After creating the DMARC verification profile, the administrator must apply a DMARC policy action for domains whose DMARC record specifies reject. Configuring AsyncOS to reject those failed messages enforces the sender domain's DMARC policy and allows the appliance to return the required SMTP 550 response.