Dynu gives you full control over all the DNS configurations for your domain names.
You can log onto the control panel to manage your DNS records.
To add an SMIMEA record in the control panel, you may follow these 3 steps.
Step 2
Go to
DNS Records
to add an SMIMEA record. The screenshot below shows how to add an SMIMEA record for dynu.biz.
Node Name The SHA-256 hash of the local part of the email address, truncated to 28 octets(56 hexadecimal characters), followed by ._smimecert. For example, for bob@dynu.biz this is the hash of bob.
Type Choose "SMIMEA - S/MIME Certificate Association".
TTL How long the server should cache the information. The TTL is set in seconds, 60 is 1 minute, 1800 is 30 minutes.
Certificate Usage Specifies how the certificate should be verified. Common values are 0 (CA constraint), 1 (service certificate constraint), 2 (trust anchor), or 3 (domain-issued certificate).
Selector Specifies which part of the certificate is used. Use 0 for the full certificate or 1 for the public key only.
Matching Type Specifies how the certificate data is presented. Use 0 for the full data, 1 for a SHA-256 hash, or 2 for a SHA-512 hash.
Certificate Data The certificate or public key data in hexadecimal format, or its hash depending on the Matching Type selected.
Step 3
Check if your SMIMEA record has gone into effect using the DNS Lookup tool. Enter 0357513deb903a056e74a7e475247fc1ffe31d8be4c1d4a31f58dd47._smimecert.dynu.biz as Hostname, and choose "SMIMEA - S/MIME Certificate Association" as Type.
What is an SMIMEA record?
SMIMEA records, specified in RFC 8162, bind S/MIME certificates to email addresses via DNS. S/MIME is widely used in corporate environments to encrypt and digitally sign email. Publishing the associated certificate in DNS allows recipients to automatically discover and verify the sender's certificate without any out-of-band exchange.How to add an SMIMEA record?
To add an SMIMEA record in the control panel, you may follow these 3 steps.
Go to
Node Name The SHA-256 hash of the local part of the email address, truncated to 28 octets(56 hexadecimal characters), followed by ._smimecert. For example, for bob@dynu.biz this is the hash of bob.
Type Choose "SMIMEA - S/MIME Certificate Association".
TTL How long the server should cache the information. The TTL is set in seconds, 60 is 1 minute, 1800 is 30 minutes.
Certificate Usage Specifies how the certificate should be verified. Common values are 0 (CA constraint), 1 (service certificate constraint), 2 (trust anchor), or 3 (domain-issued certificate).
Selector Specifies which part of the certificate is used. Use 0 for the full certificate or 1 for the public key only.
Matching Type Specifies how the certificate data is presented. Use 0 for the full data, 1 for a SHA-256 hash, or 2 for a SHA-512 hash.
Certificate Data The certificate or public key data in hexadecimal format, or its hash depending on the Matching Type selected.
Check if your SMIMEA record has gone into effect using the DNS Lookup tool. Enter 0357513deb903a056e74a7e475247fc1ffe31d8be4c1d4a31f58dd47._smimecert.dynu.biz as Hostname, and choose "SMIMEA - S/MIME Certificate Association" as Type.
