Skip to main content
nagarajs_FTNT
Staff
Staff
March 2, 2026

Technical Tip: Use cases for matching mail policies by Envelope From or Header From

  • March 2, 2026
  • 0 replies
  • 138 views
Description This article describes use cases for the configuration of the recipient policy sender option to match emails based on either the Envelope From or Header From address.
Scope FortiMail v7.6.4 and above.
Solution

By default, recipient policies use the Envelope From as the sender for policy matching. To modify the option, refer to Controlling email based on sender and recipient addresses.

 

Use cases:

The envelope-or-header-from option is especially helpful when using third-party email services such as Amazon SES, SendGrid, or Mailchimp, where the Envelope From address may differ from the Header From displayed to recipients. Matching recipient policies against the Header From ensures the policy applies based on the sender visible to users.

 

The following is an example policy showing the envelope-or-header-from option enabled:

The sender email addresses with [H] represent the header-from address.

 

policy.JPG

 

POlicy_2.JPG

 

Note: This option is available only with the Advanced Management license and can be enabled using the following CLI command:

config system advanced-management

    set recipient-policy-sender-option {envelope-from-only | envelope-or-header-from}

end

By default, the recipient policy uses Envelope From as the sender. When envelope-or-header-from is configured, it allows selection of either Envelope From or Header From as the sender for matching the recipient policy.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!