DKIM verification faIling for a custom Icloud+ domains.

There is seems a problems with populating public domain key for DKIM verification for newly added domains..

Because of this, emails sent from custom domain at recipient side goes into spam box with a reason DKIM verification failed..


So, I following instructions provided by apple about DNS records needed for setup new domain:


Type

CNAME

Host

sig1._domainkey

Value

sig1.dkim.kawbo.com.at.icloudmailadmin.com.


For verification or correctness and that DNS updated I do:


[12:24 spyl@mutty/Users/spyl] dig sig1._domainkey.kawbo.com CNAME

....

;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1

;; ANSWER SECTION:

sig1._domainkey.kawbo.com. 600 IN CNAME dkim.kawbo.com.at.icloudmailadmin.com.

....


Then I trying to query it from exactly dkim.kawbo.com.at.icloudmailadmin.com.


[12:24 spyl@mutty/Users/spyl] dig sig1.dkim.kawbo.com.at.icloudmailadmin.com TXT

;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1


And it's empty.


The problem persists for both of my domains.




[Edited by Moderator]

MacBook Pro 14″, macOS 12.4

Posted on May 23, 2024 10:30 PM

Reply
Question marked as Top-ranking reply

Posted on May 31, 2024 01:43 AM

Hi everyone. Finally today, Apple published the DKIM public key for my domain on their servers and DKIM validation is working properly on my new domain.


So, problem solved!

Similar questions

8 replies

May 27, 2024 04:43 AM in response to spyl

I have the same problem if I try to verify my icloud DKIM using dig or nslookup.


My DKIM record looks OK if I using these DKIM verification tools:


Having said that, DKIM does not work with my icloud account unless I set my "From" address to my icloud.com address. That is, DKIM does not work for custom domains.

May 30, 2024 03:37 AM in response to spyl

I have the same problem with a domain that was registered at iCloud Custom Domains less than 15 days ago. The older 2 domains I have work fine with DKIM validation and DKIM keys published correctly; on the new domain, the public DKIM key is not published on Apple servers and consequently DKIM validation fails.


I have opened a support ticket with Apple Support without much success at the moment (they are driving me crazy looking at stuff on my iPhone when the problem is clearly the publishing of the DKIM public key on Apple's servers). I also sent an email to icloudadmin@apple.com as discussed here.


I hope they fix it soon!


This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

DKIM verification faIling for a custom Icloud+ domains.

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.