An SPF record lists the servers allowed to send email for your domain. Receiving servers check it and treat mail from anywhere else with suspicion.
Your SPF record on Traxio
With Traxio nameservers, DirectAdmin creates an SPF record automatically. Check it in Account Manager then DNS Management: look for a TXT record on the domain beginning v=spf1.
A typical record for mail sent only through Traxio:
v=spf1 a mx ~all
Reading SPF
| Part | Meaning |
|---|---|
v=spf1 | This is an SPF record |
a | The server in the domain’s A record may send |
mx | The domain’s MX servers may send |
ip4:203.0.113.10 | This specific address may send |
include:_spf.example.com | Whatever that provider’s SPF allows may send |
~all | Anything else: soft fail (accept but mark) |
-all | Anything else: fail |
Adding other senders
If you also send through a newsletter service, Google Workspace or a CRM, add their include: to the same record:
v=spf1 a mx include:_spf.google.com include:servers.mcsv.net ~all
Use the include value each service documents.
The rules that break SPF
- Only one SPF record. Two TXT records starting
v=spf1make SPF fail entirely. Merge them. - At most 10 DNS lookups. Each
include,a,mxandredirectcosts lookups, and includes can contain more. Exceed 10 and SPF fails with a “permerror”. Remove services you no longer use. ~allor-all, never+all.+allallows anyone to send as you.
Editing it
- Open Account Manager then DNS Management.
- Edit the existing
v=spf1TXT record — don’t add a second. - Save, then check:
dig yourdomain.co.uk TXT +short