A newly connected provider becomes the one that sends. Other connected email providers stay as fallbacks after a hard failure. Authdog's managed provider sends when none of yours is active.
Prepare SES
- In AWS, verify the From address or domain in the same region you will send from.
- Publish the SPF and DKIM records SES gives you. Add a DMARC policy before production mail.
- Move the account out of the SES sandbox before you send to arbitrary recipients. Sandbox accounts can only deliver to verified addresses.
- Create an IAM user or role whose policy allows sending email in that region. Do not reuse a general administrator key.
Authdog does not verify domain ownership or sandbox status for you. SES still rejects the message when either check fails.
Connect Amazon SES
In the Authdog console:
- Select the project and environment.
- Open Notifications > Providers.
- Select the Email channel.
- Choose Amazon SES and select Connect.
- Enter:
| Field | Value |
|---|---|
| Access key ID | The IAM access key |
| Secret access key | The secret for that key |
| Region | The SES region, for example us-east-1 |
| From email | A verified identity in that region |
- Save. Amazon SES becomes the active provider.
- Select Test, enter a recipient outside your own domain, and confirm delivery.
Both keys are encrypted and are not loaded back into the browser. On a later edit, leave a secret blank to keep the stored value. Enter a new value only to replace it.
Use Set active if you connected SES but another provider is still in use. Use managed returns delivery to Authdog.
The region must match the region where the identity is verified. A key that can send in us-east-1 does not send from an identity that exists only in eu-west-1.
Set the visible From name and Reply-to under Notifications > Configuration. Those defaults apply to every template, independent of which provider sends.
Test it
- Send the provider test and inspect the message headers for SPF and DKIM.
- Trigger a real template, such as a magic link or an invitation, in the same environment.
- Confirm the send appears under Notifications > Events.
Use a separate key, region choice, and from-address for production. Provider configuration does not copy between environments.
Related
| Read | To learn how to |
|---|---|
| Email providers | Active provider, fallbacks, and sender-domain checks |
| Notifications | Templates, from name, and the Events tab |
| Marketplace | The listing for this integration |