Why do so many sysadmins forget about DKIM/DMARC/SPF when setting up third party services?

Posted by NuAngelDOTnet@reddit | sysadmin | View on Reddit | 183 comments

I understand it's kind of a "set it and forget it" feature, but do that many other IT departments actually "forget" it? I've had to work with MULTIPLE companies and explain to them "our server is rejecting your email because you forgot to set up DKIM on a subdomain." Companies way bigger than the one I work for! In fact, multiple of them use the same 3rd party mailing service and I've had to send the same link to multiple people's IT departments showing THEM how to add DKIM to their subdomains. When my company decided to start using a 3rd party mail marketing company, I was in the loop the whole way and made sure we set up DKIM signing... I'm shocked at the number of companies we run into that go through the effort of adding a subdomain, but forget the rest of the process. Is it really that much of an afterthought?