{{define "content"}}
← All domains {{if .Flash}}This password is shown once only and is not stored. Copy it now — if it is lost, regenerate a new one.
{{.NewCred.Login}} {{.NewCred.Password}}Publish this TXT record in the DNS for {{.Domain.Name}}. It is not a secret and can be viewed at any time.
{{.Record.Name}} TXT {{.Record.Value}}Also configure SPF and DMARC for the domain (see the documentation). Mail is signed with selector {{.Domain.DKIMSelector}}.
Each application is a SASL login/password an app or script uses to send mail as this domain. A login may send from any address of the domain (wildcard) or only from a fixed list of addresses.
{{if .Apps}}| Login | Mode | Addresses | |
|---|---|---|---|
| {{.Login}} | {{if eq .AddressMode $.Wildcard}}Any address (@{{$.Domain.Name}}){{else}}List{{end}} | {{if eq .AddressMode $.Wildcard}}*@{{$.Domain.Name}}{{else}} {{range $i, $a := .Addresses}}{{if $i}}, {{end}}{{$a}}{{end}} {{end}} |
Edit modeRate limit{{if .HasLimit}} (active){{end}}{{if .HasLimit}} {{end}} |
No applications yet. Create one below.
{{end}}Optional level-2 limit (spec 7.4): cap how many messages this domain may send from its expected client IP(s) within a time window, summed across all its applications. It counts messages — one message to many recipients counts once. Leave the IP list empty to disable it and rely only on the global level-1 limit. Applications that send from changing IPs should be left unbound here.
Status: {{if .DomainHasRL}}active{{else}}inactive (level-1 only){{end}}.
{{if .DomainHasRL}} {{end}}A strong password is generated and shown once. The login must be unique across all domains and may contain letters, digits, '.', '-' and '_'.
Deleting this domain also deletes its DKIM key and every application bound to it.
Delete domain