DKIM guides
DomainKeys Identified Mail — a DNS-based signing mechanism that proves email came from your domain. See the glossary entry →
9 guides touch on dkim.
- Adding a new domain to Microsoft 365 without email downtime
How to add an email domain to Microsoft 365 without downtime: verification, accepted-domain type, SPF, DKIM, DMARC before MX, and the mail-flow traps.
- BIMI and brand indicators in email
BIMI shows your brand logo next to email from your domain in supported clients. Here's the setup and the prerequisites.
- DMARC rollout from p=none to p=reject
How to roll out DMARC enforcement progressively — the journey from monitoring to enforced anti-spoofing.
- Exchange Online mail flow and connectors
How mail moves into and out of Exchange Online — connectors, transport rules, and hybrid routing.
- Exchange Online Protection transport pipeline
How email flows through EOP — connection filtering, content filtering, transport rules, and the deliverability checks.
- How to set up DKIM for a custom domain in Microsoft 365
How to set up DKIM signing for a custom domain in Microsoft 365: the two CNAME records, enabling it in Defender, key rotation, and checking headers.
- Microsoft 365 domains and DNS setup
The DNS records every Microsoft 365 tenant needs — and what each one does.
- Setting up Microsoft 365 from scratch
The setup order for a brand-new Microsoft 365 tenant — tenant, domain, identity, security baseline, then data and clients. Sequence matters more than speed.
- What is Exchange Online?
What Exchange Online is: Microsoft 365's cloud email and calendaring, how it fits the platform, the security and compliance layers, and running it well.