homestead_faq's profileBrand User

677 Messages

 • 

44.6K Points

Wednesday, August 29th, 2018

DKIM Record

DKIM Record

You may receive a bounceback when sending emails to domains with a *.mil and/or *.gov domain. To resolve this, you need to add a DKIM record.
Homestead doesn't support DKIM records, so you will need to use a system like Cloudflare.  
The DKIM record can be added as a CNAME. 



To add this record:

  1.  Add a CNAME in the Cloudflare DNS tab like this:



     name: dkim._domainkey
     points to: cur.dkim.v.eigmail.net
    Turn the cloud to DNS Only (grey)
    Click Add Record


  2. Go to https://mxtoolbox.com/DMARCRecordGenerator.aspx , put in your domain name, and click "Check DMARC Record". You will see a page with this information:


    Set the options to 

    1)None
    2)Personal Choice
    3)Personal choice
    4)No

    For Personal Choice, you can choose to put your own email or not.

    1) Do not enter your own email address and you may not realize if there is an issue or not as you chose not to be notified. 

    2) Enter your address and you could get a ton of emails, especially if your mail is compromised or spoofed.


  3. Click Finalize Record at the bottom. This will generate a new suggested TXT record that will need to be added to your domain's DNS as a TXT record. That will look similar to this:



    Save the Hostname and Value generated under Suggested Record

  4. Go into the Cloudflare account, under the DNS tab and add a TXT record.

    Enter the Hostname where is says "Name"
    Enter the Value where it says "Click to configure"
    Click Add Record.





You will need to wait up to 24-48 hours for propagation.

Oldest First
Selected Oldest First

2 Messages

 • 

70 Points

3 months ago

Does Cloudflare only handle the dkim/dmarc records, or are we talking about a domain name transfer here?

I'm kind of assuming it's the latter - would we unlock the domain and initiate a transfer to Cloudflare as a pre-requisite to the steps listed here?

2 Messages

 • 

70 Points

This was a really helpful reference for me: https://community.homestead.com/conversations/sitebuilder-plus/can-i-secure-my-homestead-website-with-https/5f2a9b1658180958845a60de

To summarize, Homestead remains the registrar (no domain transfer needed), but you point the nameservers to Cloudflare (Domains > Edit your nameservers), and Cloudflare handles all the DNS stuff.

So, you'd copy the records you see under Domains > Advanced DNS Editing over to Cloudflare (it'll have an option to scan for existing records so this part should be easy and automated), then add the dmarc/dkim records.