dkim PROTOCOLHost: DigitalOcean DNSStandard: RFC 6376
How to Configure DomainKeys Identified Mail (DKIM) on DigitalOcean DNS
Cryptographically signs outbound emails using public/private key pairs to prove message integrity and authenticate sender domain. Follow this verified implementation guide to deploy standard compliant DKIM DNS records in DigitalOcean DNS.
Default DKIM Record Syntax
// Authoritative RFC Example
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQ...Configuration Steps in DigitalOcean DNS
- 1Log into the DigitalOcean Control Panel.
- 2Go to "Networking" -> "Domains" and click your domain name.
- 3Locate the dangling record under "DNS Records".
- 4Click "More" (...) on the right side of the row.
- 5Select "Delete" and confirm.
Verification Checklist (RFC 6376)
Query the DNS selector TXT/CNAME record at <selector>._domainkey.yourdomain.com.
Validate key length (minimum 2048-bit RSA recommended, 1024-bit deprecated).
Confirm public key matching against outbound SMTP signature headers.
Ensure CNAME delegation targets an active, valid ESP key repository.
Live Validation Engine
Run Free DNS ValidatorValidate Your DigitalOcean DNS DKIM Record
Verify propagation, check syntax formatting, and audit recursive lookups in 60 seconds with SubDomainWatch.