More Info:

The DomainKeys Identified Mail (DKIM) be verified in your SES configuration.

Risk Level

High

Address

Security

Compliance Standards

CBP

Triage and Remediation

Remediation

To remediate the misconfiguration of DKIM not being verified in AWS SES using the AWS console, follow these steps:

  1. Sign in to the AWS Management Console:

  2. Navigate to the Identity Management section:

    • In the AWS SES console, on the left-hand side, click on “Identity Management” and then click on “Email addresses”.
  3. Select the domain for which DKIM needs to be verified:

    • Click on the domain for which you want to verify DKIM.
  4. Verify DKIM for the selected domain:

    • Under the “Domain details” section, find the “Domain authentication” tab.
    • Click on the “Verify a new DKIM” button.
    • You will be provided with a set of CNAME records that you need to add to your domain’s DNS settings.
  5. Add DKIM CNAME records to your DNS settings:

    • Login to your domain registrar or DNS hosting provider where your domain is hosted.
    • Add the CNAME records provided by AWS SES to your DNS settings.
    • It may take some time for the DNS changes to propagate.
  6. Verify DKIM after adding CNAME records:

    • Go back to the AWS SES console.
    • Click on the “Verify this record set” button to confirm that the CNAME records have been added correctly.
    • Once verified, the DKIM status for your domain should show as “Verified”.
  7. Monitor DKIM status:

    • Regularly check the DKIM status in the AWS SES console to ensure that it remains verified.
    • If there are any issues, follow the instructions provided in the console to troubleshoot and resolve them.

By following these steps, you can remediate the misconfiguration of DKIM not being verified in AWS SES using the AWS console.

Additional Reading: