Whitelisting based on Header From address (not From)
Frequently, legit emails will get caught in greylist or quarantine where the Header From address shows the actual organization (for example, no_reply@standard.com) but the From address is something like 01020199df60110e-adad6878-1234-4d5f-9b1c-1d93aa94033a-000000@eu-west-1.amazonses.com.
Typically, when an email gets quarantined due to 'Sender Alignment' I would add their email domain to a whitelist that is attached to one of my Recipient Policies that bypasses SPF Sender Alignment.
However when the sender uses a service such as amazonses or sendgrid, where the header-from and the header don't match, whitelisting won't work since I assume the whitelist is using from (vs header from).
How can I ensure these emails get delivered successfully without opening up all of Amazon SES or sendgrid?
Is there a way to create an exception list for trusted DKIM domains? Or can you advise on a better way to handle this? I don't see any other posts about this topic so I suspect maybe my spam filtering strategy is not ideal.
How are you successfully filtering incoming emails from legitimate companies that are using bulk messaging services such as Sendgrid and AmazonSES? These services have so many IPs that can change.
