On 23 Mar 2019, at 11:32, Christian Schmitz wrote:
3)Dear Andrei
mmu.ac.ug. 86400 IN TXT "v=spf1 include:_spf.google.com
~all"
See, ~all was your undoing.
My domain is **schweb.com.ar** and the email come from **mmu.ac.ug**
My spf is:
v=spf1 mx a ip4:24.232.174.73 mx:schweb.com.ar a:schlabs.com.ar
a:sys-arquitectura.cl -all
Maybe i need remove -all?
No. Nothing you do regarding your own domain can fix this SPF issue.
Ending with "-all" indicates a default "hard" failure, so if you enforce
that, SPF failures for your own domain will result in rejection.
SPF operates on the envelope sender of a message, NOT the From header.
Your log shows that the envelope sender was d...@mmu.ac.ug:
2019-03-22T07:42:00.178966-03:00 schweb postfix/policy-spf[16235]: :
SPF
softfail (Mechanism '~all' matched): Envelope-from: d...@mmu.ac.ug
--
Bill Cole
b...@scconsult.com or billc...@apache.org
(AKA @grumpybozo and many *@billmail.scconsult.com addresses)
Available For Hire: https://linkedin.com/in/billcole