Configuring DKIM signing for outbound messages

This topic describes how you configure DKIMClosedDomainKeys Identified Mail to provide trust against spoof email from your organization's domains.

To configure DKIM signing for outbound messages, you need to:

  1. Enable DKIM signing from the SpamLogic Settings page.
  2. Configure DKIM signing for each domain by providing public and private key pairs and DNS records from the Mail Domains and Routing page.

     

    The Gateway signs all messages sent from within a single domain using the same key. However, configuring a parent domain does not automatically configure sub domains. You must configure sub domains separately.

  3. Add DNS records to your organization's DNS.

To enable DKIM signing

  1. From the Policy Center Home page, click SpamLogic Settings and select the Spam Policy tab.
  2. In the DKIM signing on outbound messages panel, select the Enable DKIM signing on outbound messages check box. If you want to apply DKIM signing to messages such as out-of-office replies, which have empty message sender fields, enable If the message sender is empty, sign using the key for the domain of the From address. Click Save.
  3. If you want to configure public and private key pairs and DNS records, click Mail Domains and Routing.

    The Mail Domains and Routing page is displayed.

To configure public and private key pairs and DNS records

  1. From the System Center Home page, go to SMTP Settings and click Mail Domains and Routing.

    The Mail Domains and Routing page is displayed.

  2. In the Hosted Domains tab, select the domain(s) you want to configure for DKIM and click the Configure DKIM Signing option.

    The Configure DKIM Signing dialog is displayed.

     

    You can configure multiple domains at the same time by selecting all check boxes.

  3. To complete the Configure DKIM Signing dialog:

    Click Save.

  4. Click Export DKIM DNS Record and save the file to an appropriate location.

     

    The Gateway uses the value in the Selector field to define the name of the DKIM DNS Record file. For example: everyone._domainkey.clearswift.com

    You must add the created records to your organization's DNS.

See also...


© 1995–2018 Clearswift Ltd.