We have recently migrated our users to Office 365, and we've had a growing interest in the new Office 365 groups not only in IT, but also among our users.
One issue that keeps cropping up though is the email function. Unless the setting to "Allow people outside the organization to email this group" is enabled, no one can send an email to the group. It doesn't matter if the group's domain is "domain.onmicrosoft.com"
or "domain.edu."
One receives the NDR: ****
The group only accepts messages from people in its organization or on its allowed senders list, and your email address isn't on the list.
Status code: 550 5.7.133
This error occurs when the distribution group, security group, or Office 365 group is configured to accept messages only from authenticated senders (senders in the same organization or those added to the group's allowed senders list).
To fix the issue, the recipient's email admin or the group owner must add the sender's email address to the group's allowed senders list or change the group's delivery management setting to accept messages from senders inside and outside of the organization.
Usually this issue can only be fixed by the recipient's email admin or the group owner.
For more information and steps to fix this error, see Fix email delivery issues for error code 5.7.133 in Office 365.
Error Details
Reported error: 550 5.7.133 RESOLVER.RST.SenderNotAuthenticatedForGroup; authentication required; Delivery restriction check failed because the sender was not authenticated when sending to this group
DSN generated by: CY1PR07MB2555.namprd07.prod.outlook.com
The groups default to the onmicrosoft address, but all of our users have that as a proxy address anyway. The DNS is configured correctly as well.
The only option I've read and the only one that seems to work is enabling the internal and external senders setting, but I would think that people within the group should be allowed to send emails to the group regardless of that setting. Is this by design,
and if so why? If it's required, then the language really needs to be changed to reflect that its real purpose is to allow email.