Quick start for MSP partners

A friendly step-by-step guide for MSP partners: group your clients, start collecting DMARC reports, then (optionally) connect your DNS hosts and PSA. Start small with one customer and one domain, check reports are arriving, then grow from there.

Published 22 Jul 2026 1

This guide is the quickest way for MSP partners to get up and running. It follows the same order as the built-in setup guide, so you can group your clients, start collecting DMARC reports, and (if you wish) connect DMARCER to your DNS hosts and PSA. There is no need to do everything at once: add one customer and one domain first, check the reports are coming in, then build out from there.

The setup guide (Let's get you started)

When you sign in as an MSP, a card titled "Let's get you started" sits at the top of every page until you have finished the steps. It shows your progress (for example "1 of 4 done") and highlights your next action in green. Each tile is a shortcut: click it and you go straight to the right screen, with the correct form already open for you.

  • Add a customer: group the domains you manage under each client.
  • Add your domains: we start collecting DMARC reports for them.
  • Add a payment method: needed to upgrade, or to go beyond the Free-plan limit.
  • Review your plan: compare the tiers and pick the one that suits you.

The guide tidies itself away once every step is complete. If you would rather hide it sooner, use the "Dismiss" link in the top-right of the card and confirm in the "Dismiss the setup guide?" box. Please note that dismissing is permanent: the guide will not come back, even if some steps are still unfinished. You can always reach every action from the normal menus afterwards.

Step 1: Add your customers

Customers are simply how you group domains under each client. Open the Customers page and click "Add Customer". The only thing to fill in is the "Customer name", so this step takes a moment; you can create one customer per client now and tidy up the details later. The Customers grid then gives you a per-client summary across SPF, DKIM, DMARC, DNSSEC and MTA-STS, plus a Security Score and a count of any "quiet" domains that have stopped reporting.

You can also create a customer there and then while assigning a domain (see Step 2), so you are never forced to set everything up in advance.

Step 2: Add your domains

On the Domains page, click "Add Domains" to open the "Add New Domains" form. You can paste in many domains at once, one per line, in the "Domains (one per line)" box. The settings you choose apply to the whole batch, so it helps to add domains that share the same client, region and licence type together.

  • Customer: assign the batch to one of your clients, or leave it as "Do not assign to a customer" and assign it later from the grid.
  • Monitoring Region: the region whose collectors receive this domain's reports. It defaults to your account country, so in most cases you can leave it as it is.
  • Licence type: choose "Standard" for domains that actively send mail (full monitoring), or "Parked" for domains you hold but do not send from. Parked monitoring is set up to alert you to any sending activity, and if mail records or a sending SPF record later appear, the domain is moved up to Standard for you automatically.

If some lines cannot be added (for example a typo in the format, or a domain that is already in the system), the form stays open and tells you exactly which ones did not work, so you can fix them without losing the rest.

Verify domain ownership

Before a domain is fully monitored and ready to manage, we just need to confirm you own it. Open a domain's "Verify Domain Ownership" dialog and you will see a TXT record to add at the root of the domain, with a "Name" and a "Value" you can copy. We check for it automatically, or you can add the record and click "Recheck Now". The check is done live against DNS, so there is no waiting around for caches to catch up.

If the domain sits with a DNS provider you have connected (see below), the dialog shows an "Automated validation" panel with a "Publish now" button that adds the validation TXT record for you. This will not affect your mail flow.

Step 3 and 4: Payment method and plan

You are welcome to start on the Free plan, but to upgrade or to go beyond the Free-plan domain limit you will need a card on file. Use the "Add a payment method" step (Billing) to save one. Then use "Review your plan" to open the subscription wizard, compare the tiers and choose the plan that fits how many domains you manage. Reviewing your plan ticks off the final setup step.

Connect DNS providers (optional but recommended)

Connecting a DNS provider lets DMARCER read your live records, add validation TXT entries, and create or update DMARC and SPF records (with your confirmation), so you can apply fixes without leaving the app. Open Integrations, stay on the "DNS" tab and click "Add DNS integration". Pick your host, give the credential a "Friendly name" (this is the name shown in the audit log against every change), and enter the provider's credentials.

  • Supported DNS hosts: ICUK, Azure DNS, Cloudflare, Google Cloud DNS, GoDaddy, IONOS Cloud DNS, AWS Route 53 and Plesk DNS.
  • Once connected, use the "Zones & links" view to match each provider zone to its DMARCER domain. The "Matched, unlinked" tab shows zones that line up with a domain but are not yet linked.

Connect your PSA (optional)

Connecting a PSA lets DMARCER keep your customer and asset records in sync, raise alerts as tickets, and (where the connector supports it) push billing quantities to your recurring contracts. PSA integration is included on some plans. On the Integrations page, switch to the "PSA" tab and click "Add PSA integration". If the Add PSA and Configure options are not showing, your plan may not include it yet, so please get in touch and we will be glad to help. The supported PSAs are HALO PSA, SuperOps, Autotask and ConnectWise Manage, and each has its own credential fields explained in the form.

Once connected, use the "Customer links" view to link each DMARCER customer to the matching PSA client. The "Configure" view then gives you per-PSA tabs for Assets, Alerts and Billing, so you can decide exactly what flows where.

Move domains towards enforcement

Once reports are arriving, you can move each domain safely towards DMARC enforcement (a policy of p=reject) using what the reports tell you. Sort out your SPF and DKIM alignment first, so that your genuine mail keeps passing before you tighten the policy. The Customers and Domains grids track SPF, DKIM, DMARC, DNSSEC and MTA-STS coverage, so you can see at a glance which clients still need attention.

Common pitfalls

  • Licence type applies to the whole batch, not each line: add Standard and Parked domains in separate batches so you do not accidentally mix them up.
  • Unverified domains: a domain only counts as fully set up once its ownership TXT record is in place; until then it shows as unverified in the grids.
  • Free-plan limit: you will need a payment method to upgrade, or to add domains beyond the Free limit.
  • Friendly names are worth getting right: name each DNS or PSA credential clearly, because that name is what appears in the audit log next to every automated change.
  • Dismiss is permanent: hiding the setup guide cannot be undone, but all the underlying actions stay available from the menus.

Was this article useful?

Be the first to vote.
Got feedback for our team? Send us a comment

Related articles