MailFixIt

Outlook / Microsoft 365 email rejection

Fix Outlook 550 5.7.515 safely

An Outlook or Microsoft 365 rejection with 550 5.7.515 means the receiving service reported an authentication problem. It is a useful symptom, not proof that one particular SPF, DKIM or DMARC record is the only cause.

Check the sending domain free

Before changing DNS: keep the bounce excerpt and, where safe, the header section of one rejected message. Do not paste a message body, passwords, API keys or private DNS credentials.

What to check first

  1. Confirm the sending domain. Check the public domain used by the sending service, rather than a website URL or a recipient address.
  2. Read the receiver report as context. MailFixIt recognizes the Outlook code and only exposes a safe, structured symptom—not the raw bounce text.
  3. Review SPF, DKIM and DMARC together. SPF authorizes the envelope sender, DKIM signs with a selector and signing domain, and DMARC checks alignment for the visible From domain.
  4. Use problem-message headers when available. The free check can extract reported SPF, DKIM and DMARC outcomes, DKIM selectors and safe domain identities from Authentication-Results, Return-Path and From. These observations are not independent verification of the message.

Common safe fixes

There is no universal record to paste for this error. The appropriate correction depends on the evidence:

What not to do

Need a scoped application plan?

After a fresh check identifies a supported DNS warning or error, the one-time $5 Email Fix Pack can prepare a domain-specific plan. It includes records to preserve, a rollback path, three rechecks within seven days and an option to request assistance after granting temporary least-privilege DNS access.

See the Email Fix Pack or start the free diagnostic.