---
title: "Advanced Authentication: DKIM"
description: DomainKeys Identified Mail (DKIM) is the name of the industry-standard authentication protocol that is used for signing email. In its simplest form, DKIM helps ensure the email received is the same as
---

[Skip to content](https://help.socketlabs.com/docs/advanced-authentication-dkim#main-content)

English

Show submenu for translations

[Contact us](https://help.socketlabs.com/docs/kb-tickets/new?hsLang=en)

[![SocketLabs logo](https://help.socketlabs.com/hs-fs/hubfs/Logos/SocketLabs%20logo.png?width=243&height=70&name=SocketLabs%20logo.png)](https://www.socketlabs.com/)

Open main navigation

Close main navigation

- English
  
  Show submenu for translations
- [Contact us](https://help.socketlabs.com/docs/kb-tickets/new)

 SocketLabs is here to help!

- There are no suggestions because the search field is empty.

1. [Help Center](https://help.socketlabs.com/docs?hsLang=en)
2. [DNS Authentication](https://help.socketlabs.com/docs/dns-authentication?hsLang=en)
3. [DKIM](https://help.socketlabs.com/docs/dns-authentication?hsLang=en#dkim)

# Advanced Authentication: DKIM

DomainKeys Identified Mail (DKIM) is the name of the industry-standard authentication protocol that is used for signing email. In its simplest form, DKIM helps ensure the email received is the same as the email that was sent by the sender. This is accomplished when the sending server leaves an encrypted signature on the message that is checked by the recipient server. The signature is generated and applied to outbound email during the sending process.

By creating and applying an aligned DKIM signature for each of your sending domains, you can significantly improve the trust of your messages in the eyes of mailbox providers.

The DKIM signature  will only be applied when the DKIM signature is an **exact match** to the From address.

### Within your SocketLabs account, we have three methods to achieve DKIM alignment: 

### Bring your own TXT record

Best for customers that want complete control over their keys and utilize multiple servers for sending on behalf of a domain(s).

The process of creating a DKIM signature via the "Bring your own TXT record" starts by creating a private and public DKIM key pair. You can accomplish this through our DKIM Generator. Then, you simply add the private key to your SocketLabs account and public key to your DNS.

**How to ["Bring your own TXT record"](https://help.socketlabs.com/docs/advanced-dkim-signing-feature?hsLang=en)**

### Generate a TXT record

Best for owning and maintaining control over your keys for a single server.

The process of creating a DKIM signature via the "Generate a TXT record" simplifies the TXT version by generating and populating your private key within your SocketLabs account and providing the public key for your DNS.

**How to** **"[Generate a TXT record](https://help.socketlabs.com/docs/advanced-dkim-signing-feature?hsLang=en)" **

### Use a CNAME record

Best for domains that have a single sending domain or those that send on behalf of a handful of others.  

The benefits of using this method of DKIM signing is that it allows SocketLabs to remain in control of both the private and public DKIM keys. This allows you to get the benefit of custom DKIM signatures without the hassle of managing DKIM keys yourself.

**[How to "Use a CNAME record"](https://help.socketlabs.com/docs/custom-dkim-signing-feature?hsLang=en)**

- [Fundamentals](https://help.socketlabs.com/docs/fundamentals?hsLang=en#main-content)

    - [StreamScore](https://help.socketlabs.com/docs/fundamentals?hsLang=en#streamscore)
    - [Reports](https://help.socketlabs.com/docs/fundamentals?hsLang=en#reports)
    - [Frequently Asked Questions](https://help.socketlabs.com/docs/fundamentals?hsLang=en#frequently-asked-questions)
- [Advanced](https://help.socketlabs.com/docs/advanced?hsLang=en#main-content)

    - [Security](https://help.socketlabs.com/docs/advanced?hsLang=en#security)
- [DNS Authentication](https://help.socketlabs.com/docs/dns-authentication?hsLang=en#main-content)

    - [DKIM](https://help.socketlabs.com/docs/dns-authentication?hsLang=en#dkim)
    - [SPF and Custom Bounce Domain](https://help.socketlabs.com/docs/dns-authentication?hsLang=en#spf-and-custom-bounce-domain)
- [Deliverability](https://help.socketlabs.com/docs/deliverability?hsLang=en)
- [For Developers](https://help.socketlabs.com/docs/for-developers?hsLang=en#main-content)

    - [Event Webhooks](https://help.socketlabs.com/docs/for-developers?hsLang=en#event-webhooks)
- [Integrations](https://help.socketlabs.com/docs/integrations?hsLang=en#main-content)

    - [Languages and Frameworks](https://help.socketlabs.com/docs/integrations?hsLang=en#languages-and-frameworks)
    - [Mail Servers](https://help.socketlabs.com/docs/integrations?hsLang=en#mail-servers)
    - [Web Clients and Plug-ins](https://help.socketlabs.com/docs/integrations?hsLang=en#web-clients-and-plug-ins)
    - [Mail Clients](https://help.socketlabs.com/docs/integrations?hsLang=en#mail-clients)
- [Marketing Tools](https://help.socketlabs.com/docs/marketing-tools?hsLang=en#main-content)

    - [Tips and Tricks](https://help.socketlabs.com/docs/marketing-tools?hsLang=en#tips-and-tricks)
- [Troubleshooting](https://help.socketlabs.com/docs/troubleshooting?hsLang=en#main-content)

    - [SocketLabs Inbound SMTP Gateway Errors](https://help.socketlabs.com/docs/troubleshooting?hsLang=en#socketlabs-inbound-smtp-gateway-errors)
    - [SocketLabs Outbound SMTP Errors](https://help.socketlabs.com/docs/troubleshooting?hsLang=en#socketlabs-outbound-smtp-errors)
- [Spotlight Email Analytics](https://help.socketlabs.com/docs/spotlight-email-analytics?hsLang=en)
- [Hurricane MTA](https://help.socketlabs.com/docs/hurricane-mta?hsLang=en#main-content)

    - [Advanced Hurricane Usage](https://help.socketlabs.com/docs/hurricane-mta?hsLang=en#advanced-hurricane-usage)
    - [Upgrading Hurricane](https://help.socketlabs.com/docs/hurricane-mta?hsLang=en#upgrading-hurricane)
    - [Troubleshooting](https://help.socketlabs.com/docs/hurricane-mta?hsLang=en#troubleshooting)
    - [Hurricane Maintenance](https://help.socketlabs.com/docs/hurricane-mta?hsLang=en#hurricane-maintenance)
    - [Getting Started with Hurricane](https://help.socketlabs.com/docs/hurricane-mta?hsLang=en#getting-started-with-hurricane)
    - [Basic Hurricane Usage](https://help.socketlabs.com/docs/hurricane-mta?hsLang=en#basic-hurricane-usage)
- [Complex Sender](https://help.socketlabs.com/docs/complex-sender?hsLang=en)

[![Chill listening crop-3](https://help.socketlabs.com/hs-fs/hubfs/Logos/Logo_Favicon%20-%20large%20-%20cropped.png?width=24&height=24&name=Logo_Favicon%20-%20large%20-%20cropped.png "Chill listening crop-3")](https://www.socketlabs.com)

<https://www.facebook.com/socketlabs/> <https://twitter.com/socketlabs> <https://www.linkedin.com/company/socketlabs-inc./>

Copyright © 2026, SocketLabs LLC