InboxAudit

OVHcloud Email email authentication

OVH’s hosted mail, common on European domains.

SPF record

Add OVHcloud Email to your domain's SPF record with this include:

include:mx.ovh.com

A complete record for a domain sending only through OVHcloud Email:

v=spf1 include:mx.ovh.com ~all

What it costs you

3 of your 10 DNS lookups. The include: itself costs one, and OVHcloud Email's record chains to 2 more. Behind it are 2 IP ranges.

Live record

This is what mx.ovh.com published when this page was generated:

v=spf1 ptr:mail-out.ovh.net ptr:mail.ovh.net ip4:8.33.137.105/32 ip4:192.99.77.81/32 ?all

DKIM

Enable DKIM inside OVHcloud Email and publish the selector record it generates. DKIM matters more than SPF for deliverability, because a DKIM signature survives forwarding while SPF does not — see how selectors work.

DMARC

Neither SPF nor DKIM protects the address your recipients actually see until DMARC ties them to it. Once OVHcloud Email is authenticating, publish a DMARC record — start at p=none with a reporting address and tighten from there.

Generate a DMARC record →

Check it worked

DNS changes take minutes to hours to propagate. Once published, run the domain through the checker — it resolves the full include chain and reports the real lookup count.

Official documentation

OVHcloud Email setup docs →