DKIM setup for G suite / Google Workspace

DKIM setup for G suite / Google Workspace

How to Set Up DKIM for Google Workspace

Setting up DKIM (DomainKeys Identified Mail) for Google Workspace helps ensure that your emails are authenticated and aligned with DMARC policies, improving email deliverability and protecting your domain from spoofing.


Steps to Set Up DKIM

  1. Sign in to Google Admin Console

    • Go to admin.google.com

    • Log in with a super administrator account.

  2. Navigate to Gmail Settings

    • Go to Apps → Google Workspace → Gmail.

  3. Authenticate Email

    • Click Authenticate email.

    • Select the domain for which you want to configure DKIM.

  4. Generate DKIM Key

    • Click Generate new record.

    • Configure the following options:

      • DKIM key bit length: 2048-bit (recommended)

      • Prefix selector: Use the default "google" or customize if needed

    • Click Generate.

  5. Add DKIM TXT Record to Your DNS

    • Type: TXT

    • Hostname: google._domainkey

    • Value: The DKIM public key provided by Google

  6. Wait for DNS Propagation

    • DNS changes can take 24–48 hours to propagate.

    • Once propagated, Google Admin will detect the record.

  7. Enable DKIM Signing

    • After propagation, click Start Authentication in the Admin console to enable DKIM signing for your domain.

  8. Verify DKIM

    • Send a test email to another email account.

    • Check the email headers to ensure DKIM=pass.