Sender Policy Framework (SPF) is an open standard to prevent sender address forgery. SPF protects the envelope sender address, which is used for the delivery of email messages. Hosted Email Security allows you to verify a sender's authenticity using SPF settings.
SPF requires the owner of a domain to publish the email sending policy (for example, which email servers are used to send email messages from that domain) in an SPF record in the Domain Name System (DNS).
When Hosted Email Security receives an email message claiming to come from that domain, Hosted Email Security checks the SPF record to verify whether the email message complies with the domain's stated policy. For example, if the message comes from an unknown server, the email message can be considered as fake.
Evaluation of an SPF record can return any of the following results.
Result |
Explanation |
Intended Action |
---|---|---|
Pass |
The SPF record designates the host to be allowed to send. |
Accept |
Fail |
The SPF record has designated the host as not being allowed to send. |
Delete |
SoftFail |
The SPF record has designated the host as not being allowed to send but is in transition. |
Accept |
Neutral |
The SPF record specifies explicitly that nothing can be said about validity. |
Accept |
None |
The domain does not have an SPF record or the SPF record does not evaluate to a result. |
Accept |
PermError |
A permanent error has occurred (for example, badly formatted SPF record). |
Accept |
TempError |
A transient error has occurred. |
Accept |