Email Relay Issue.

Sanjay Bhakuni - admin 145 Reputation points
2024-09-05T17:25:12.5933333+00:00

We are using Option 3: Configure a connector to send emails using Microsoft 365 or Office 365 (SMTP relay) using Configure a TLS certificate-based connector to relay email through Microsoft 365 or Office 365https://learn.microsoft.com/en-us/exchange/mail-flow-best-practices/how-to-set-up-a-multifunction-device-or-application-to-send-email-using-microsoft-365-or-office-365

I want to know if we have to add the sending IP of on premises or application in SPF record of our domain to avoid having messages flagged as spam or do we have any other settings to bypass the spam filter for internal emails. Correct me if I am wrong, SPF is only required for email sending to external.

Exchange Online
Exchange Online
A Microsoft email and calendaring hosted service.
6,172 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Andy David - MVP 157.6K Reputation points MVP Volunteer Moderator
    2024-09-05T18:39:41.7466667+00:00

    Adding the IP to SPF should be enough as long as you also meet that criteria:

    Configure your setup only when you have fulfilled either of the following conditions:

    • Sender domain: Ensure that the sender domain belongs to your organization (that is, you've registered your domain in Microsoft 365). For more information, see Add a domain to Microsoft 365.
    • Certificate-based connector configuration: Ensure that your on-premises email server is configured to use a certificate to send email to Microsoft 365, and the Common-Name (CN) or Subject Alternate Name (SAN) in the certificate contains a domain name that you have registered in Microsoft 365, and you have created a certificate-based connector in Microsoft 365 that has that domain.

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.