Views:

Sender Policy Framework (SPF) is an open standard to prevent sender address forgery. SPF protects the envelope sender address, which is used for the delivery of email messages. Hosted Email Security allows you to verify a sender's authenticity using SPF settings.

SPF requires the owner of a domain to publish the email sending policy (for example, which email servers are used to send email messages from that domain) in an SPF record in the Domain Name System (DNS).

When Hosted Email Security receives an email message claiming to come from that domain, Hosted Email Security checks the SPF record to verify whether the email message complies with the domain's stated policy. For example, if the message comes from an unknown server, the email message can be considered as fake.

Evaluation of an SPF record can return any of the following results.

Result

Explanation

Intended Action

Pass

The SPF record designates the host to be allowed to send.

Accept

Fail

The SPF record has designated the host as not being allowed to send.

Delete

SoftFail

The SPF record has designated the host as not being allowed to send but is in transition.

Accept

Neutral

The SPF record specifies explicitly that nothing can be said about validity.

Accept

None

The domain does not have an SPF record or the SPF record does not evaluate to a result.

Accept

PermError

A permanent error has occurred (for example, badly formatted SPF record).

Accept

TempError

A transient error has occurred.

Accept