---
title: "Can I Set Up DMARC Without DKIM? A Complete Guide to SPF-Based DMARC Authentication | AutoSPF"
description: "Learn how to set up DMARC without DKIM using SPF authentication, understand alignment requirements, limitations, and best practices for email security."
image: "https://autospf.com/og/blog/can-i-set-up-dmarc-without-dkim-using-spf-authentication.png"
canonical: "https://autospf.com/blog/can-i-set-up-dmarc-without-dkim-using-spf-authentication/"
---

Quick Answer

Yes, you can set up DMARC without DKIM if SPF passes and aligns with your From domain. However, SPF-only DMARC is less reliable because email forwarding and third-party senders can cause authentication failures. Adding DKIM later improves security and deliverability.

## Try Our Free DMARC Checker

Validate your DMARC policy, check alignment settings, and verify reporting configuration.

[ Check DMARC Record → ](/tools/dmarc-checker/) 

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fautospf.com%2Fblog%2Fcan-i-set-up-dmarc-without-dkim-using-spf-authentication%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Can%20I%20Set%20Up%20DMARC%20Without%20DKIM%3F%20A%20Complete%20Guide%20to%20SPF-Based%20DMARC%20Authentication&url=https%3A%2F%2Fautospf.com%2Fblog%2Fcan-i-set-up-dmarc-without-dkim-using-spf-authentication%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fautospf.com%2Fblog%2Fcan-i-set-up-dmarc-without-dkim-using-spf-authentication%2F "Share on Facebook") [ ](https://reddit.com/submit?url=https%3A%2F%2Fautospf.com%2Fblog%2Fcan-i-set-up-dmarc-without-dkim-using-spf-authentication%2F&title=Can%20I%20Set%20Up%20DMARC%20Without%20DKIM%3F%20A%20Complete%20Guide%20to%20SPF-Based%20DMARC%20Authentication "Share on Reddit") [ ](mailto:?subject=Can%20I%20Set%20Up%20DMARC%20Without%20DKIM%3F%20A%20Complete%20Guide%20to%20SPF-Based%20DMARC%20Authentication&body=Check out this article: https%3A%2F%2Fautospf.com%2Fblog%2Fcan-i-set-up-dmarc-without-dkim-using-spf-authentication%2F "Share via Email") 

![DMARC without DKIM authentication](https://media.mailhop.org/autospf/spf-record-syntax-5277-1785491839168.jpg) 

## What DMARC Requires: Understanding SPF, DKIM, and Identifier Alignment

DMARC authentication is built on two underlying [email authentication](https://autospf.com/blog/spf-record-explained-understanding-email-authentication-for-your-domain/) mechanisms: SPF and DKIM. A domain does not necessarily need both to pass DMARC, but it does need at least one of them to pass and align with the domain shown in the visible From header. That alignment requirement is what makes DMARC more powerful than a simple **SPF check** or **DKIM authentication** result.

### SPF, DKIM, and DMARC in plain terms

SPF allows a domain owner to publish an SPF record in DNS that lists which [mail servers](https://www.cloudflare.com/learning/email-security/what-is-a-mail-server/) are authorized to send outbound email for that domain. _For example, a domain using a cloud email service such as Microsoft 365, Google Workspace, Zoho Mail, Amazon SES, or Mailgun typically authorizes its email platform by adding the provider’s SPF include mechanism to its DNS record._ The exact value depends on the email service being used. A properly maintained [spf record](https://autospf.com/blog/what-spf-records-are-and-how-they-protect-email-domains/) helps receiving mail systems determine whether a sending IP address is permitted.

DKIM adds a **cryptographic signature** to outbound email. With DKIM authentication, the sending platform signs the message using a [private key](https://www.investopedia.com/terms/p/private-key.asp), and the receiving server validates that signature against a public key published in DNS. Unlike SPF authentication, DKIM can survive many forms of email forwarding because it is tied to message integrity rather than the connecting IP address.

DMARC sits above SPF and DKIM. A DMARC record tells receivers what to do when DMARC authentication fails and where to send DMARC reports. For additional background on how domain alignment affects DMARC, it is useful to understand the relationship between SPF, DKIM, and the From domain.![Spf Record Syntax 9331](https://media.mailhop.org/autospf/spf-record-syntax-9331-1785492636239.jpg)

### Why identifier alignment matters

Identifier alignment means the domain authenticated by SPF or DKIM must match, or align with, the domain in the visible From header. This is often called **header alignment** because users see the From address, not the hidden technical identities used during transport.

#### 1\. SPF identifier alignment

SPF identifier alignment compares the domain in the **RFC5321 Mail From**, also called the envelope sender or return-path, with the visible From domain. If the SPF check produces an SPF pass and the Mail From domain aligns with the From header, SPF identifier alignment succeeds. That can be enough for DMARC authentication even if DKIM is missing.

#### 2\. DKIM identifier alignment

DKIM identifier alignment compares the `d=` domain in the [DKIM signature](https://docs.mapp.com/docs/dkim-signature) with the visible From domain. If DKIM authentication passes and the DKIM signing domain aligns, DMARC authentication succeeds through DKIM. This is why setup DKIM is strongly recommended even when SPF authentication is already working.

## Can DMARC Work Without DKIM? The Short Answer and Key Limitations

Yes, you can set up DMARC without DKIM. DMARC without DKIM can work when SPF authentication passes and SPF identifier alignment is satisfied. In other words, if an outbound email passes SPF and the authenticated SPF domain aligns with the visible From domain, the email passes **DMARC authentication**.

However, relying on SPF alone has important limitations.

### What works when DKIM is missing

If DKIM is missing, a valid DMARC record can still evaluate messages using SPF authentication. _If example.com sends outbound email through a supported email service and its SPF record authorizes that provider’s sending servers, the messages can pass SPF authentication._ When the authenticated Mail From domain also aligns with the visible From domain, the messages can pass DMARC authentication even if DKIM is not configured.

This is a legitimate implementation approach, especially during the initial rollout when the DMARC policy is set to p=none for **monitoring and report collection**.![Spf Record 9013](https://media.mailhop.org/autospf/spf-record-9013-1785492684994.jpg)

### Key limitations of SPF-based DMARC

SPF-based DMARC authentication has several limitations:

#### 1\. Email forwarding can break SPF

Email forwarding often changes the sending IP address. A forwarded email may arrive from a server that is not listed in the original domain’s SPF record, causing SPF authentication fail even though the original message was legitimate. DKIM authentication is more resilient in this scenario, assuming the message content is not modified.

#### 2\. Third-party senders complicate alignment

Marketing systems, [CRM tools](https://www.pipedrive.com/en/crm/compare/crm-tool), ticketing platforms, and cloud services may send outbound email on your behalf. If the email provider uses its own return-path domain, SPF authentication may pass for that provider’s domain but fail SPF identifier alignment for your [custom domain](https://support.nationbuilder.com/en/articles/2341059-understand-how-custom-domains-work).

#### 3\. SPF does not sign message content

SPF provides sender verification at the IP level, but it does not protect message headers or body content. DKIM authentication **provides stronger protection** against tampering because the message is cryptographically signed.

These limitations do not mean DMARC without DKIM is useless. It can reduce malicious spoofing and improve visibility through aggregate reports. But for stronger security, email delivery stability, and [policy enforcement](https://www.rubrik.com/insights/policy-enforcement), DKIM should be added later.

## How SPF-Based DMARC Authentication Works Step by Step

SPF-based DMARC authentication follows a predictable evaluation process. Understanding each step helps prevent failures during implementation.

### Step 1: The receiving server performs an SPF check

When a message arrives, the receiving mail system checks the connecting **IP address** against the sender domain’s SPF record. If the sending server is authorized, the SPF authentication result is SPF pass. If not, SPF may return fail, softfail, neutral, or another result.

For Microsoft 365 and [Exchange Online](https://www.uscloud.com/microsoft-support-glossary/exchange-online/), the SPF record for a custom domain often includes Microsoft’s sending infrastructure. A simplified example may look like:

```
v=spf1 include:spf.protection.outlook.com -all
```

_Organizations using Office 365, Exchange Server hybrid routing, Dynamics 365, Power Platform, Azure services, or Copilot-related workflows should verify every source of outbound email before tightening policy enforcement._

### Step 2: DMARC checks identifier alignment

Next, DMARC evaluates identifier alignment. SPF authentication alone is not enough. **SPF identifier alignment** must also pass. If Woodgrovebank.com sends a message where the visible From header is `user@woodgrovebank.com`, but the Mail From domain belongs to a third-party platform, SPF may pass for that third party while DMARC authentication fails for [Woodgrovebank.com](http://Woodgrovebank.com).

### Step 3: DKIM is evaluated if present

If [DKIM](https://autospf.com/blog/how-dkim-works-a-comprehensive-guide-to-email-authentication/) exists, the receiver also evaluates DKIM authentication. If DKIM authentication passes and the signing domain aligns, DMARC authentication can pass even if SPF authentication fails. If there is a DKIM fail but SPF pass with SPF identifier alignment, DMARC can still pass through SPF.![Spf Record Checker 6301](https://media.mailhop.org/autospf/spf-record-checker-6301-1785492786617.jpg)

### Step 4: The DMARC policy is applied

The receiver then reads the DMARC record and applies the **DMARC policy**. A basic DMARC record using monitoring mode may look like:

```
_dmarc.contoso.com. TXT "v=DMARC1; p=none; rua=mailto:dmarc-reports@contoso.com"
```

The rua tag defines where aggregate reports are sent. The ruf tag can request **forensic reports**, though many providers limit or do not send them for privacy reasons. Mailto destinations must be valid and monitored.

## Setting Up DMARC Without DKIM: DNS Records, Policy Levels, and Testing

Setting up DMARC without DKIM is mostly a DNS and reporting exercise, but accuracy matters. A small domain configuration error can cause legitimate [outbound email](https://www.ricoh-usa.com/en/glossary/outbound-mail) to fail DMARC authentication.

### Create or validate your SPF record

Start by identifying every source that sends outbound email for your domain. This may include Microsoft 365, Exchange Online, Outlook.com-connected services, [SaaS platforms](https://www.appdirect.com/resources/glossary/saas-platform), payroll systems, [email marketing tools](https://www.americaneagle.com/insights/blog/post/overview-of-the-best-email-marketing-tools-and-platforms), support desks, and legacy Exchange Server relays.

If you use Microsoft 365, confirm whether you are sending from a custom domain, a vanity domain, or a default domain such as `tenant.onmicrosoft.com`. **Microsoft documentation** often distinguishes between a Vanity domain and Default domain because DMARC authentication depends on the domain visible to recipients.

Tools such as [AutoSPF](https://autospf.com/) can help manage SPF complexity, especially when multiple vendors must be included without exceeding [DNS lookup](https://www.digicert.com/faq/dns/how-does-dns-lookup-work) limits.

### Publish a DMARC record in monitoring mode

![Spf Lookup 1744](https://media.mailhop.org/autospf/spf-lookup-1744-1785492866960.jpg)Begin with policy none so you can observe authentication result patterns without disrupting email delivery. A starter DMARC record may look like:

```
_dmarc.example.com. TXT "v=DMARC1; p=none; rua=mailto:dmarc@example.com; ruf=mailto:dmarc-forensic@example.com"
```

In this DMARC record, the rua tag enables collecting reports, while the ruf tag requests forensic data where supported. DMARC.org and practical resources from experts such as **Andy David - MVP**, Kai Yao, and the broader emailauth community often recommend starting with monitoring before moving toward enforcement.

### Test SPF-based DMARC authentication

_Send test messages to major mailbox providers such as Microsoft, Outlook.com, Gmail, and business recipients._ Review message headers in Microsoft Edge or another browser-based admin workflow if you are using portals such as Microsoft 365 Defender or Exchange admin center.

Look for:

- **SPF pass:** The SPF check should show SPF pass for authorized infrastructure.
- **SPF identifier alignment pass:** The Mail From domain should align with the visible From domain.
- **DMARC authentication pass:** The final DMARC authentication result should show authentication pass. If DKIM is missing, the message can still pass DMARC through SPF authentication and SPF identifier alignment.
- **DKIM fail or DKIM missing:** If DKIM fail or DKIM missing appears, that is acceptable during SPF-only testing, provided DMARC authentication succeeds through SPF.

### Review DMARC reports before enforcement

Reviewing DMARC reports is essential before changing the DMARC policy to quarantine or reject. **Aggregate reports** reveal legitimate sources, failures, misaligned senders, forwarded email issues, and possible [malicious spoofing](https://www.msspalert.com/brief/novel-usps-spoofing-phishing-attack-relies-on-malicious-pdfs). Services such as emailauth.io can parse [XML reports](https://www.ibm.com/docs/en/masv-and-l/maximo-ref/cd?topic=settings-processing-federal-xml-reports) and make DMARC reports easier to interpret.![Spf Record Example 3227](https://media.mailhop.org/autospf/spf-record-example-3227-1785492585793.jpg)

## When to Add DKIM Later: Improving Deliverability, Security, and DMARC Enforcement

Even if DMARC without DKIM works initially, adding DKIM is one of the best practices for long-term email authentication. _DKIM improves protection, strengthens sender verification, and reduces dependence on SPF alone._

### Add DKIM before moving to strict enforcement

Before moving from `p=none` to `p=quarantine` or `p=reject`, setup DKIM for your primary sending platforms. In Microsoft 365 and Exchange Online, DKIM can be enabled for a custom domain by publishing the required [CNAME records](https://support.dnsimple.com/articles/cname-record/) and enabling signing in the admin portal. Once DKIM authentication is active, outbound email has two possible ways to pass **DMARC authentication:** DKIM identifier alignment or SPF identifier alignment.

### DKIM improves resilience for forwarding and third parties

Forwarded email is one of the biggest reasons SPF authentication fails. Because DKIM authentication can survive many forwarding paths, it improves email delivery when messages pass through mailing lists, [security gateways](https://advenica.com/learning-centre/articles/what-is-a-security-gateway/), or partner systems.

DKIM also helps when third-party platforms cannot provide aligned SPF. If they can sign with your domain, DKIM authentication may pass even when SPF identifier alignment fails.

### Move gradually toward policy enforcement

A mature implementation usually follows this path:

1. Publish a DMARC record with policy none.
2. Validate the SPF record and SPF authentication results.
3. Enable DKIM authentication for Microsoft 365, Exchange Online, and key third-party senders.
4. Review aggregate reports and fix failures.
5. Move to `p=quarantine`.
6. Move to `p=reject` when legitimate outbound email consistently passes **DMARC authentication**.

_This staged approach balances security, protection, and email delivery. It also gives administrators time to correct domain configuration problems,_ identify shadow senders, and reduce malicious spoofing before strict policy enforcement begins.

![Brad Slavin](https://media.mailhop.org/autospf/images/authors/brad-slavin.jpg) 

[ Brad Slavin ](/authors/brad-slavin/) 

General Manager

Founder and General Manager of DuoCircle. Product strategy and commercial lead for AutoSPF's 2,000+ customer base.

[LinkedIn Profile →](https://www.linkedin.com/in/bradslavin) 

## Ready to get started?

Try AutoSPF free — no credit card required.

[ Book a Demo ](/book-a-demo/) 

Scan Your Domain Now

Instantly scan your domain for DKIM, SPF, and DMARC issues

Check My Domain 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fautospf.com%2Fblog%2Fcan-i-set-up-dmarc-without-dkim-using-spf-authentication%2F) [ ](https://twitter.com/intent/tweet?text=Can%20I%20Set%20Up%20DMARC%20Without%20DKIM%3F%20A%20Complete%20Guide%20to%20SPF-Based%20DMARC%20Authentication&url=https%3A%2F%2Fautospf.com%2Fblog%2Fcan-i-set-up-dmarc-without-dkim-using-spf-authentication%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fautospf.com%2Fblog%2Fcan-i-set-up-dmarc-without-dkim-using-spf-authentication%2F) Copy 

Related Articles

- [ ![DIY-ing SPF](https://media.mailhop.org/autospf/images/2024/04/spf-record-example-5874.jpg)  10 Reasons Why DIY-ing SPF isn’t a Good Choice for Companies Intermediate ](/blog/10-reasons-diy-ing-spf-isnt-good-choice-for-companies/)
- [ ![phishing actors](https://media.mailhop.org/autospf/images/2025/11/spf-record-checker-0096.jpg)  The 12.4 billion shield for your email communications: Why DMARC software is the unsung hero in the war against phishing actors! Intermediate ](/blog/12-4-billion-dmarc-software-shield-protecting-email-from-phishing-actors/)
- [ ![SPF record](https://media.mailhop.org/autospf/images/2025/05/spf-record-generator-9003.jpg)  3 points to consider before setting your SPF record to -all (HardFail) Intermediate ](/blog/3-points-to-consider-before-setting-your-spf-record-hardfail/)
- [ ![Sender Policy Framework](https://media.mailhop.org/autospf/images/2024/11/spf-checker-4785.jpg)  5 key contributors to the development of the Sender Policy Framework Intermediate ](/blog/5-key-contributors-to-sender-policy-framework-development/)

## Related Articles

[  Intermediate 6m  10 Reasons Why DIY-ing SPF isn’t a Good Choice for Companies  Apr 4, 2024 ](/blog/10-reasons-diy-ing-spf-isnt-good-choice-for-companies/)[  Intermediate 5m  The 12.4 billion shield for your email communications: Why DMARC software is the unsung hero in the war against phishing actors!  Nov 19, 2025 ](/blog/12-4-billion-dmarc-software-shield-protecting-email-from-phishing-actors/)[  Intermediate 3m  3 points to consider before setting your SPF record to -all (HardFail)  May 22, 2025 ](/blog/3-points-to-consider-before-setting-your-spf-record-hardfail/)[  Intermediate 3m  5 key contributors to the development of the Sender Policy Framework  Nov 12, 2024 ](/blog/5-key-contributors-to-sender-policy-framework-development/)

```json
{"@context":"https://schema.org","@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com","logo":{"@type":"ImageObject","url":"https://autospf.com/images/autospf-logo.png"},"description":"Automatic SPF flattening and email authentication management. Resolve SPF lookup limits, flatten SPF records, and maintain email deliverability across all your domains.","parentOrganization":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138883901","name":"DuoCircle LLC","url":"https://www.duocircle.com","sameAs":["https://www.wikidata.org/wiki/Q138883901","https://www.crunchbase.com/organization/duocircle-llc","https://www.linkedin.com/company/duocircle","https://github.com/duocircle"],"subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"sameAs":["https://www.wikidata.org/wiki/Q138897474","https://www.linkedin.com/company/autospf","https://x.com/autospf01","https://www.g2.com/products/autospf/reviews"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://autospf.com/contact-us/"},"knowsAbout":["SPF Record Flattening","Sender Policy Framework","Email Authentication","DNS Management","DMARC","DKIM"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"AutoSPF","url":"https://autospf.com","description":"Automatic SPF flattening and email authentication management. Resolve SPF lookup limits, flatten SPF records, and maintain email deliverability across all your domains.","publisher":{"@type":"Organization","name":"AutoSPF","url":"https://autospf.com","logo":{"@type":"ImageObject","url":"https://autospf.com/images/autospf-logo.png"},"description":"Automatic SPF flattening and email authentication management. Resolve SPF lookup limits, flatten SPF records, and maintain email deliverability across all your domains.","parentOrganization":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138883901","name":"DuoCircle LLC","url":"https://www.duocircle.com","sameAs":["https://www.wikidata.org/wiki/Q138883901","https://www.crunchbase.com/organization/duocircle-llc","https://www.linkedin.com/company/duocircle","https://github.com/duocircle"],"subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Can I Set Up DMARC Without DKIM? A Complete Guide to SPF-Based DMARC Authentication","description":"Learn how to set up DMARC without DKIM using SPF authentication, understand alignment requirements, limitations, and best practices for email security.","url":"https://autospf.com/blog/can-i-set-up-dmarc-without-dkim-using-spf-authentication/","datePublished":"2026-07-31T00:00:00.000Z","dateModified":"2026-07-31T00:00:00.000Z","dateCreated":"2026-07-31T00:00:00.000Z","author":{"@type":"Person","@id":"https://autospf.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://autospf.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin is the founder and General Manager of DuoCircle, the company behind AutoSPF, DMARC Report, Phish Protection, and Mailhop. He founded DuoCircle in 2014 to solve the SPF 10-DNS-lookup problem at scale and has led the company's growth to 2,000+ customers. Brad's focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement) rather than hands-on DNS engineering.","image":"https://media.mailhop.org/autospf/images/authors/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"AutoSPF","url":"https://autospf.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com","logo":{"@type":"ImageObject","url":"https://autospf.com/images/autospf-logo.png"},"description":"Automatic SPF flattening and email authentication management. Resolve SPF lookup limits, flatten SPF records, and maintain email deliverability across all your domains.","parentOrganization":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138883901","name":"DuoCircle LLC","url":"https://www.duocircle.com","sameAs":["https://www.wikidata.org/wiki/Q138883901","https://www.crunchbase.com/organization/duocircle-llc","https://www.linkedin.com/company/duocircle","https://github.com/duocircle"],"subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"sameAs":["https://www.wikidata.org/wiki/Q138897474","https://www.linkedin.com/company/autospf","https://x.com/autospf01","https://www.g2.com/products/autospf/reviews"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://autospf.com/contact-us/"},"knowsAbout":["SPF Record Flattening","Sender Policy Framework","Email Authentication","DNS Management","DMARC","DKIM"]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://autospf.com/blog/can-i-set-up-dmarc-without-dkim-using-spf-authentication/"},"articleSection":"intermediate","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/autospf/spf-record-syntax-5277-1785491839168.jpg","caption":"DMARC without DKIM authentication"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://autospf.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://autospf.com/blog/"},{"@type":"ListItem","position":3,"name":"Intermediate","item":"https://autospf.com/intermediate/"},{"@type":"ListItem","position":4,"name":"Can I Set Up DMARC Without DKIM? A Complete Guide to SPF-Based DMARC Authentication","item":"https://autospf.com/blog/can-i-set-up-dmarc-without-dkim-using-spf-authentication/"}]}
```
