---
title: What Is an SPF Record?
description: SPF explanation.
---

[Skip to content](https://knowledgebase.mxtoolbox.com/home/what-is-spf#main-content)

[Request Support](https://knowledgebase.mxtoolbox.com/home/kb-tickets/new?hsLang=en)

[![](https://knowledgebase.mxtoolbox.com/hs-fs/hubfs/logo.gif.png?width=110&height=27&name=logo.gif.png)](https://mxtoolbox.com/)

- [Help Knowledgebase](https://knowledgebase.mxtoolbox.com/home/)
- [Delivery Center Home](https://delivery.mxtoolbox.com/)
- [Monitoring Home](https://mxtoolbox.com/monitoring)
- [DMARC Knowledgebase](https://mxtoolbox.com/DMARC/knowledgebase)
- [Status Page](https://mxtoolbox.statuspage.io/)

Open main navigation

Close main navigation

- [Help Knowledgebase](https://knowledgebase.mxtoolbox.com/home/)
- [Delivery Center Home](https://delivery.mxtoolbox.com/)
- [Monitoring Home](https://mxtoolbox.com/monitoring)
- [DMARC Knowledgebase](https://mxtoolbox.com/DMARC/knowledgebase)
- [Status Page](https://mxtoolbox.statuspage.io/)
- [Request Support](https://knowledgebase.mxtoolbox.com/home/kb-tickets/new)

 How can we help you?

- There are no suggestions because the search field is empty.

1. [MxToolbox Help Center](https://knowledgebase.mxtoolbox.com/home?hsLang=en)
2. [Delivery Center](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en)
3. [SPF Configuration & Performance](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#spf-configuration-performance)

# What Is an SPF Record?

## This article explains what an SPF record is and its importance for email delivery.

A Sender Policy Framework (SPF) record is a type of DNS record Mail Administrators use to publish a list of trusted sources of email. This practice allows domain owners to specify which IP addresses and third-party email vendors are authorized to send email on their behalf.

Spammers often attempt to send emails that appear to come from your domain, which is called [spoofing](https://mxtoolbox.com/dmarc/email-delivery/prevent-spoofing-with-dmarc). SPF helps message recipients know where emails from your domain should be coming from and that they're **NOT** spoofed.

Nearly all inbound mail servers use SPF as a primary indicator of whether an email will hit the inbox. Formerly, SPF was the only standard an email needed to be largely trusted by mailbox providers. SPF is now complemented with other authentication methods, such as [DKIM](https://mxtoolbox.com/dmarc/dkim), [DMARC](https://mxtoolbox.com/dmarc/details/what-is-dmarc), and the newest standard, [BIMI](https://mxtoolbox.com/dmarc/details/bimi-record/what-is-a-bimi-record).

Most inbound systems today want to see all of these methods applied to an email as a means to prevent spoofing/phishing attacks and to help legitimate email have higher delivery rates. If you're new to the email world or have yet to even add SPF to your outbound email campaigns, it's imperative to create a record.

### How Does an SPF Record Work?

SPF records work by providing a list of authorized IP addresses and senders for the domain that's sending the email. Now, when we say *domain*, we don't mean the friendly one that you'll see when you open your inbox.

This domain is the MailFROM domain, and it'll only be seen when you look at the headers of an email. This particular domain is much harder (not impossible) for spoofers to impersonate, which is why it was chosen for SPF.

Basically, when an inbound server receives an email (this would be the recipient of the email), that server looks for this MailFROM domain. Once it finds this domain, it performs a [DNS lookup](https://mxtoolbox.com/DNSCheck.aspx) to get a TXT record for that domain that starts with v=spf1. Inside this record is the list of trusted IP addresses and senders. An example is provided below:

*v=spf1 a mx ip4:123.456.789.101 include:\_spf.google.com ~all*

From here, the server looks for the IP address that sent the email and checks to see if that IP address is included in the trusted list. If it is, it passes SPF Authentication. If the SPF record doesn't contain that IP address, the message fails SPF Authentication.

### SPF Record Format

SPF records are typically defined using the TXT record type. SPF records are defined as a single string text. For example:

v=spf1 a mx ip4:123.456.789.101 include:\_spf.google.com ~all

Terms are comprised of mechanisms and modifiers. The following mechanisms are defined:

- all
- include
- a
- mx
- ip4
- ip6
- exists

**Note:** The ptr type is also defined, but it shouldn't be used.

### SPF Record Setup

Creating an SPF record helps combat spammers trying to use your domain as a cover to send spam or other harmful email to unknowing recipients. The fraudsters pretend to be your company, allowing them to [phish](https://blog.mxtoolbox.com/2019/05/02/dmarc-and-phishing/) your clients for private account information and/or abuse your brand's reputation.

A proper SPF record will be checked by other servers and, when they discover spam disguised as your domain, the respective server will reject it.

For more information on how to set up an SPF record, click [here](https://mxtoolbox.com/dmarc/spf/setup/how-to-setup-or-modify-spf). You can also use our free [SPF Record Generator](https://mxtoolbox.com/SPFRecordGenerator.aspx) tool for assistance.

After your SPF record setup is complete, be sure to use our free [SPF Record Check](https://mxtoolbox.com/spf.aspx) to look up and validate existing records.

- [Delivery Center](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#main-content)

    - [Getting Started](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#getting-started)
    - [Domain Summary](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#domain-summary)
    - [Verified Sources](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#verified-sources)
    - [Integrations](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#integrations)
    - [SPF Configuration & Performance](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#spf-configuration-performance)
    - [DKIM Configuration & Performance](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#dkim-configuration-performance)
    - [DMARC Configuration](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#dmarc-configuration)
    - [BIMI](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#bimi)
    - [Inbox Placement](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#inbox-placement)
    - [Complaints](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#complaints)
    - [Blocklist Monitoring](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#blocklist-monitoring)
    - [Threat Intelligence](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#threat-intelligence)
    - [Domain Management](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#domain-management)
    - [Domain Insights](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#domain-insights)
    - [How to...](https://knowledgebase.mxtoolbox.com/home/delivery-center?hsLang=en#how-to)
- [Monitoring](https://knowledgebase.mxtoolbox.com/home/monitoring?hsLang=en#main-content)

    - [Monitors](https://knowledgebase.mxtoolbox.com/home/monitoring?hsLang=en#monitors)
    - [Notifications](https://knowledgebase.mxtoolbox.com/home/monitoring?hsLang=en#notifications)
    - [Tags](https://knowledgebase.mxtoolbox.com/home/monitoring?hsLang=en#tags)
    - [History](https://knowledgebase.mxtoolbox.com/home/monitoring?hsLang=en#history)
    - [Reports](https://knowledgebase.mxtoolbox.com/home/monitoring?hsLang=en#reports)
- [Tools](https://knowledgebase.mxtoolbox.com/home/tools?hsLang=en#main-content)

    - [All Tools](https://knowledgebase.mxtoolbox.com/home/tools?hsLang=en#all-tools)
    - [Blocklisting/Blacklisting](https://knowledgebase.mxtoolbox.com/home/tools?hsLang=en#blocklisting-blacklisting)
    - [DNS Tools](https://knowledgebase.mxtoolbox.com/home/tools?hsLang=en#dns-tools)
    - [Header Analyzer](https://knowledgebase.mxtoolbox.com/home/tools?hsLang=en#header-analyzer)
    - [Bulk Lookup](https://knowledgebase.mxtoolbox.com/home/tools?hsLang=en#bulk-lookup)
- [Notifications](https://knowledgebase.mxtoolbox.com/home/notifications?hsLang=en#main-content)

    - [Delivery Center Notifications](https://knowledgebase.mxtoolbox.com/home/notifications?hsLang=en#delivery-center-notifications)
    - [Monitoring Notifications](https://knowledgebase.mxtoolbox.com/home/notifications?hsLang=en#monitoring-notifications)
    - [Summary Email Reports](https://knowledgebase.mxtoolbox.com/home/notifications?hsLang=en#summary-email-reports)
    - [Test Email](https://knowledgebase.mxtoolbox.com/home/notifications?hsLang=en#test-email)
- [Account Management](https://knowledgebase.mxtoolbox.com/home/account-management?hsLang=en#main-content)

    - [User Management](https://knowledgebase.mxtoolbox.com/home/account-management?hsLang=en#user-management)
    - [Account Profile](https://knowledgebase.mxtoolbox.com/home/account-management?hsLang=en#account-profile)
    - [Billing](https://knowledgebase.mxtoolbox.com/home/account-management?hsLang=en#billing)
    - [Legal](https://knowledgebase.mxtoolbox.com/home/account-management?hsLang=en#legal)
    - [Security](https://knowledgebase.mxtoolbox.com/home/account-management?hsLang=en#security)
    - [Support](https://knowledgebase.mxtoolbox.com/home/account-management?hsLang=en#support)
- [API](https://knowledgebase.mxtoolbox.com/home/api?hsLang=en#main-content)

    - [Getting Started with API](https://knowledgebase.mxtoolbox.com/home/api?hsLang=en#getting-started-with-api)
    - [API Methods](https://knowledgebase.mxtoolbox.com/home/api?hsLang=en#api-methods)
- [Email Delivery](https://knowledgebase.mxtoolbox.com/home/email-delivery?hsLang=en#main-content)

    - [Delivery Center](https://knowledgebase.mxtoolbox.com/home/email-delivery?hsLang=en#delivery-center)
    - [Best Practices](https://knowledgebase.mxtoolbox.com/home/email-delivery?hsLang=en#best-practices)
    - [Email Tools](https://knowledgebase.mxtoolbox.com/home/email-delivery?hsLang=en#email-tools)
    - [Managed Services](https://knowledgebase.mxtoolbox.com/home/email-delivery?hsLang=en#managed-services)
    - [Data](https://knowledgebase.mxtoolbox.com/home/email-delivery?hsLang=en#data)

[![](https://knowledgebase.mxtoolbox.com/hs-fs/hubfs/logo.gif.png?width=110&height=27&name=logo.gif.png)](https://mxtoolbox.com)

Phone: (866)-698-6652 | [Terms & Condition](https://mxtoolbox.com/TermsAndConditions.aspx)s | [Privacy Policy](https://mxtoolbox.com/privacypolicy.aspx) | [Security](https://mxtoolbox.com/SecurityStatement.aspx) | US Patents 10839353 B2 & 11461738 B2 | Copyright © 2025, MxToolbox