Relaying pointers. SPF pointers are kept for being backwards compatible.

Primary Configuration

For most of the domains, those rows should be used:

@ IN SPF "v=spf1 -all"
@ IN TXT "v=spf1 -all"

This SPF limits relaying to our local servers. The former "~all" has been changed to "-all" to prevent softfails. If the sender is not the specified hosts defined by, you can safely reject the mail completely.

For and hosts that needs external relays like telia, etc (country zone is se)

@ IN SPF "v=spf1 -all"
@ IN TXT "v=spf1 -all"

This list of relays includes ISP-servers that may be required for sending mail outside our SMTP address range.
If you really need other relays, contact and tell. In that case, relays will be included at or similar. 

Ranges described

Divided into inclusions IN TXT "v=spf1 -all";

or IN TXT "v=spf1 -all";

Categorized as

// Safe
_spfv4tblock IN TXT "v=spf1 ip4: ip4: ip4: ip4: ip4: ip4: ip4: -all"
_spfv6tblock IN TXT "v=spf1 ip6:2a01:299:a0::/48 ip6:2001:470:7ece::/48 -all"

// Safe IN TXT "v=spf1 ip4: ip6:2a01:298:f001::/48 -all"

// Unsafe IN TXT "v=spf1 ip4: ip4: -all"

// Deprecated unsafe
_spfblockteliaold IN TXT "v=spf1 ip4: ip4: ip4: -all"