Email Security

DKIM Adds A Digital Signature To Domain Email

DKIM helps receiving mail services check that a message is genuinely associated with your domain and has not been quietly changed in transit.

Plain English

What DKIM Means

DKIM stands for DomainKeys Identified Mail. It works like a digital signature added to outgoing email.

When a message is sent, the mail server signs parts of it using a private key. The receiving mail service can then use a public key in DNS to check that signature. If the signature is valid, the receiver has more confidence that the message was authorised by the sending domain and was not altered after it was signed.

For business email, DKIM is important because domain identity matters. Customers, suppliers and staff need confidence that the messages they receive have not been forged or tampered with.

DKIM email authentication signature check

Why It Matters

Why DKIM Helps Trusted Sending

DKIM gives receiving mail services another way to judge whether a message is legitimate.

Signs Outgoing Mail

DKIM attaches a domain-level signature that receiving services can verify through DNS.

Checks Message Integrity

If signed parts of a message are changed after sending, the DKIM check can fail.

Supports DMARC

DMARC can use DKIM alignment to decide whether a message should be trusted.