Amazon message failing Sender-Alignment
Fortimail Cloud: Firmware version v7.2.4(GA-Maturity), build401, 2023.05.17
We are seeing Sender-Alignment failure for messages sent as
Header From: <hostname>@sns.amazonaws.com
From: amazonses.com
These messages are passing SPF and DKIM.
Obfuscated failure message from Fortimail console:
Sender Alignment: ( From value: Sender <username@sns.amazonaws.com>) does not align with authorization domain amazonses.com
Adding <hostname>@sns.amazonaws.com to 'Policy\Recipient Policy\Sender-Alignment-Safelist' fails to allow the messages to bypass Sender-Alignment check. I believe this is because the Sender-Alignment check is looking at the From address and not the Header From.
Excluding the amazonses.com sender is undesirable as it would allow any message from that mail domain to avoid Sender-Alignment check.
How can we bypass Sender-Alignment check on messages based on the Header From value of <hostname>@sns.amazonaws.com?
