Name Servers
static.microsoft. 1200 IN NS ns1-34.azure-dns.com. static.microsoft. 1200 IN NS ns2-34.azure-dns.net. static.microsoft. 1200 IN NS ns3-34.azure-dns.org. static.microsoft. 1200 IN NS ns4-34.azure-dns.info.
SOA Details
static.microsoft. 1200 IN SOA ns1-34.azure-dns.com. azuredns-hostmaster.microsoft.com. 1 3600 300 2419200 300
Certificate Authority Authorization
static.microsoft. 1200 IN CAA 0 contactemail "[email protected]" static.microsoft. 1200 IN CAA 0 iodef "mailto:[email protected]" static.microsoft. 1200 IN CAA 0 issue "digicert.com" static.microsoft. 1200 IN CAA 0 issue "microsoft.com"
DMARC
Organizational policy (p): how receivers treat mail that fails aligned DMARC checks — none (monitor only), quarantine (often junk), or reject (block).
Subdomain policy (sp): when set, it applies to hostnames below this domain instead of p; if omitted, subdomains inherit the organizational policy.
pct: share of mail that gets quarantine/reject; 100 = all failing messages (default).
100Aggregate DMARC reports (ZIP/XML). Optional but recommended for visibility.
Forensic (per-failure) reports. Often omitted for privacy or volume.
static.microsoft. 1200 IN DMARC v=DMARC1; p=reject; sp=reject; pct=100; aspf=s; adkim=s; rua=mailto:[email protected]; ruf=mailto:[email protected];
DKIM
No DKIM TXT with `v=DKIM1` was returned for the selector names we probe automatically.
SPF (Sender Policy Framework)
| Qualifier | Mechanism | Target / value | Valid | Details |
|---|---|---|---|---|
| - Fail | all |
—
|
|
static.microsoft. 1200 IN TXT "v=spf1 -all"
MTA-STS
This hostname does not publish an MTA-STS policy (no v=STSv1 TXT at _mta-sts.<name> and/or no policy at https://mta-sts.<name>/.well-known/mta-sts.txt).
DNSSEC Public Keys
static.microsoft. 1200 IN DNSKEY 257 3 13 sh8yFJ3Ce8YTTFz60EQiUyrBrRKVL1h3aFz/vJXWjxdovgsXdTDpIcDYVJx0tPQSRdTyCm1DVE3HduwxYyhRYA== static.microsoft. 1200 IN DNSKEY 256 3 13 LKFrQVoMjkW0+ZWEse94PY/yPIr/WWbbO4AQ0tjPPFoHooyMK686Q94+uUnRhNlUXMEsOfGSsxLjslfl/J+/pw==
Delegation Signer
static.microsoft. 1200 IN DS 26929 13 2 B9DC40B1FC33E29F9DCEEB9276AF05A3243D1CF1A328176A8D60934B72AE9DF2
DNSSEC Next Secure
static.microsoft. 300 IN NSEC .static.microsoft ["DNSKEY", "NSEC", "RRSIG", "TXT", "SOA", "NS", "CAA"]