Klaviyo Setup
To connect a domain go to:
Organization Name -> Settings -> Domains -> Sending Domains
-> Add Domain
Klaviyo secure email sender authentication relies on setting up a
branded sending domain. This configures a dedicated subdomain on your
DNS which aligns both SPF (via a custom Return-Path) and DKIM with your
root domain.
Configure DNS Records
To complete the sending domain setup, Klaviyo requires you to configure
four Nameserver (NS) records for your sending subdomain, along with a TXT
record for verification.
Subdomain NS Records
Replace
send with your chosen sending subdomain, and
yourdomain.com with your root domain.- Record Type
- NS (Name Server)
- Host/Name
- send.yourdomain.com
- Value
n1.klaviyo.comn2.klaviyo.com,n3.klaviyo.com, andn4.klaviyo.com
Verification TXT Record
- Record Type
- TXT
- Host/Name
- yourdomain.com
- Value
klaviyo-site-verification=abc123(replaceabc123with your unique code from Klaviyo)- TTL
- 3600 seconds (1 hour)
Strict vs. Relaxed DMARC Alignment
Klaviyo relies on relaxed alignment in your DMARC configuration to pass
authentication. When using a branded sending domain, emails are sent from a
subdomain (e.g.,
send.yourdomain.com) while your from-address uses your
root domain (e.g., yourdomain.com). Because of this, you must ensure your DMARC record does not contain
strict alignment tags (
aspf=s or adkim=s).Setup DMARC
Lastly we can setup DMARC. Again, verify you don't already have DMARC
setup.
With basic monitoring, you will receive XML reports to the email
address specified which will tell you how email is passing/failing
authentication. These are very useful for debugging when email isn't
being delivered.
- Record Type
- TXT
- Host/Name
- _dmarc.yourdomain.com
- Value
- v=DMARC1; p=none; rua=mailto:you@yourdomain.com
- TTL
- 3600 seconds (1 hour)
Once setup, you can verify your records are configured correctly using our
domain check tool:
Verify DNS records
Verification
Once you have created and saved these DNS records, navigate back to the
Klaviyo Domains settings page and click Verify. Klaviyo will verify
that the NS and verification TXT records are active, allowing you to
successfully authenticate and scale your automated email workflows.