What is DANE for SMTP?
DANE, also known as DNS Based Authentication of Named Entities, is a security protocol defined in RFC 6698 and applied to SMTP in RFC 7672, and it uses DNSSEC to authenticate TLS connections for SMTP. It allows domain owners to publish the exact certificates or public keys that sending mail servers should trust.
It is the equivalent of publishing the official list of approved harbor beacons so incoming ships know exactly which signals are real and which are forged.
Need personalized help?
Get a personalized explanation for your specific email setup. Open an AI assistant with your question pre-loaded — just add your details and send.
Was this answer helpful?
Thanks for your feedback!