MTA-STS Record and Policy Generator

Generate your MTA-STS record and policy file

What is an MTA-STS Policy Generator?

EasyDMARC gives you the ability to generate an MTA-STS DNS record and policy file. We created the generator tool to make the process easy and fast. Use our MTA-STS Policy Generator tool, if you want to:

  • Create MTA-STS TXT record and publish it in DNS
  • Be sure that created record corresponds to the specification
  • Generate the correct MTA-STS policy file for uploading to your website
  • Be sure that the generated policy file’s content corresponds to the specification
Frequently Asked Questions

What Is MTA-STS, and How Does It Enhance Email Security?

Mail Transfer Agent Strict Transport Security (MTA-STS) is an email security protocol that ensures encryption for all emails sent to your domain. MTA-STS setup includes publishing a policy file on your website, which informs senders about:

  • the domain name of your email server,
  • the required Transport Layer Security (TLS) version
  • whether or not you allow downgrades.

The sending server checks if the email is being sent over a secure connection. If it’s not secure, the sending server won’t deliver the email.

MTA-STS boosts email security by

How Do I Configure My Email Servers To Support MTA-STS?

1. Create an MTA-STS policy file. This is a text document containing:

  • your email server’s domain name
  • the required TLS version
  • whether or not you allow downgrades
  • the maximum age of the policy file

You can create the policy file manually, but using a tool eliminates possible errors.

2. Publish the policy file on your website. The website must be protected using HTTPS. Upload the file to your domain's web server or content delivery network (CDN).

3. Configure your email servers to enforce MTA-STS. Configuring your email servers to enforce MTA-STS largely depends on what software you use, as each has specific rules. Once done, start testing the configuration to ensure it works properly.

What Level of Technical Expertise Is Required To Set Up and Manage MTA-STS and TLS Reporting With EasyDMARC?

No expert knowledge is required to set up and manage MTA-STS and TLS reporting with EasyDMARC. Due to our user-friendly and intuitive platform, you can configure and manage email security protocols even if you don’t have an IT department.

TLS uses Encryption, Authentication, and Integrity to protect sensitive information in transit. It guards against threats like eavesdropping, man-in-the-middle attacks, replay attacks, and spoofing. TLS secures web browsing, email, messaging, and voice-over-IP (VoIP) communications.

