Re: [spfbis] Clarity on location of SPF records

Dave Crocker <dhc@dcrocker.net> Tue, 16 September 2014 12:36 UTC

Return-Path: <dhc@dcrocker.net>
X-Original-To: spfbis@ietfa.amsl.com
Delivered-To: spfbis@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2FDD51A030C for <spfbis@ietfa.amsl.com>; Tue, 16 Sep 2014 05:36:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level:
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2g7k5yAv1GSB for <spfbis@ietfa.amsl.com>; Tue, 16 Sep 2014 05:36:51 -0700 (PDT)
Received: from sbh17.songbird.com (sbh17.songbird.com [72.52.113.17]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3F4281A0664 for <spfbis@ietf.org>; Tue, 16 Sep 2014 05:36:51 -0700 (PDT)
Received: from [192.168.1.66] (76-218-8-156.lightspeed.sntcca.sbcglobal.net [76.218.8.156]) (authenticated bits=0) by sbh17.songbird.com (8.13.8/8.13.8) with ESMTP id s8GCalsG016583 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NOT); Tue, 16 Sep 2014 05:36:50 -0700
Message-ID: <54182EDD.7030508@dcrocker.net>
Date: Tue, 16 Sep 2014 05:36:45 -0700
From: Dave Crocker <dhc@dcrocker.net>
Organization: Brandenburg InternetWorking
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0
MIME-Version: 1.0
To: Danie de Jager <danie.dejager@za.striata.com>, spfbis@ietf.org
References: <CAC6Wms59cN0+v87dL69o10uZ7B5TnmbiX6WZf7J9C+vE11PgDw@mail.gmail.com>
In-Reply-To: <CAC6Wms59cN0+v87dL69o10uZ7B5TnmbiX6WZf7J9C+vE11PgDw@mail.gmail.com>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: 8bit
X-Greylist: Sender succeeded SMTP AUTH, not delayed by milter-greylist-4.0 (sbh17.songbird.com [72.52.113.66]); Tue, 16 Sep 2014 05:36:50 -0700 (PDT)
Archived-At: http://mailarchive.ietf.org/arch/msg/spfbis/sVBJd4U7hUWFhYQk10XMx69aHyI
Subject: Re: [spfbis] Clarity on location of SPF records
X-BeenThere: spfbis@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
Reply-To: dcrocker@bbiw.net
List-Id: SPFbis discussion list <spfbis.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spfbis>, <mailto:spfbis-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/spfbis/>
List-Post: <mailto:spfbis@ietf.org>
List-Help: <mailto:spfbis-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spfbis>, <mailto:spfbis-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 16 Sep 2014 12:36:53 -0000

On 9/16/2014 4:27 AM, Danie de Jager wrote:
> I need ​clarity with the ​ possible​ location of the SPF record.>
> As example. If I have a domain abc.123.example.com
> <http://abc.123.example.com> with a MX record of


MX records are for hosts to /receive/ mail.

SPF is for registering hosts that /send/.

You need a record for any domain name that shows up in an
rfc5321.MailFrom command.  (I'm being simplistic, but this will suffice.)

Under that domain, you need an SPF record that lists the IP addresses of
every machine that will be an SMTP client, sending mail using that
domain name in the Mail From.

d/

-- 
Dave Crocker
Brandenburg InternetWorking
bbiw.net