How to Stop Email Spoofing

  • Apart from SPF, what else can be done to stop hackers from spoofing your company's email addresses?

  • Bob Brown

    Bob Brown Correct answer

    7 years ago

    Set up Domain Keys Identified Mail on your own domain. That will digitally sign legitimate outgoing from your domain. More and more email providers are rejecting or flagging spoofed email where legit email is identified with a Domain Key signature.

    Your question says, "apart from SPF..." and that's what I answered. However, for others who might use this answer, SPF is another deterrent. It is easy to set up, but has some limitations that should be considered carefully. You probably want to start with a SOFTFAIL policy.

    It might be time to also add DMARC. This is the highest voted question on this topic on this site.

License under CC-BY-SA with attribution

Content dated before 7/24/2021 11:53 AM