Tools

550 5.7.133 RESOLVER.RST.SenderNotAuthenticatedForGroup

Provider: Microsoft 365 / Outlook

Sample bounce line

Remote Server returned '550 5.7.133 RESOLVER.RST.SenderNotAuthenticatedForGroup; authentication required; Delivery restriction check failed because the sender was not authenticated when sending to this group'

What it means

The recipient is a group that only accepts mail from authenticated senders, and the sender was not authenticated. Microsoft's NDR table describes it as a group distribution list set up to reject messages from outside its organization.

Why it happens

How to fix it

  1. Only the group owner or an email admin in the recipient's organization can fix this.
  2. Method 1: in the Exchange admin center (Recipients > Groups > group > Settings > Edit delivery management), choose 'Allow messages from people inside and outside my organization' and save.
  3. Method 2: choose the same option and add the specific senders under 'Specified senders'. External senders must first exist as a mail contact or mail user.
  4. Hybrid senders: check the X-MS-Exchange-Organization-AuthAs header. If 'anonymous', verify the 'Outbound to Office 365' Send connector, that the group's address space is listed, the TLSCertificateName setting, and the inbound connector's CloudServicesMailEnabled and TLSSenderCertificateName settings.

Check your domain now

Many of these errors come from missing or broken SPF, DKIM, DMARC or reverse DNS records. Enter your domain to run the free check.

Check your domain now

Related errors

No related errors listed yet.

Official documentation

Paste another bounce message · All errors