European Law - DMARC is obligatory

bejbi

Well-Known Member
PartnerNOC
Jan 20, 2006
168
32
178
Poland
cPanel Access Level
DataCenter Provider
I would like to thank cPanel Developers for implementing 2FA authentication for webmail in cPanel version 114. Great job.

In Poland (in the European Union) there is a new law entered into force in August 2023, which requires every hosting company that serves public entities to have the following enabled BY DEFAULT: SPF, DKIM, DMARC.
SPF and DKIM are enabled by default in cPanel, but DMARC must be enabled manually.

An option to globally enable DMARC when adding new domains is urgently needed.

A competing hosting solution provides a ready-made solution for global DMARC enablement.

Of course, in cPanel we can create a hook that adds a DMARC record when adding a domain, but it seems to me that cPanel developers could easily add an option in cPanel.

Especially since this applies to the law in the European Union (not only in Poland).

legal basis in Poland: ACT of July 28, 2023 on combating abuses in electronic communications

:wq
 
Last edited:

ffeingol

Well-Known Member
PartnerNOC
Nov 9, 2001
942
421
363
cPanel Access Level
DataCenter Provider
Not to side track your post, but that's going to be very interesting to implement. You'd have to contact every hosting customer to verify that they only send from your service or you're going to publish an incorrect SPF record.
 

cPAdminsMichael

Well-Known Member
Dec 19, 2016
191
72
153
Denmark
cPanel Access Level
Root Administrator
Yeah - would be nice with some kind of DMARC implementation where cPanel users can also customize.
We also see that more and more mail providers actually check for DMARC records and it has impact on spamscore if DMARC record does not exist.
What we have done a couple of places is placing a DMARC CNAME as part of the DNS Zone Template and then point it to a centrally TXT record which can easily be adjusted.
This is indeed more a workaround than a fix (as we just have the most basic DMARC record to not get a spamscore for missing DMARC)
 
  • Like
Reactions: bejbi

cPRex

Jurassic Moderator
Staff member
Oct 19, 2014
16,505
2,605
363
cPanel Access Level
Root Administrator
@bejbi - the best advice I have would be to email [email protected]. While forcing DMARC does seem to be the way of the future (yay, another email authentication protocol..........) I can't speak to whether or not cPanel itself would need to follow any particular laws. That email will get it on the radar of the "higher ups" and get the ball moving if that ends up being something we have to follow.
 
  • Like
Reactions: bejbi