RFC conformance

69 of 74 catalogued requirements — 93%.

The denominator is our reading of which normative statements apply to a verifier: something that inspects a domain's records and reports on them. It is not a percentage of an RFC's text, which is not a computable number — most of RFC 7208 instructs senders and receiving MTAs, and none of that is ours to implement. Requirements that do not apply are listed below with a reason and excluded from the denominator, so cataloguing more of what an MTA does cannot improve the figure.

Every requirement marked yes names a test that must exist and must assert it. The build fails otherwise, so the number is checkable rather than claimed.

What we do not do

The part of this page worth reading first.

RFC 1034

Domain names — concepts and facilities

4 / 4 implemented

RFC 1035

Domain names — implementation and specification

5 / 5 implemented

RFC 2181

Clarifications to the DNS specification

2 / 2 implemented

RFC 2308

Negative caching of DNS queries

2 / 2 implemented

RFC 4035

Protocol modifications for DNSSEC

0 / 1 implemented

RFC 4343

Domain name system case insensitivity clarification

1 / 1 implemented

RFC 5321

Simple Mail Transfer Protocol

1 / 1 implemented

RFC 6376

DomainKeys Identified Mail (DKIM) signatures

10 / 10 implemented · 2 not applicable

RFC 6891

Extension mechanisms for DNS (EDNS(0))

2 / 2 implemented

RFC 7208

Sender Policy Framework (SPF)

25 / 28 implemented · 2 not applicable

RFC 7489

Domain-based Message Authentication, Reporting and Conformance (DMARC)

8 / 8 implemented · 2 not applicable

RFC 7505

A null MX resource record

2 / 2 implemented

RFC 8463

Ed25519 signatures for DKIM

1 / 1 implemented

RFC 8659

DNS Certification Authority Authorization (CAA)

6 / 7 implemented · 1 not applicable