Add a DMARC record in xneelo
If your domain's nameservers are ns1.host-h.net, ns2.host-h.net, ns1.dns-h.com and ns2.dns-h.com, its DNS is hosted by xneelo (formerly Hetzner South Africa) — those are the four nameservers xneelo lists as its own. You publish the record in the xneelo Control Panel's Manage DNS tool. Here's the exact record, the steps from xneelo's own DMARC guide, and how to confirm it worked.
xneelo lets the account owner, the technical administrator and account administrators use Manage DNS. If you can't open it, ask whoever holds the xneelo account.
The record you're publishing
| Field | Value |
|---|---|
| Type | TXT |
| Host | _dmarc |
| Value | "v=DMARC1; p=none; rua=mailto:…" (inside double quotes) |
The Value is your DMARC policy. If you're setting up monitoring with DMARCmetric, Add your first domain generates the full value for you, including your workspace's unique rua= reporting address — copy it from the wizard with the copy button rather than retyping it. p=none is the right starting policy: it monitors everything and blocks nothing.
The steps below add a new record, for a domain with no DMARC record yet. If _dmarc already has one, don't add another — edit the one you have instead.
Step by step
- Log in to the xneelo Control Panel at
create.xneelo.com. - Select the product the domain belongs to (for example Web Hosting) from the side menu.
- Search for the domain name and select it.
- Under Domain Tools, select Manage DNS.
- Select + Add record.
- Set Type to
TXTand Host to_dmarc— just that, the way xneelo's own guide enters it. - In Value (xneelo also calls it Destination), paste your
v=DMARC1; …value inside double quotes, the way xneelo's own DMARC guide shows it:"v=DMARC1; p=none; rua=mailto:…". - Select Add to save the record.
xneelo asks you to allow 2 to 24 hours for DNS changes to propagate.
If you already have a DMARC record
A domain can have only one DMARC record, so don't select + Add record — change the one that's there. Never add a second _dmarc record next to the old one: with two, email providers ignore both.
- In Manage DNS, find the existing TXT record whose Host is
_dmarc, and open the menu (the three dots) in its row. - Edit that record.
- What you change depends on what DMARCmetric shows you — check which of these two it is before you touch anything:
- If DMARCmetric shows only an address (
mailto:rua+…, shown when it couldn't read your DNS at that moment), don't replace anything. Add that address to your existingrua=tag, separated by a comma. If the record has norua=tag, add one:rua=followed by the address, separated from the tag before it by a semicolon. Leave your policy and every other tag as they are. - If DMARCmetric shows a full record (starting with
v=DMARC1), replace the record's whole Value with it. That value is built from your existing record: your policy and tags are kept, and it includes your DMARCmetric reporting address. Keep the value inside double quotes, the way xneelo's own DMARC guide shows it:"v=DMARC1; …".
- If DMARCmetric shows only an address (
- Save the record.
If there are several. If the list shows more than one TXT record at _dmarc that starts with v=DMARC1, delete the extras and keep one, then change the one you keep exactly as in step 3: if DMARCmetric shows a full record, that record becomes its Value; if it shows only an address, add the address to its rua= tag. Until only one is left, receivers treat the domain as having no DMARC policy at all.
Verify it's live
From a terminal:
dig TXT _dmarc.example.com +short
You should see your v=DMARC1; … value echoed back in quotes. No terminal handy? Run your domain through the free DMARC checker — it fetches the live record and validates the syntax, which dig won't do. And if you added the record as part of DMARCmetric onboarding, press Verify DNS in the wizard; Verify your domain explains each result it can give you.
One xneelo-specific check: the quotes you type should mark the start and end of the value, not end up inside it. If the checker reports a stray " as part of your record, edit the record and remove the quotes you added.
Common mistakes
- Two
_dmarcrecords. A domain may have only one DMARC record; receivers treat two TXT records at_dmarcas no valid policy at all. If a record already exists, edit it — don't add a second. - Applying a zone template afterwards. Manage DNS offers zone templates (for Office 365, Google and xneelo's own mail) that add and delete records. If you apply one after publishing DMARC, check that
_dmarcis still there. - Changing the record while the domain uses other nameservers. Manage DNS only matters while the domain uses xneelo's nameservers; if it has been pointed elsewhere, publish the record wherever the nameservers now point.
- Editing the value by hand. A missing semicolon between tags,
mailto;instead ofmailto:, or a mangled reporting address all invalidate the record or send your reports nowhere. Copy-paste the whole value, then confirm with the checker.
If some of your domains live at other providers, the same record works everywhere — the Cloudflare and GoDaddy walkthroughs cover those panels.