<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
Okta SPF, DKIM, and DMARC Information for Custom Email Domains
Administration
Okta Classic Engine
Okta Identity Engine
Overview

Okta supports and utilizes Sender Policy Framework (SPF), DomainKeys Identified Mail (DKIM), and Domain-based Message Authentication, Reporting, and Conformance (DMARC) for email validation. Administrators can configure these protocols for custom email domains or rely on the default out-of-the-box support for standard Okta email addresses.

Applies To
  • Okta Identity Engine (OIE)
  • Okta Classic Engine
  • Sender Policy Framework (SPF) IPs
  • DomainKeys Identified Mail (DKIM)
  • Domain-based Message Authentication, Reporting, and Conformance (DMARC)
  • Custom Email Domain
Solution

How does Okta handle email validation?

 

Okta supports and uses SPF, DKIM, and DMARC for email validation. Okta configures the DMARC policy in Reject mode to prevent email spoofing. Administrators can test this configuration online using the DMARC Inspector tool.

 

 

What mechanisms are supported for email validation?

 

Review the following supported mechanisms for Okta email validation.

 

 

Related References

Loading
Okta SPF, DKIM, and DMARC Information for Custom Email Domains