On 5/15/2019 11:47 AM, Bill Cole wrote: >> Does anyone know what or where this is coming from? > > As RW noted, that is a state that occurs when a SPF record exists but > it cannot be properly interpreted. This most commonly has one of two > root causes: > > 1. A typo in the SPF record that makes it syntactically invalid. > > 2. Excess complexity in a SPF record that results in a need to do more > than 10 DNS queries to resolve the fully-expanded record.
>From memory, I think we acknowledge the RFC limit but we actually dive to 20 due to the significant real-world issue a limit of 10 causes. -- Kevin A. McGrail Member, Apache Software Foundation Chair Emeritus Apache SpamAssassin Project https://www.linkedin.com/in/kmcgrail - 703.798.0171