DNS records against email spoofing

A domain that doesn't receive or send emails can be used in email spoofing attacks. Domain owners should set a couple of TXT records to configure email authentication:

NameContent
example.comv=spf1 -all
*._domainkey.example.comv=DKIM1; p=
_dmarc.example.comv=DMARC1; p=reject; sp=reject; adkim=s; aspf=s

Spotted on "How to protect domains that do not send email" by Cloudflare.