July 06, 2026
How to check an SPF record (and what to actually look at)
Checking an SPF record is not confirming it exists: it means reading its syntax, lookup count, qualifier and alignment. The complete step-by-step guide.
Read →July 06, 2026
Checking an SPF record is not confirming it exists: it means reading its syntax, lookup count, qualifier and alignment. The complete step-by-step guide.
Read →July 05, 2026
SPF -all or ~all: what the terminal mechanism tells receivers, how ?all and +all differ, the interaction with DMARC, and which one to publish.
Read →July 04, 2026
SPF flattening swaps includes for the IPs they resolve to, to get back under 10 lookups. How it works, the maintenance debt, and the alternatives.
Read →July 03, 2026
The PermError “too many DNS lookups” breaks an SPF record past 10 resolutions. Why the limit exists, what counts toward it, how to get back under.
Read →July 02, 2026
DMARCbis replaces RFC 7489 but stays backward-compatible. What should change in the DMARC record, what must not, in which order, and how to verify.
Read →July 01, 2026
DMARCbis drops the pct tag for t=, a binary testing mode. Why pct disappeared, how t=y behaves, and how to roll DMARC out gradually without it.
Read →June 30, 2026
DMARCbis replaces the Public Suffix List with the DNS Tree Walk to find the organizational domain. How it works, why it is more robust, what changes.
Read →June 29, 2026
DMARCbis adds the np tag for non-existent subdomains — a spoofing gap that sp never covered. What it does, how it differs from sp, and how to set it.
Read →June 28, 2026
DMARCbis is made of three RFCs that replace 7489. What each one contains, the exact list of tags added and removed, and what it means for the record.
Read →June 27, 2026
DMARCbis, published in May 2026, replaces RFC 7489. What the DMARC V2 revision changes (np, t, DNS Tree Walk), what stays, whether action is needed.
Read →