Get started with Zomail
Set up Zomail Cloud step by step: sign up, add your domain, create the DNS records, verify it, add mailboxes, sign in to webmail and turn on 2FA.
On this page
This guide takes you from signup to a working mailbox on your own domain. Plan on about 30 minutes of hands-on work, plus however long your DNS provider takes to publish the records.
Set up Zomail in seven steps
- Sign up at
https://mail.zomail.io/signup. Enter your company details, choose I have a domain and type your domain (for exampleexample.com), create the first administrator account, pick a plan and confirm the 6-digit code sent to your contact e-mail. If the plan shows a trial, you can choose Start a free trial on the Finish step. - Open the admin console at
https://mail.zomail.io/adminand sign in with the administrator address you just created. Administrators must turn on 2-step verification before they can use the console. - Open your domain page: Admin → Domains → click your domain. If you need another domain later, use Add domain.
- Create the DNS records shown on the domain page at your DNS provider. Start with the verification TXT record, then MX, SPF, DKIM and DMARC. You can also use the zone file or one-click setup (see below).
- Verify the domain: click Check DNS. The status moves from Waiting for DNS to provisioning and then to Active, and each record shows its own status.
- Create mailboxes: Admin → Users → Add user for one person, or Create from CSV for up to 200 at once.
- Sign in to webmail at
https://mail.zomail.ioand turn on 2-step verification under Settings → Security: 2-step verification.
The DNS records you need
Always copy the exact values from your domain page. The verification code and the DKIM targets are different for every domain, so the values below are only a pattern.
| Purpose | Type | Host | Value |
|---|---|---|---|
| Verification | TXT | _zomail-verification.example.com | zomail-verification=<code-from-your-domain-page> |
| Receive mail | MX | example.com | mx.zomail.io |
| SPF | TXT | example.com | v=spf1 include:_spf.zomail.io ~all |
| DKIM (key 1) | CNAME | zm1._domainkey.example.com | target shown on your domain page |
| DKIM (key 2) | CNAME | zm2._domainkey.example.com | target shown on your domain page |
| DMARC | TXT | _dmarc.example.com | policy and report address shown on your domain page |
Copy-ready versions (replace the placeholders with the values from your domain page):
_zomail-verification.example.com. TXT "zomail-verification=<code-from-your-domain-page>"example.com. MX 10 mx.zomail.io.example.com. TXT "v=spf1 include:_spf.zomail.io ~all"zm1._domainkey.example.com. CNAME <zm1-target-from-your-domain-page>zm2._domainkey.example.com. CNAME <zm2-target-from-your-domain-page>_dmarc.example.com. TXT "v=DMARC1; p=quarantine; rua=mailto:<report-address-from-your-domain-page>"A few rules that save time:
- Only one SPF record per domain. If you already have one (for example for an invoicing tool), add
include:_spf.zomail.ioto it instead of creating a second record. Two SPF records break both. - DKIM uses two CNAMEs on purpose. Zomail holds the keys and rotates them automatically, so you add
zm1andzm2once and never touch them again. - Only one DMARC record. If you already publish DMARC, edit it as the page suggests rather than adding another.
- Optional records for autoconfig, autodiscover and SRV help Outlook, Thunderbird and phones find the settings by themselves. The domain page lists them; add them if you can.
The domain page may also list MTA-STS and TLS-RPT records. Add them as shown.
Faster: zone file or one-click setup
You do not have to type each record by hand.
- Zone file. On the domain page, click Download DNS file (zone, import into Cloudflare / other DNS). In Cloudflare, go to DNS → Records → Import and Export → Import, and make sure the records are not proxied. Route 53, DigitalOcean and similar providers have an "import zone file" option. Records that are already correct, and records that conflict with what you have, are included as comments with instructions, so nothing is overwritten by accident. You can also choose Copy the whole zone file.
- One-click setup (Domain Connect). If your DNS provider supports it, the page says "Your DNS provider supports automatic setup" and shows Configure automatically. Click it, sign in at your provider and confirm. Your old MX is replaced straight away, so only do this when you are ready to receive mail at Zomail.
Your domain stays registered where it is. Zomail only needs these DNS records.
Check that the domain is verified
Click Check DNS after creating the records, or wait for the automatic check. Each record shows Correct, Missing, Wrong / incomplete or Not checked, with a hint under anything that needs fixing. Typical hints are "more than one SPF record" or "the domain's MX points to another server". DNS changes can take from a few minutes to a few hours, depending on the TTL your provider uses.
Create mailboxes
One at a time: Admin → Users → Add user. Fill in the display name, address, storage quota, language and a temporary password (at least 12 characters; there is a button to generate a strong one), then click Create mailbox. Send the address and temporary password over a safe channel, not by e-mail to the same mailbox.
Many at once: Admin → Users → Create from CSV. Upload or paste a file with up to 200 rows. Only address is required:
address,display_name,quota_mb,password,locale,notify_email
anna@example.com,Anna Nguyen,,,en,anna.personal@gmail.com
minh@example.com,Minh Tran,,,vi,Leave password empty and Zomail generates a strong one. Click Preview to see which rows will work and why others won't. Then click Create. Download the results CSV with the initial passwords straight away: the passwords are shown only once. The optional welcome e-mail never contains a password.
Sign in and turn on 2-step verification
- Open
https://mail.zomail.io, enter your full address and password, then click Sign in. - Change the temporary password: Settings → Change password.
- Go to Settings → Security: 2-step verification → Turn on 2-step verification. Scan the QR code with Google Authenticator, Microsoft Authenticator or a similar app, then enter the 6-digit code.
- Save the 10 recovery codes somewhere safe. Each works once, and they are shown only once.
- Add a Recovery email in Settings (an address outside this mailbox) so you can reset a forgotten password yourself.
Next: connect Outlook, Apple Mail or Thunderbird, set up your phone, or read the admin basics.
Stuck on a step? Contact Zomail support and tell us your domain and what the domain page shows.
FAQ
How long does DNS verification take?
Usually minutes, sometimes a few hours. It depends on your DNS provider and the TTL of the records. Click Check DNS again after you fix anything.
Do I need to move my domain to Zomail?
No. Keep the domain with your current registrar or DNS provider. You only add the records shown on your domain page.
Can I add more than one domain?
Yes. Use Add domain in the admin console. Each domain gets its own verification code and DKIM records.