Set up DKIM for SendGrid
Settings → Sender Authentication
- Open Settings → Sender Authentication → Authenticate Your Domain in the SendGrid dashboard.
- Enter your sending domain and choose whether to use automated security (CNAME-based key management).
- Publish the s1._domainkey and s2._domainkey CNAME records SendGrid provides.
- Publish the return-path CNAME as well — SPF alignment depends on it.
- Click Verify. SendGrid checks the records and marks the domain authenticated.
Confirm it worked
DNS changes take time to propagate. Check the record once you have published it.