Amazon SES Easy DKIM
Fix Amazon SES DKIM verification pending
SES Easy DKIM verification needs all three exact CNAME owner and target pairs from the selected identity and Region. Check the complete published set before waiting on the SES console or changing a sender identity.
Amazon SES keeps the identity in a pending DKIM state:
DKIM verification status: Pending
Check all three SES DKIM CNAME records
What to enter
- The selected SES Region.
- All three exact Easy DKIM CNAME owner/target pairs shown for the identity.
- The domain that owns those selectors.
What the check confirms
- Match: the public CNAME has the provider-issued target.
- Mismatch or absent: at least one required public DNS member differs or cannot be found.
- Bounded result: public DNS is compared only with the values you supply. The checker never guesses an SES target or claims that the SES console has refreshed.
After all three records match, allow DNS and SES verification time, then review the identity status in the same Region. Reference: Amazon SES Easy DKIM.