{"id":2847,"date":"2021-04-27T08:07:44","date_gmt":"2021-04-27T08:07:44","guid":{"rendered":"https:\/\/prodmarc.com\/knowledge\/?p=373"},"modified":"2023-01-31T07:37:16","modified_gmt":"2023-01-31T07:37:16","slug":"enable-dkim-signing-in-o365-2","status":"publish","type":"post","link":"https:\/\/knowledge.progist.net\/index.php\/2021\/04\/27\/enable-dkim-signing-in-o365-2\/","title":{"rendered":"Enable DKIM signing for your custom domain in Microsoft Office 365 exchange online"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"2847\" class=\"elementor elementor-2847\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-413df471 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"413df471\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-144305c4\" data-id=\"144305c4\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-1df1214d elementor-widget elementor-widget-text-editor\" data-id=\"1df1214d\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><\/p>\n<p>Please follow the below two steps to configure DKIM for the office 365 cloud (recommended values by Microsoft)<\/p>\n<ul>\n<li>Publish two CNAME records for your custom domain in DNS<\/li>\n<li>Enable DKIM signing for your custom domain in Office 365<\/li>\n<\/ul>\n<p><strong><u>Publish two CNAME records for your custom domain in DNS<\/u><\/strong><\/p>\n<p>For each domain for which you want to add a DKIM signature in DNS, you need to publish two\u00a0<em>CNAME<\/em>\u00a0records. A CNAME record is used by DNS to specify that the\u00a0<em>canonical name<\/em>\u00a0of a domain is an alias for another domain name.<\/p>\n<p><strong>CNAME record Name\u00a0 \u00a0 \u00a0:\u00a0 \u00a0 \u00a0 \u00a0 <\/strong>selector1._domainkey.&lt;domain&gt;<\/p>\n<p><span style=\"background-color: transparent; color: var( --e-global-color-text ); font-size: 1em; font-weight: 400;\"><strong>Record value\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0:<\/strong>\u00a0 \u00a0 \u00a0 \u00a0selector1-&lt;domainGUID&gt;._domainkey.&lt;initialDomain&gt;<\/span><\/p>\n<p><span style=\"color: var( --e-global-color-text ); font-weight: 400; background-color: transparent; font-size: 1em;\"><strong>TTL\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 :<\/strong>\u00a0 \u00a0 \u00a0 \u00a03600<\/span><\/p>\n<p><span style=\"color: var( --e-global-color-text ); font-weight: 400; background-color: transparent; font-size: 1em;\">\u00a0<\/span><\/p>\n<p>\u00a0<\/p>\n<p><strong>CNAME record Name<\/strong><span style=\"color: #363636; font-weight: bold; font-style: normal;\">\u00a0 \u00a0 \u00a0:\u00a0 \u00a0 \u00a0 \u00a0\u00a0<\/span>selector2._domainkey.&lt;domain&gt;<\/p>\n<p><strong>Record value<\/strong><span style=\"color: #363636; font-weight: bold; font-style: normal;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0:<\/span><span style=\"font-style: normal; font-weight: 400;\">\u00a0 \u00a0 \u00a0 \u00a0<\/span><span style=\"color: var( --e-global-color-text ); font-weight: 400; background-color: transparent; font-size: 1em;\">selector2-&lt;domainGUID&gt;._domainkey.&lt;initialDomain&gt;<\/span><\/p>\n<p><strong>TTL<\/strong><span style=\"background-color: transparent; font-size: 1em; color: #363636; font-weight: bold; font-style: normal;\">\u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 :<\/span><span style=\"color: var( --e-global-color-text ); font-weight: 400; background-color: transparent; font-size: 1em; font-style: normal;\">\u00a0 \u00a0 \u00a0 \u00a0<\/span><span style=\"background-color: transparent; color: var( --e-global-color-text ); font-size: 1em; font-weight: 400;\">3600<\/span><\/p>\n<p>\u00a0<\/p>\n<p><strong>domainGUID<\/strong> is the same as the domainGUID in the customized MX record for your custom domain that appears before mail.protection.outlook.com. For example, in the following MX record for the domain contoso.com, the domainGUID is contoso-com:<\/p>\n<p><strong>contoso.com. 3600 IN MX 5 contoso-com.mail.protection.outlook.com<\/strong><\/p>\n<p><strong>initialDomain<\/strong> is the domain that you used when you signed up for Microsoft 365. Initial domains always end in onmicrosoft.com.<\/p>\n<p>\u00a0<\/p>\n<p><strong><u>Enable DKIM signing for your custom domain in Office 365<\/u><\/strong><\/p>\n<p>Please follow the below steps to enable DKIM signing for your custom domain through the Office 365 admin center.<\/p>\n<ol>\n<li style=\"-webkit-font-smoothing: antialiased; margin-left: 8px; font-style: inherit; font-weight: inherit;\"><span style=\"-webkit-font-smoothing: antialiased; font-size: 11pt;\">Go to\u00a0<strong><a style=\"-webkit-font-smoothing: antialiased; background-color: transparent; outline-style: none; color: #5b5fc7;\" tabindex=\"-1\" title=\"https:\/\/security.microsoft.com\/\" href=\"https:\/\/security.microsoft.com\/\" target=\"_blank\" rel=\"noopener noreferrer\" aria-label=\"Link https:\/\/security.microsoft.com\/\">https:\/\/security.microsoft.com\/<\/a><\/strong><\/span><\/li>\n<li style=\"-webkit-font-smoothing: antialiased; margin-left: 8px; font-style: inherit; font-weight: inherit;\"><span style=\"-webkit-font-smoothing: antialiased; font-size: 11pt;\">Click on <strong>Policies and rules<\/strong><\/span><\/li>\n<li style=\"-webkit-font-smoothing: antialiased; margin-left: 8px; font-style: inherit; font-weight: inherit;\"><span style=\"-webkit-font-smoothing: antialiased; font-size: 11pt;\">Go to <strong>Threat policy<\/strong> <strong>&gt;&gt;<\/strong> <strong>DKIM<\/strong><\/span><\/li>\n<li style=\"-webkit-font-smoothing: antialiased; margin-left: 8px; font-style: inherit; font-weight: inherit;\"><span style=\"-webkit-font-smoothing: antialiased; font-size: 11pt;\"><strong>Select domain<\/strong> for which you want to enable the DKIM signing<\/span><\/li>\n<li style=\"-webkit-font-smoothing: antialiased; margin-left: 8px; font-style: inherit; font-weight: inherit;\"><span style=\"-webkit-font-smoothing: antialiased; font-size: 11pt;\">Select <strong>create DKIM key<\/strong><\/span><\/li>\n<li style=\"-webkit-font-smoothing: antialiased; margin-left: 8px; font-style: inherit; font-weight: inherit;\"><span style=\"-webkit-font-smoothing: antialiased; font-size: 11pt;\">Publish the 2 DNS records (CNAME records) given by Microsoft team in DNS. After verifying DNS records, <strong>enable the DKIM signing.<\/strong><\/span><\/li>\n<\/ol>\n<p><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>Please follow the below two steps to configure DKIM for the office 365 cloud (recommended values by Microsoft) Publish two CNAME records for your custom domain in DNS Enable DKIM<\/p>\n<p><a href=\"https:\/\/knowledge.progist.net\/index.php\/2021\/04\/27\/enable-dkim-signing-in-o365-2\/\" class=\"more-link\">Continue Reading<span class=\"screen-reader-text\">Enable DKIM signing for your custom domain in Microsoft Office 365 exchange online<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_eb_attr":"","om_disable_all_campaigns":false,"footnotes":""},"categories":[6],"tags":[39,53,56,69,70,93,98],"class_list":["post-2847","post","type-post","status-publish","format-standard","hentry","category-dkim","tag-dkim","tag-dkim-signing-in-o365-exchange-online","tag-dmarc","tag-enable-dkim-for-domain","tag-enable-dkim-signing","tag-microsoft-office-365","tag-o365"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/posts\/2847","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/comments?post=2847"}],"version-history":[{"count":1,"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/posts\/2847\/revisions"}],"predecessor-version":[{"id":3018,"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/posts\/2847\/revisions\/3018"}],"wp:attachment":[{"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/media?parent=2847"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/categories?post=2847"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/knowledge.progist.net\/index.php\/wp-json\/wp\/v2\/tags?post=2847"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}