FREE · NO ACCOUNT

Free SPF record generator — include, IPv4 & IPv6

Build an SPF TXT record from provider includes and IPv4 or IPv6 ranges in your browser. Check input syntax and copy a draft for your DNS settings.

Include every legitimate sender before replacing an existing SPF record. Nested DNS lookups are not evaluated here.

What this tool tells you

SPF is a TXT record that identifies permitted sending sources for a domain. This builder accepts include domains supplied by your providers and explicit IPv4 or IPv6 addresses or CIDR ranges. It creates a draft, not a verified inventory of your senders. Publish only one SPF record at a given name.

How to use it

  1. Inventory every service that sends for this domain: mailboxes, support, billing and newsletters.
  2. Enter only the include domains or addresses confirmed by those providers. Choose a final policy.
  3. Generate and review the draft against any existing SPF record before updating DNS.

Read the result in context

The builder does not resolve includes, detect loops or calculate the full SPF DNS lookup budget. Nested include and redirect paths can exceed SPF’s ten-lookup-term limit even with fewer than ten includes here. Do not replace an existing record until all legitimate senders are included.

Useful answers

Can I publish two SPF records?

Do not publish multiple v=spf1 records for the same DNS name. Combine the authorized sources into a single policy and check its evaluation limits. Other unrelated TXT records may coexist.

What is the difference between ~all and -all?

~all produces a softfail result for unmatched senders; -all produces fail. Neither is an inbox-delivery guarantee. Choose a policy after identifying legitimate senders and testing real mail.

RelyPost

Give your business its own email address.

Bring your domain, create team mailboxes and manage email in one workspace. Review the current free and paid plan limits.

Explore business email