Uluseta njani uQinisekiso lwe-imeyile kwi-Microsoft Office (SPF, DKIM, DMARC)

Microsoft Office 365 Email Authentication - SPF, DKIM, DMARC

Sibona ngakumbi nangakumbi imiba yokuhanjiswa kunye nabathengi kule mihla kwaye iinkampani ezininzi kakhulu azinasiseko ungqinisiso lwe-imeyile ukuseta kunye ne-imeyile yabo yeofisi kunye nababoneleli ngeenkonzo zentengiso ye-imeyile. Eyamva nje ibiyinkampani ye-ecommerce esisebenza nayo ethumela imiyalezo yenkxaso kwiMicrosoft Exchange Server.

Oku kubalulekile kuba ii-imeyile zenkxaso yomthengi womthengi zisebenzisa olu tshintshiselwano lwemeyile kwaye emva koko zihanjiswa ngenkqubo yabo yenkxaso yamatikiti. Ke, kubalulekile ukuba sisete uQinisekiso lwe-imeyile ukuze ezo imeyile zingamkelwa ngempazamo.

Xa uqala ukuseta iOfisi yeMicrosoft kwindawo yakho, iMicrosoft inodibaniso oluhle kunye neeseva ezininzi zoBhaliso lweDomain apho ziseta ngokuzenzekelayo lonke utshintsho oluyimfuneko lwemeyile (MX) iirekhodi kunye neNkqubo-sikhokelo yoMgaqo-nkqubo womThumeli (SPF) ingxelo ye-imeyile yeOfisi yakho. Irekhodi ye-SPF enoMicrosoft ethumela i-imeyile yeofisi yakho yirekhodi yombhalo (TXT) kwisizinda sakho sobhaliso esijongeka ngolu hlobo:

v=spf1 include:spf.protection.outlook.com -all

I-SPF bubuchwephesha obudala, nangona kunjalo, kwaye ukuqinisekiswa kwe-imeyile kuye kwahambela phambili kunye noQinisekiso loMyalezo olusekwe kwiDomain, ukuNika iNgxelo kunye nokuThotyelwa (I-DMARC) itekhnoloji apho kunqabile ukuba indawo yakho yonganyelwe yi-imeyile ethumela umyalezo. I-DMARC ibonelela ngendlela yokuseta ukuba ufuna ngqongqo kangakanani na ababoneleli ngenkonzo ye-intanethi (ISP) ukuqinisekisa ulwazi lwakho lokuthumela kwaye ibonelele ngesitshixo sikawonke-wonke (RSA) ukuqinisekisa indawo yakho kunye nomboneleli wesevisi, kulo mzekelo, Microsoft.

Amanyathelo okuseta i-DKIM kwi-Ofisi 365

Ngelixa ii-ISP ezininzi zithanda Indawo yokusebenzela kaGoogle ikubonelela ngeerekhodi ezi-2 zeTXT zokuseta, iMicrosoft iyenza kancinci ngokwahlukileyo. Bahlala bekubonelela ngeerekhodi ze-CNAME ezi-2 apho naluphi na uqinisekiso lumiselwe kwiiseva zabo ukuze kujongwe kwaye kuqinisekiswe. Le ndlela iya isiba yinto eqhelekileyo kwishishini… ngakumbi ngababoneleli ngenkonzo ye-imeyile kunye nababoneleli ngenkonzo be-DMARC.

  1. Papasha iirekhodi ezimbini zeCNAME:

CNAME: selector1._domainkey 
VALUE: selector1-{your sending domain}._domainkey.{your office subdomain}.onmicrosoft.com
TTL: 3600

CNAME: selector2._domainkey
VALUE: selector2-{your sending domain}._domainkey.{your office subdomain}.onmicrosoft.com
TTL: 3600

Ewe kunjalo, kufuneka uhlaziye i-domain yakho yokuthumela kunye ne-subdomain yeofisi yakho ngokulandelelana kumzekelo ongasentla.

  1. dala Izitshixo ze-DKIM kweyakho Umkhuseli weMicrosoft 365, Iphaneli yolawulo yeMicrosoft ukuze abathengi balawule ukhuseleko lwabo, imigaqo-nkqubo kunye neemvume. Uya kufumana oku Imigaqo-nkqubo nemigaqo > Imigaqo-nkqubo yezoyikiso > Iipolisi ezichasene nespam.

dkim izitshixo Microsoft 365 umkhuseli

  1. Nje ukuba wenze izitshixo zakho ze-DKIM, kuya kufuneka uvule Sayina imiyalezo kulo mmandla ngotyikityo lwe-DKIM. Enye inqaku kule nto kukuba kungathatha iiyure okanye iintsuku ukuba oku kuqinisekiswe kuba iirekhodi zesizinda zigcinwe.
  2. Nje ukuba ihlaziywe, unako qhuba iimvavanyo zakho ze-DKIM ukuqinisekisa ukuba basebenza ngokufanelekileyo.

Kuthekani malunga ne-imeyile yoQinisekiso lwe-adn yeNgxelo yokuhanjiswa?

Nge-DKIM, uqhele ukuseta idilesi ye-imeyile yokubamba ukuze ube nazo naziphi na iingxelo ezithunyelwe kuwe malunga nokuhanjiswa. Olunye uphawu oluhle lwendlela kaMicrosoft apha kukuba barekhoda kwaye badibanise zonke iingxelo zakho zokuhanjiswa- ke akukho mfuneko yokuba idilesi ye-imeyile ibekwe iliso!

Microsoft 365 yokhuseleko email spoofing iingxelo