SPF Check:
k-s-h.de

1. Specify domain name

Enter a domain to be checked for the SPF record
2. Specify IP address (optional)
Enter any IP address to check if it is authorized to send e-mails by the SPF record

What is the SPF lookup for?

With the SPF lookup you analyze the SPF record of a domain for errors, security risks and authorized IP addresses. Optionally, you can specify an IP address to check if it is authorized to send e-mail on behalf of the domain. The SPF lookup analyzes registered TXT records in real time. If you want to specify an SPF record manually, use the SPF Analyzer.

Loading...

SPF check passed

Your SPF record check result
  •   SPF record found
  •   Syntax check: 0 errors
  •   Email Anti-Spoofing: Good
Warning: Compliance breach for email deliverability & security

The domain k-s-h.de does not fulfil the requirements for optimal deliverability to Google, Yahoo and other email service providers.

Mandatory IT baseline protection measures for email security are not fulfilled. There are risks of email misuse.

Summary of the SPF check

Does a valid SPF record exist?
An SPF record was found for the domain k-s-h.de.
The SPF record for k-s-h.de is valid.
The syntax check of the SPF record shows no obvious errors.

Which IP-s are legitimate to send emails?
The SPF record contains a reference to external rules, which means that the validity of the SPF record depends on at least one other domain. A detailed list of the rules used externally can be found in the analysis result. In total, 47 IP address(es) were authorized by the SPF record to send emails.

The SPF record analysis was performed on 18.11.2024 at 20:40:27 clock.

Lookup for the domain:
k-s-h.de
IP address to be checked:
no IP address specified
Solve your problems in no time
Guaranteed measurable improvement for email deliverability and domain security
Solve your problems in no time

Evaluation for the domain k-s-h.de 

Nameserverset:
nsc1.schlundtech.de
nsa1.schlundtech.de
nsb1.schlundtech.de
nsd1.schlundtech.de
Determined SPF record:
Legitimated IP addresses:
IP Provider / ASN DNSBL-Check
195.50.177.21 Vodafone GmbH blacklist 
87.79.26.197 NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
52.57.146.100 AMAZON-02 blacklist 
18.194.127.1 AMAZON-02 blacklist 
52.57.146.100 AMAZON-02 blacklist 
18.194.127.1 AMAZON-02 blacklist 
213.168.87.14 NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
81.173.193.131 NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
2001:4dd0:100:1020:25:a2b:0:1 NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
81.173.193.132 NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
2001:4dd0:100:1020:25:a2b:0:2 NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
81.173.193.132/32
NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
195.14.253.20/32
NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
81.173.193.131/32
NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
213.168.87.14/32
NetCologne Gesellschaft fur Telekommunikation mbH blacklist 
91.90.158.111/32
WIIT AG blacklist 
91.90.158.112/32
WIIT AG blacklist 
91.90.158.113/32
WIIT AG blacklist 
212.227.0.0/16
IONOS SE blacklist 
217.72.192.74/16
IONOS SE blacklist 
212.227.15.167 IONOS SE blacklist 
212.227.15.183 IONOS SE blacklist 
2a00:14e0:100:1200::2 WIIT AG blacklist 
2a00:14e0:100:1200:250:56ff:fe81:f0c8 WIIT AG blacklist 
208.82.74.169 WIIT AG blacklist 
195.50.178.169 Vodafone GmbH blacklist 
10.112.164.114 - - blacklist 
10.112.164.115 - - blacklist 
208.82.73.21 WIIT AG blacklist 
195.50.177.21 Vodafone GmbH blacklist 
195.50.177.20 Vodafone GmbH blacklist 
208.82.73.20 WIIT AG blacklist 
91.90.158.111 WIIT AG blacklist 
91.90.158.112 WIIT AG blacklist 
91.90.158.113 WIIT AG blacklist 
91.90.158.126 WIIT AG blacklist 
91.90.145.131 WIIT AG blacklist 
91.90.145.132 WIIT AG blacklist 
91.90.145.133 WIIT AG blacklist 
10.25.128.170 - - blacklist 
10.25.128.173 - - blacklist 
94.140.18.0/24
AMAZON-02 blacklist 
35.159.27.8/30
AMAZON-02 blacklist 
35.159.27.28/30
AMAZON-02 blacklist 
35.159.27.32/30
AMAZON-02 blacklist 
35.159.27.48/29
AMAZON-02 blacklist 
35.159.27.160/28
AMAZON-02 blacklist 
SPF-Syntax Check:
Analysis result of the SPF record for the domain: k-s-h.de

SPF record available?

We found an SPF record for the domain.

v=spf1

Are the server addresses allowed to send e-mails?

The mechanism 'a' was set in the SPF record. The following IP addresses are allowed to send

195.50.177.21

Additionally authorized A-records?

In addition to the A-records stored in the DNS, we were able to find further records authorized in the SPF-record

213.168.87.14
81.173.193.131
2001:4dd0:100:1020:25:a2b:0:1
81.173.193.132
2001:4dd0:100:1020:25:a2b:0:2
212.227.15.167
212.227.15.183

Are the registered mail servers allowed to send e-mails?

The mechanism 'mx' was set in the SPF entry. The following hosts are allowed to send

owa.tagungshaeuser.com
mx-01-eu-central-1.prod.hydra.sophos.com
mx-01-eu-central-1.prod.hydra.sophos.com
mx-02-eu-central-1.prod.hydra.sophos.com
mx-02-eu-central-1.prod.hydra.sophos.com

Additionally authorized IPv4 addresses

Explicit IPv4 addresses in the SPF record have been authorized to send

81.173.193.132/32
195.14.253.20/32
81.173.193.131/32
213.168.87.14/32
91.90.158.111/32
91.90.158.112/32
91.90.158.113/32
212.227.0.0/16
217.72.192.74/16

Additional external SPF records

We could find other records authorized in the SPF record

include:_spf.erzbistum-koeln.de
v=spf1 ip6:2a00:14e0:100:1200::2 ip6:2a00:14e0:100:1200:250:56ff:fe81:f0c8 ip4:208.82.74.169 ip4:195.50.178.169 ip4:10.112.164.114 ip4:10.112.164.115 ip4:208.82.73.21 ip4:195.50.177.21 ip4:195.50.177.20 ip4:208.82.73.20 ip4:91.90.158.111 ip4:91.90.158.112 ip4:91.90.158.113 ip4:91.90.158.126 ip4:91.90.145.131 ip4:91.90.145.132 ip4:91.90.145.133 ip4:10.25.128.170 ip4:10.25.128.173 -all
ipv4:
208.82.74.169
ipv4:
195.50.178.169
ipv4:
10.112.164.114
ipv4:
10.112.164.115
ipv4:
208.82.73.21
ipv4:
195.50.177.21
ipv4:
195.50.177.20
ipv4:
208.82.73.20
ipv4:
91.90.158.111
ipv4:
91.90.158.112
ipv4:
91.90.158.113
ipv4:
91.90.158.126
ipv4:
91.90.145.131
ipv4:
91.90.145.132
ipv4:
91.90.145.133
ipv4:
10.25.128.170
ipv4:
10.25.128.173
ipv6:
2a00:14e0:100:1200::2
ipv6:
2a00:14e0:100:1200:250:56ff:fe81:f0c8
include:_spf_eucentral1.prod.hydra.sophos.com
v=spf1 ip4:94.140.18.0/24 ip4:35.159.27.8/30 ip4:35.159.27.28/30 ip4:35.159.27.32/30 ip4:35.159.27.48/29 ip4:35.159.27.160/28 ~all
ipv4:
94.140.18.0/24
ipv4:
35.159.27.8/30
ipv4:
35.159.27.28/30
ipv4:
35.159.27.32/30
ipv4:
35.159.27.48/29
ipv4:
35.159.27.160/28

E-Mail handling

How should the checkHost() function of the e-mail server handle the e-mail? (syntax )

-all
Fail (non-compliant e-mails are rejected)

Unknown mechanisms

Unknown mechanisms were found in the SPF record


Will be forwarded to another SPF record?

There is no reference to any other SPF record

Additionally authorized MX records

We could not find any other records authorized in the SPF record besides the MX records stored in the DNS

Additionally authorized IPv6 addresses

No explicit IPv6 addresses in the SPF record have been authorised to send

How is the sender informed?

The exp mechanism acts as a return to the sender if the IP address was not authorized to send and notify them. None was found.

PTR (obsolete mechanism)

The ptr mechanism is deprecated, slow and insecure and should not be used

PTR:

The ptr mechanism is deprecated, slow and insecure and should not be used

Authorize IP addresses with markers

When SPF is evaluated, macros can specifically authorize Ip addresses based on the request or connection of the user or client (RFC7208 )

Receiver address

analysis.ra-missing

Amount of reports

analysis.rp-missing

Report selection

analysis.rr-missing

Recently performed SPF lookups

Server IP Address

We have determined the following IP address for the domain:

No domain specified

Reverse address

We have determined the following name for the server IP address:

erz-live.dns.boreus.de

Free whitepaper

How secure is your domain?

  • Practical with many examples
  • the basics of domain risk management summarized in 20 pages
  • Checklist with 53 questions on 14 risk areas

Get a first impression of the risk potential in your company

⮩ Download "Domain Risk Management" for free
All offers are aimed at traders, not end consumers and do not include VAT.
© 2024 nicmanager.com.   All rights reserved.
nicmanager