Looking up DNS records…

SPF record generator

Your SPF record

{{ lookups }} / 10 DNS lookups
Type or paste a record here, or use the form below — the two stay in sync.
a:
mx:
include:
exists:

How to treat senders that match nothing above.
The mechanisms above still match first — redirect is only the fallback, and replaces all.

How to use & publish

  1. List every source that sends mail as your domain: tick a / mx for your own servers, add provider includes, add any fixed sending IPs — or paste an existing record into the box at the top.
  2. Keep the DNS-lookup count (shown next to the record) at 10 or below — flatten includes to ip4/ip6 if needed.
  3. Copy the record from the box.
  4. Create one TXT record at the domain apex (name @ or blank), value = the record. Delete any other v=spf1 record.
  5. Use ~all while you confirm nothing legitimate is missing, then switch to -all.
{{ n.text }}