My domain is used for Joe-jobbing. Basic research indicated activation of SPF as a possible remedy. I followed HSphere instructions and activated SPF for the problematic domain. Couple weeks later I still see number of bounced messages, definitely not sent from my accounts. I made more thorough research and came up with interesting results.
On my domain the DNS TXT record for Sender Policy Framework is:
v=spf1 a mx -all
what, based on SPF: SPF Record Syntax , means that only messages sent by mail servers with ip addresses listed in MX or A records are legitimate for given domain.
On my domain there is only one MX record for server: gw-mail.my_service_domain.com resolving to 204.10.107.118. There are two A records, both listing ip 204.10.108.1 of the web server. There is also one CNAME record: mail.my_service_domain.com resolving to 204.14.107.1. That is actual mail server running smtp process, because messages sent from my accounts contain this line:
Received: from mail.m****here.biz ([204.14.107.1]).
Here is what I don't understand: If the ip address of my sending mail server is not listed in MX, neither A, records, how come my emails are still being delivered? Are the receiving servers not checking SPF? Or perhaps the CNAME record is treated like the A record? Can someone shed some light on this??(
On my domain the DNS TXT record for Sender Policy Framework is:
v=spf1 a mx -all
what, based on SPF: SPF Record Syntax , means that only messages sent by mail servers with ip addresses listed in MX or A records are legitimate for given domain.
On my domain there is only one MX record for server: gw-mail.my_service_domain.com resolving to 204.10.107.118. There are two A records, both listing ip 204.10.108.1 of the web server. There is also one CNAME record: mail.my_service_domain.com resolving to 204.14.107.1. That is actual mail server running smtp process, because messages sent from my accounts contain this line:
Received: from mail.m****here.biz ([204.14.107.1]).
Here is what I don't understand: If the ip address of my sending mail server is not listed in MX, neither A, records, how come my emails are still being delivered? Are the receiving servers not checking SPF? Or perhaps the CNAME record is treated like the A record? Can someone shed some light on this??(