DKIM signatures and DKIM records by preventing attackers from spoofing emails.
Email is the #1 vector for cyberattacks today. Attackers can easily spoof an email address, sending messages that appear to come from a trusted source. As a result, authentication techniques like DomainKeys Identified Mail (DKIM) have been developed to provide better verification that an email and its sender are valid.
With DKIM, a sender signs an email with a cryptographic signature that verifies the email comes from a legitimate source and that it was not altered during transit. A receiving mail server validates the DKIM signature by using the public key found in the domain's DKIM record, part of its DNS record. Senders can maintain multiple DKIM records for various sending sources.
Using a DKIM record will likely improve email delivery, ensuring that fewer messages end up in junk or spam folders. But DKIM signatures and DKIM records on their own can't prevent all forms of spam and attacks, as the protocol does nothing to prevent attackers from spoofing the visible "from" part of the email header – the information that recipients see.
The DMARC protocol (Domain-based Message Authentication, Reporting & Conformance) builds on DKIM as well as SPF (Sender Policy Framework) to significantly improve email security. But implementing DMARC can be complicated and time-consuming without an expert guide. That's where Mimecast can help.
Mimecast DMARC Analyzer provides the tools and resources organizations need to reduce the time and complexity of deploying DMARC and managing DMARC policy. Offered as a 100% SaaS solution, DMARC Analyzer serves as a guide for deploying DMARC as quickly as possible. Unlike other solutions that require considerable professional services for implementation and ongoing maintenance, DMARC Analyzer is designed to make everything as simple as possible for email administrators.
DMARC Analyzer provides:
DMARC Analyzer simplifies DMARC deployment with a step-by-step approach and self-service tools that enable faster movement to DMARC enforcement. DMARC Analyzer offers:
Mimecast DMARC analyzer is part of Mimecast's comprehensive approach to email and web security. Additional security solutions from Mimecast include:
DomainKeys Identified Mail, or DKIM, is a way of authenticating email messages by adding a digital signature that ensures the email comes from a trusted source and has not been changed in transit. DKIM uses a private key to sign the email and publishes a public key in the domain's DNS that receiving mail servers can use to authenticate email.
A DKIM record is a line of text in a DNS record that contains the public key which can be used to authenticate a DKIM signature.
A DKIM record check is a diagnostic tool that tests the domain and selector for a published DKIM record. A DKIM record check can highlight any potential issues or errors in a DKIM record that may impact successful mail delivery. Mimecast offers a free DKIM record check, along with free DMARC and SPF record checks.