DomainKeys Identified Mail (DKIM) is an email authentication standard that allows the sender (in this case, Google Workspace) to demonstrate that the messages sent are genuine and have not been altered in transit. By setting up DKIM, you help protect your company's emails from spoofing, phishing and other malicious techniques.
Here's a basic guide on how to set up DKIM records for Google Workspace:
- Sign in to the Google Workspace Admin ConsoleGo to the Google Workspace Admin Console (admin.google.com) and log in with your administrator account.
- Navigate to Gmail settingsIn the left-hand side panel, click on "Applications" and then select "Gmail".
- Email authenticationScroll down to the "Email authentication" section and click on "Configure email authentication".
- Activate DKIMSelect the "Activate DKIM" option and click on the "Generate new registration" button. Choose the selector prefix (usually "google") and follow the instructions.
- Create the DKIM record in your DNSGoogle will provide you with a record name (which includes the prefix of your chosen selector) and a record value. You will need to add this TXT record to your domain's DNS configuration. The record value will be something like "v=DKIM1; k=rsa; p=MIGfMA0G... (rest of key)". To do this, go to the control panel of your domain provider (where you registered your domain) and look for the section for adding or managing DNS records. Create a new TXT record, enter the name and value provided by Google Workspace.
- Check the configurationAfter adding the DKIM record to the DNS, it can take some time (sometimes up to 48 hours) for it to propagate completely. Go back to the Admin Console and check the configuration. When everything is correct, the DKIM status will change to "Active".
- FinishOnce DKIM is active, messages sent via Gmail will include a digital signature that verifies their origin and integrity.






