What is DKIM? DomainKeys Identified Mail explained
DKIM (DomainKeys Identified Mail) adds a digital signature to each email so the receiver can check that it was sent by the domain and not changed on the way.
The sending server signs each message with a private key and adds the signature in a DKIM-Signature header. The matching public key is published in DNS, at a name made of a selector and the domain, such as s1._domainkey.example.com.
The receiving server fetches that public key and checks the signature. If the message was altered, or the signature does not match, DKIM fails.
Each sending service you use (your email platform, your CRM, your help desk) needs its own DKIM setup, usually by adding the records it gives you to your DNS.
With Easy Email Verification
DKIM works together with SPF and DMARC. DMARC Monitor reports show which of your sending sources pass DKIM.
Check an address for freeClean a whole list
Related
- SPF (Sender Policy Framework): SPF (Sender Policy Framework) is a DNS record that lists which servers are allowed to send email for a domain.
- DMARC: DMARC (Domain-based Message Authentication, Reporting and Conformance) is a DNS policy that tells receivers what to do with email that fails authentication for your domain, and asks them to send you reports.
- Sender reputation: Sender reputation is how trustworthy mailbox providers consider your sending domain and IP address, based on how your past email was received.
- All glossary terms