You are here:
Set Up and Authenticate a Sending Domain
Set up and verify your sending domains in Unified Messaging to authenticate that emails originate from your organization and not from Salesforce itself.
| Available in: Lightning Experience |
| Available in: Salesforce Enterprise and Unlimited Editions for Service Cloud AND Enterprise and Unlimited Editions with Marketing Cloud Next Growth and Advanced Editions |
| Not supported in Government Cloud Plus |
Before configuring an authenticated domain, make sure that:
- You have administrative access to your organization’s DNS provider or domain registrar.
- You coordinate with your IT or network team to make DNS changes.
- You understand that DNS updates can take up to 48 hours to propagate. To verify the propagation status for DNS records, you can use a third-party DNS checker.
To set up and authenticate a sending domain:
- From Setup, in the Quick Find box, enter Authenticated Domains, and then select Authenticated Domains.
- Click Add Domain.
- Review the prerequisites and click Continue.
-
Enter your sending subdomain (for example,
marketing.yourcompany.com) and click Submit. - Unified Messaging generates the required DNS entries for your domain, including CNAME and DKIM records.
- Copy these DNS entries and add them to your DNS provider’s console.
- After you add all the records, click Verify Domain.
After Salesforce verifies your domain, the status changes to Active, and the domain is ready for use.

