ActiScan
← Email Authentication Fundamentals

Final quiz

12 questions, 80% to pass. Your name and email are only used to issue your certificate – no password, no account.

1. What is the "envelope sender" (MAIL FROM) checked by SPF?
2. Why can a message show a spoofed header From: address with no authentication in place?
3. In the SPF record `v=spf1 include:_spf.google.com ~all`, what does `~all` mean?
4. What is the SPF DNS lookup limit defined by RFC 7208, and why does it matter?
5. What does SPF NOT validate?
6. In a DKIM signature, what does the `d=` tag identify?
7. Where is a DKIM public key published?
8. What does DMARC alignment actually require?
9. Why is a DMARC record published at `p=none` not real protection?
10. In a DMARC aggregate report row, what does `<disposition>none</disposition>` combined with `<spf>fail</spf>` most likely indicate?
11. What DMARC policy level does BIMI generally require before a logo can be displayed?
12. Why does BIMI require the logo to be published as SVG Tiny PS specifically?