Microsoft Technical Bulletins

The latest updates for all the Microsoft Products you use every day.

Written by QuixTec LLC

My goal is to help your business by integrating processes that automate mundane tasks and simplify complex ones without breaking budgets.

Categories: Exchange Online

December 17, 2021

Blog Home

(Updated) Simplified DKIM configuration for email protection

From Microsoft Corporation
Technical Bulletin MC291056 · Published Oct 12, 2021 · Last updated Oct 19, 2021

Message Summary

Updated October 19, 2021: We have updated the content below with additional details. Thank you for your patience.

Domain Keys identified mail (DKIM) is part of email authentication mechanism which ensures the email is not modified during transit and can be used to validate the visible sender (FROM address) as part of the DMARC standard. By correctly configuring authentication through DKIM you can ensure better email deliverability and protect your domain from being spoofed.

As part of Microsoft’s continuous effort to help organizations configure email authentication, we reduced the complexity involved in configuring DKIM to set of simple steps.

When this will happen:

The feature is live, and you can visit the DKIM configuration page or to enable DKIM for your custom accepted domains, DKIM is already setup for the default domain automatically. Further details can be found in this document 

How this will affect your organization:

If DKIM is already enabled for your custom domains, there is nothing you need to do.

By default, Microsoft signs all messages with DKIM for all outgoing email from your tenant. When no DKIM setting is available for a custom sending domain the default domain is used to sign the message. This updates makes it easier for you to change this configuration so that the DKIM signing domain is based on the custom domain enabling better email authentication. You can enable DKIM by following simple steps mentioned here 

Once enabled, any outgoing email your tenant will automatically be DKIM signed using your custom domain.

What you need to do to prepare:

It is recommended that DKIM is configured for all mail sending domains. To configure DKIM for a domain, the domain needs to be part of accepted domains of your tenant. All the accepted domains of your tenant will automatically appear on DKIM page, if you wish add additional domains to your tenants follow the steps mentioned here

More details on additional Advanced Security features provide as part of Microsoft Defender for office can be found here.


QuixTec provides this and other technical bulletins ‘unaltered’ from Microsoft. As an authorized Microsoft Partner, we ensure that all our solutions we deliver to you include the latest Microsoft updates.

ABOUT US: QuixTec, LLC is a U.S. certified Veteran Owned, modern DevOps organization and Microsoft Partner that specializes in Microsoft SharePoint, Office 365 expertise & HTML5 technologies for small to enterprise-sized organizations. The founder, Richard, has 30 years of experience working with several notable companies that include World Vision, Expedia, Microsoft, Levi Strauss, NASA, Boeing Aerospace, Los Alamos National Laboratory, and the U.S. Air Force, to name a few.  QuixTec is in the Seattle area. Phone today for a free consultation and project estimate:

(425) 367-9025


SharePoint Development ServicesSharePoint DevelopmentCustom Software DevelopmentMicrosoft 365 ExpertsMicrosoft 365IT Staffing ServicesIT StaffingWordPress Development Services

You May Also Like…

(Updated) Bookings with me in Outlook

(Updated) Bookings with me in Outlook

Exchange Online, Bookings, Microsoft 365 Experts From Microsoft CorporationTechnical Bulletin MC375740 · Published May 4, 2022 · Last updated May 24, 2022 Message Summary Updated May 24, 2022: We have updated the post for clarity. Thank...