Email authentication helps verify that messages actually come from who they claim to be. BlueMail checks three important authentication methods: SPF, DKIM, and DMARC to help protect you from spoofed or forged emails.
What Is Email Authentication?
Email authentication protocols help prevent spam, phishing, and email spoofing by verifying that an email is genuinely sent from the domain it claims to be from.
SPF (Sender Policy Framework)
SPF allows domain owners to specify which mail servers are authorized to send email on behalf of their domain. When you receive an email, the receiving server checks if it came from an approved server listed in the sender's SPF record.
DKIM (DomainKeys Identified Mail)
DKIM adds a digital signature to outgoing emails. This signature is verified against a public key published in the sender's DNS records, ensuring the email hasn't been tampered with during transit.
DMARC (Domain-based Message Authentication, Reporting, and Conformance)
DMARC builds on SPF and DKIM by telling receiving servers what to do if an email fails authentication checks. It also provides reporting so domain owners can monitor and protect against email abuse.
How BlueMail Uses Authentication
BlueMail automatically checks incoming emails against these authentication protocols. When an email fails authentication checks, it may indicate:
- The sender's identity cannot be verified
- The email might be spoofed or forged
- The message could be from a phishing attempt
- The domain's security settings are improperly configured
BlueMail displays authentication status to help you identify potentially suspicious messages and make informed decisions about email safety.
Turning the Check On or Off
The check is a single switch. Gå til Innstillinger | Personvern og sikkerhet | Avanserte funksjoner og slå på E-postautentisering (SPF, DKIM, DMARC), beskrevet der som "Verifiser at meldinger passerer standard e-postautentiseringstester for å hjelpe med å oppdage forfalskede eller forfalskede avsendere."
Samme skjerm har de relaterte phishing- og mistenkelige avsendere-beskyttelser: Vis phishing-varsler, Identifikasjon av uvanlige eller ukjente avsendere, og Lær av mine handlinger.
Dette hjelper deg ved å markere e-poster som ikke bestått autentiseringstester, og gir deg et ekstra sikkerhetslag mot svindel.
If You Trust a Sender That Failed the Check
The check is all senders or none — there is no per-sender exception to it. What a failed check does is flag the message: it is not deleted, and it is not moved out of your Inbox, so mail from someone you trust is still there to read and reply to. The flag is asking you to look twice, not stopping you.
If mail from that sender is also going to Spam, that is the Block List doing it rather than the authentication check. Open the message, tap the 3-dot menu and choose Unblock Sender: BlueMail asks whether to trust all future messages from that sender, and the same dialog can widen that to the sender's whole domain. See How Do I Manage Spam?.
If the warnings themselves are what you want to stop, turn E-postautentisering (SPF, DKIM, DMARC) off on the same screen.