How to authenticate your domain name on IONOS
In this guide, you will discover the step-by-step configuration protocols required to successfully authenticate your IONOS custom domain name. Implementing proper cryptographic records is a vital milestone in proving your sending legitimacy to internet service providers and optimizing your ongoing email deliverability rates.
Case 1: Distributing email marketing streams natively via SystemeScale
If you leverage our built-in autoresponder engine to route your newsletter broadcasts, implement this dual-stage process to map your tracking assets.
Step 1: Generate your custom security variables inside SystemeScale
sio-demo.com) and click Save.- Domain name authentication is mandatory to process email broadcasts through our system servers.
- Your custom domain must resolve to an active, working website environment. If your target domain path yields a 404 server page error or resolves to a broken, empty parking page layout, receiving mail gateways will systematically block your broadcasts. For instance, your site path must resolve cleanly; otherwise, outbound email sent from addresses like
info@sio-demo.comwill face immediate server blockades. - You cannot authenticate domain signatures from public electronic webmail suppliers (e.g., Gmail, Yahoo Mail, ProtonMail). Only custom, privately owned business domain names can be validated.
The generated security TXT record provides your account with a required cryptographic DMARC policy structure. To read further details on structuring policy behaviors across external setups, visit our distinct walkthrough: How to create a DMARC record.
Step 2: Deploy your records inside your IONOS DNS zone dashboard
Now, you must copy these parameters and input them safely inside your external IONOS account panel.
- Hostname field: Paste the generated Name string from your workspace. Crucial Rule: Input only the specific sub-prefix host segment that appears before your root domain block (e.g., if the workspace row outputs
si942517.sio-demo.com, strip away your root domain string and fill in onlysi942517). - Value or Points to field: Paste the full matching target string provided by our interface, and append a trailing period (.) directly to the absolute end of the target string value (e.g.,
inbound.systeme.io.).
- Hostname:
_dmarc - Value (Points to):
v=DMARC1; p=none; rua=mailto:yourreportingaddress@domain.com
Step 3: Track network propagation data nodes
Once your four structural record node rows are fully committed to IONOS, verify that your namespace edits are cleanly broadcasting across the public network layer.
Open a public technical lookup tool like DNS Checker. Enter your full prefix string combined with your root domain into the lookup query search engine (e.g., si942517.sio-demo.com) and check for CNAME results. If the engine displays a green confirmation checkmark next to your record destinations, propagation is processing successfully.
Similarly, scan your root domain via an external DMARC Checker tool to verify that your protection text record is fully readable. Once these entries show active across the network, you must contact our support staff to clear internal system lookup caches on our end.
Case 2: You are deploying an external custom SendGrid account engine connection
If you choose to route your outbound transactional emails using an independent, external SendGrid API account bridge connection rather than leveraging our built-in system autoresponder server pools, we recommend reaching out directly to SendGrid's technical support specialists or analyzing documentation inside your SendGrid panel for their custom IONOS domain configuration steps.

