# Microsoft SNDS and JMRP Setup: 2026 Portal, Access and Reports

Source: https://srvscripts.com/guides/microsoft-snds-jmrp-setup/
Updated: 2026-10-06
Publisher: srvScripts (https://srvscripts.com/)

**Short answer:** Sign in to the new SNDS portal at `substrate.office.com/ip-domain-management-snds/SNDS` with a Microsoft account, open **Request Access**, enter your IP, range or ASN, and click the link SNDS mails to an authorization address it finds through reverse DNS or RDAP (for example `postmaster@` or `abuse@` your PTR domain). Then enrol the same IPs in the **Junk Mail Reporting Program** to receive a report each time an Outlook.com user marks your mail as junk. Access now expires after 10 months unless you reattest.

Checked against Microsoft’s SNDS and Outlook.com postmaster pages on 6 October 2026; on the same day we confirmed with `curl` that the old SNDS address answers with a permanent redirect to the new portal. We have not enrolled our lab IPs, so the screens are described from Microsoft’s documentation rather than our own account.

## What SNDS and JMRP are

Both are free Microsoft services for people who run mail-sending IPs:

- **SNDS (Smart Network Data Services)** shows, per IP and per day, how much mail Outlook.com received from it, what its spam filter decided, the complaint rate, and whether the IP is blocked or junked.

- **JMRP (Junk Mail Reporting Program)** is Microsoft’s feedback loop. When an Outlook.com user clicks Junk or Phishing on your message, you get a report so you can remove that recipient.

They cover Outlook.com, Microsoft’s consumer mail service (outlook.com, hotmail.com, live.com and msn.com addresses), not Microsoft 365 business tenants. For a hosting provider they are also a cheap early-warning system: SNDS often shows a compromised server or mailbox on one of your IPs before customers complain.

## What changed in 2026

- **New portal.** SNDS moved to `https://substrate.office.com/ip-domain-management-snds/SNDS`. The announcement on the portal says the site replaces the previous one at `sendersupport.olc.protection.outlook.com/snds/`, and that old address now redirects. Update bookmarks and any scripts that use the old host.

- **Reattestation every 10 months.** Network access now expires 10 months after approval (or after migration from the old site). SNDS sends three reminders, at about three, six and nine months. An approved reattestation renews access for another 10 months. Expiry dates are on the **Access Control** page.

- **Postmaster pages moved too.** The Outlook.com postmaster policy and troubleshooting pages are now served from the same `substrate.office.com` host.

Senders have also reported changes to automated data links and JMRP report contents during 2026 that Microsoft’s public FAQ does not describe yet. Check what your own account and reports show rather than relying on older guides.

## Before you start

- Make sure every sending IP has a PTR record in a domain you control, for example `mail.example.com`. SNDS uses reverse DNS to choose authorization addresses. Check with our [Reverse DNS Lookup](/tools/reverse-dns-lookup/).

- Make sure `postmaster@` and `abuse@` exist in that domain and that you can read them. These are the addresses SNDS offers when all IPs in the range share one domain.

- Know your RDAP record. For larger ranges or an ASN, SNDS uses the contact addresses in the RIR record for the allocation. Look it up with our [WHOIS and RDAP Lookup](/tools/whois-lookup/) and our [ASN Lookup](/tools/asn-lookup/).

- Have a Microsoft account (the same kind used for Outlook.com) for the person who will manage SNDS. Use a shared role mailbox rather than a personal one, so access survives staff changes.

## Request SNDS access

- Open the SNDS portal and click **Log in**.

- Go to **Request Access** and enter one IP, an IP range, or your ASN.

- SNDS returns the authorization addresses it found. Pick one you can receive mail at.

- Open the email SNDS sends and click the link. That proves you control the address, and therefore the range.

- The IPs then appear under **View Data** and **View IP Status**.

How the addresses are chosen, from Microsoft’s FAQ:

| You enter | Source SNDS uses | Addresses offered |
| --- | --- | --- |
| IP or range up to /23 | Reverse DNS of the IPs | postmaster@ and abuse@ the common domain of the PTR names (and of a common subdomain if there is one) |
| IP or range | RDAP allocation record for the first IP | Any email addresses in that record, if the range is not larger than the record |
| ASN | RDAP record for the ASN, plus routing data from RouteViews | Addresses in the ASN record; approval gives access to all subnets the ASN announces |

If no usable address comes back, request a smaller range, or fix the data at the source: set consistent PTR names or update your RIR contact details. Microsoft says it cannot process manual access requests. If someone else receives the authorization mail (your upstream provider, for example), they can forward it to you or click the link for you; this is how delegation works.

## Read the SNDS data

| Field | Meaning |
| --- | --- |
| Activity period | First and last hour (Pacific time) the IP sent that day |
| RCPT / DATA commands, message recipients | SMTP volume. A large gap between RCPT commands and recipients suggests old lists or address harvesting |
| Filter result | Green: spam verdict on under 10% of messages. Yellow: 10% to 90%. Red: over 90% |
| Complaint rate | Junk reports divided by recipients. Microsoft calls under 0.3% a good bar |
| Comments | Extra notes such as JMR complaint counts or detected viruses |

Data for each day is processed from about midnight Pacific time and kept for 90 days. IPs that sent fewer than 100 messages on a day may show no traffic data. **View IP Status** lists IPs that are currently Blocked, flagged as Bot, or Junked; it reflects the last 24 hours only, with no history.

To keep history longer than 90 days, export the data regularly with the CSV button on the data pages, or enable the automated data URL from the portal (Microsoft’s FAQ says it returns the same CSV). Store the exports with your other monitoring data.

## Enrol in JMRP

- In the SNDS portal, open **Junk Mail Reporting Program**.

- Enrol the sending IPs and give a mailbox for the complaint reports. Use a dedicated mailbox such as `fbl@example.com` that a script or your mailing software reads, not a person’s inbox.

- Microsoft says reports typically start within as little as 72 hours.

- When you add new sending IPs later, add them to JMRP too. Microsoft’s troubleshooting page reminds senders of this specifically.

Act on every report: unsubscribe the recipient from that list at once. To do that automatically, your messages need something that identifies the recipient and list, such as a unique `Message-ID`, a custom header or the token in your `List-Unsubscribe` URL, because the reported message is the only data you get back. Microsoft’s Services page says reports contain the message with headers; check a few real reports to see exactly what is included now and adjust your parser.

## Use it on a hosting server

- Add every outbound IP, including additional IPs mapped per domain (on cPanel, `/etc/mailips` holds those mappings; it was empty on our lab, so all mail used the main IP).

- Check SNDS daily or alert on changes. A sudden jump in recipients or a move to Yellow or Red on one IP usually means a compromised mailbox or script. Our guide to [finding the source of outgoing spam](/guides/find-source-of-outgoing-spam-cpanel/) covers the next steps.

- Watch IP Status after migrations. A new server IP has no reputation; ramp up slowly as described in our [warm-up guide](/guides/warm-up-new-mail-server-ip-domain/).

- When an IP shows Blocked and you have fixed the cause, use the Support link on the Outlook.com postmaster troubleshooting page. The SNDS team itself does not handle deliverability requests.

## Check that it worked

- Access Control lists your ranges with an expiry date about 10 months away.

- View Data shows rows for your busy IPs the day after they sent mail to Outlook.com.

- Send a test to an Outlook.com mailbox you own, mark it as Junk, and confirm a JMRP report arrives in the feedback mailbox (allow for the initial delay after enrolment).

- Put a calendar reminder at nine months for reattestation, in case the reminder emails go to someone who has left.

## Common problems

- **“No authorization addresses found”.** PTR names do not share a domain, the range is larger than /23 for the reverse DNS method, or the RDAP record has no email. Request smaller ranges or fix PTR and RIR data.

- **Authorization mail never arrives.** `postmaster@` or `abuse@` does not exist, or your own spam filter caught it. Check the server log for the message.

- **“Lookups for my IP are failing”.** Microsoft says lookups for some ranges fail because of third-party throttling and that it is working on it. Retry later or try the ASN.

- **Access disappeared.** The 10-month period ran out, or another owner requested reauthorization and it was not completed within 7 days.

**Official documentation:** [SNDS portal](https://substrate.office.com/ip-domain-management-snds/SNDS) · [SNDS FAQ](https://substrate.office.com/ip-domain-management-snds/SNDS/FAQ) · [Outlook.com postmaster: services (JMRP)](https://substrate.office.com/ip-domain-management-snds/Postmaster/Services) · [Outlook.com postmaster: troubleshooting](https://substrate.office.com/ip-domain-management-snds/Postmaster/Troubleshooting)

**Related:** [Warm Up New Mail Server IP Without Spam Problems](/guides/warm-up-new-mail-server-ip-domain/) · [Mail server IP blacklisted: delisting runbook](/guides/runbook-ip-blacklisted/) · [Reverse DNS Lookup: Free Bulk PTR Check for 25 IPs](/tools/reverse-dns-lookup/) · [MailBaby Feedback Loop and Abuse Reports: Avoid Suspensions](/guides/mailbaby-feedback-loops-abuse-reports/) · [Outgoing Spam cPanel: Find the Source and Stop It](/guides/find-source-of-outgoing-spam-cpanel/)

**See also:** [Gmail and Yahoo Bulk Sender Requirements: 2026 Host Checklist](/guides/gmail-yahoo-bulk-sender-requirements/) · [One-Click Unsubscribe (RFC 8058) for Exim, Postfix, WordPress](/guides/one-click-unsubscribe-rfc-8058/) · [Outlook 550 5.7.515: Fix the High-Volume Sender Rejection](/guides/outlook-550-5-7-515-high-volume-senders/) · [Emails Going to Junk in Outlook and Hotmail: Sender-Side Fix](/guides/outlook-junk-folder-sender-fix/) · [IP Warm-Up Schedule Generator for New Mail Servers](/tools/ip-warmup-schedule/)

## Frequently asked questions

### What is the new Microsoft SNDS URL?

https://substrate.office.com/ip-domain-management-snds/SNDS. The old sendersupport.olc.protection.outlook.com/snds/ address redirects there.

### Why did my SNDS access expire?

Since the move to the new portal, network access lasts 10 months from approval or migration. You must submit a reattestation and have it approved before the expiry date.

### Which email addresses can approve SNDS access?

SNDS picks them automatically: postmaster@ and abuse@ the common domain of your PTR records for ranges up to /23, or the contacts in the RDAP record for the range or ASN.

### How long until JMRP reports arrive?

Microsoft says you typically start receiving feedback within as little as 72 hours after enrolling.

### Does SNDS cover Microsoft 365 business mailboxes?

No. SNDS and JMRP report on mail to Outlook.com consumer addresses such as outlook.com, hotmail.com and live.com.

### Why is there no data for my IP?

SNDS may hide traffic data for IPs that sent fewer than 100 messages that day, and new data appears after the daily processing run.
