Delivery Recovery & Observability

How to distinguish temporary deferral from permanent failure

4xx waits. 5xx needs a cause. Dual MX is not backoff.

MailerZ editorial · Secuno LLC16 min read

Email deferral vs permanent failure is a code class, not a feeling. 4xx including 421 asks the sender to try later — greylist, rate, table full, or a polite mask. 5xx including 550 is a final no. MailerZ Free send-as is 550 / 550 5.7.1 — permanent for that plan. Empty inbound history is leftover MX, not a deferral. Read the full enhanced status. Unique subject. Other mailbox. Confirm /pricing. Not an inbox SLA. Envelope SRS only.

4xx versus 5xx
Try later versus no.

Quick answer for email deferral vs permanent failure

Read the SMTP class. 4xx is deferral until a later 250 or it never comes. 5xx is permanent. Empty history is hop one. That is email deferral vs permanent failure.

Guide: copy the full line. Setup: exclusive MX so inbound codes exist. Best practice: new subject after MX, pair, or quota changes.

One 421 plus a later 250 is temporary. Hours of 421 with leftover MX is not greylist.

Free 550 is permanent until you upgrade.

MailerZ Free is one domain, ten aliases, one seat, a 14-day store, send-as disabled, SMTP and API disabled, and unrouted mail held or rejected only. Solo is $40 per year only. Starter is $8 monthly or $80 yearly. Business is $19 or $190. Agency is $39 or $390. Unlimited is $99/month or $990/year. Confirm numbers on MailerZ pricing. Limits are not an inbox-placement promise.

Google’s own Send mail as steps live in Google Gmail Help — Send mail from a different address. Workspace as a product is described on Google Workspace — product overview. Transport still follows IETF RFC 5321 — Simple Mail Transfer Protocol.

email deferral vs permanent failure guide: the real decision

Called every 421 a block.

Called leftover empty a deferral.

Retried the same subject after a cut.

Criteria: full code, hop named, unique subject, other mailbox.

Class
CodeClassFirst move
421 / other 4xxDeferralWait or reduce burst; read text
550 5.7.1Permanent AUTH/planPlan + pair + From
5xx dest quotaPermanent destFix store
Empty historyNo hopMX leftovers

Prove inbound from another mailbox before you print hello@ on a homepage.

Start free — one domain

Technical mail flow for email deferral vs permanent failure

Inbound hop-three to Gmail can 421. Send-as AUTH can 550.

Delivery recovery shows hops this layer stored.

Two dests can mix 421 and 250.

Header From stays on inbound.

MailerZ is inbound MX plus authenticated SMTP from Secuno LLC. Envelope SRS only. Header From, Subject, Date, Message-ID, body, and MIME are never rewritten. Not Google Workspace, not IMAP or POP, not an open relay. Unauthorized send is SMTP 550 / 550 5.7.1. Leftover MX is a hard stop. Self-send from Gmail to the same Gmail account can hide routing errors. Not SOC 2, not ISO 27001, not HIPAA.

Empty history is not 421
Hop one never ran.

email deferral vs permanent failure setup

Copy the code first. Name the hop. Then change one thing.

  1. Save the full SMTP line and timestamp.
  2. If history empty, leftover MX first.
  3. If 4xx, note whether a later 250 exists.
  4. If 550 send-as, check Free and the dashboard pair.
  5. If dest 5xx, fix quota or policy.
  6. Change one variable. New unique subject.
  7. Other mailbox. No self-send.
  8. Stop retry storms that burn outgoing caps.

Failure modes and proof

421 as permanent on first sight.

Empty as deferral.

Same subject forever.

Password in the ticket.

Bulk retries.

Leftover MX is the usual ghost. Check a public lookup before you blame Gmail.

Open leftover MX troubleshooting

MailerZ workflow and product boundary

Related: delivery recovery, troubleshooting, docs, features.

Not an open relay. Not SOC 2.

Related pages: delivery recovery, troubleshooting, docs, and features.

New subject after a fix
Do not reuse the deferred copy as proof.

email deferral vs permanent failure best practice

A 550 on Free is Solo, not more DNS. Confirm /pricing. Ceilings are not SLAs.

Competitor blogs — nofollow.

MailerZ Free is one domain, ten aliases, one seat, a 14-day store, send-as disabled, SMTP and API disabled, and unrouted mail held or rejected only. Solo is $40 per year only. Starter is $8 monthly or $80 yearly. Business is $19 or $190. Agency is $39 or $390. Unlimited is $99/month or $990/year. Confirm numbers on MailerZ pricing. Limits are not an inbox-placement promise.

Field notes you can reuse

Accepted vs delivered is the status-word companion.

WordPress AUTH is hop five 550.

swaks is your pair only.

Agencies: per-zone codes.

14/90 days for hops seen.

RFC 5321 defines transient versus permanent classes.

SOC 2 is still no.

Do not invent greylist as a MailerZ feature name.

Deeper field notes for email deferral vs permanent failure

Read the class before you rotate

Email deferral vs permanent failure dies when every red line becomes a credential rotate. 4xx asks for time. 5xx says no. 421 after a burst toward Gmail can later 250. 550 5.7.1 on Free will not later 250 until you upgrade. Copy the enhanced status and the text. “Try again later” is not “not authorized.”

Empty history is not 421. Leftover MX skipped the hop. Public lookup first. Exclusive MX. New unique subject. Then read codes that exist.

Inbound versus send-as

Hop-three 421 to the dest is inbound. Hop-five 550 is AUTH or plan. Rotating SMTP because inbound 421d is the wrong knob. The accepted-versus-delivered page names status words. This page names classes.

After you change something

New subject. Other mailbox. Stop the retry storm. Monthly outgoing caps count. Confirm /pricing. Delivery recovery shows hops this layer stored — 14 days Free, 90 paid. Not Vault. Not SOC 2. Competitor blogs nofollow.

Agencies: per-zone codes. Do not apply client A’s 421 story to client B’s leftover MX.

A complete worked story

They treated 421 like 550 and rotated SMTP

Gmail hop-three 421 after a burst. They rotated send-as. Inbound was the 421. Outbound pair was fine. They waited, sent a new inbound subject, got 250, and put SMTP back. Email deferral vs permanent failure would have saved the rotate.

Operator brief

A longer operator brief for email deferral vs permanent failure

Teams that bookmark How to Distinguish Temporary Deferral From Permanent Failure usually arrive after a missed invoice, a form that never notified anyone, or a migration that looked clean in one resolver. The useful brief is still boring. Name the store. Name the printed local-parts. Name the nameservers that actually answer. Publish one MailerZ MX set. Delete leftover hosts. Probe from a mailbox that is not the destination. Only then talk about email deferral vs permanent failure as a send-as, catch-all, or comparison problem.

MailerZ remains inbound MX plus authenticated SMTP around Gmail or Outlook. Envelope SRS only. Header From, Subject, Date, Message-ID, body, and MIME stay intact. It is Mail Box portal webmail, not IMAP, not POP, and not an open relay. Unauthorized send is 550 / 550 5.7.1. Free cannot finish send-as: SMTP and API stay off. Solo is $40 per year when the domain From must travel. Starter is $8 or $80. Business is $19 or $190. Agency is $39 or $390. Unlimited is $99/month or $990/year. Confirm the live pricing page. Those numbers are ceilings, not an inbox-placement service-level agreement.

If leftover Google, Microsoft, Cloudflare routing, or registrar MX is still public, stop widening email deferral vs permanent failure. The map you built never saw that copy. Priority numbers are an order, not load balancing. A higher preference host is idle while a leftover host still accepts mail. Save the old MX set before you delete anything. Check more than one public view because TTL lies.

Catch-all forward is not a safety feature for how to distinguish temporary deferral from permanent failure. Hold unknowns on everyday production. Review the store. Promote a leftover only when a real person used it. Paid forward belongs to a dated cutover. Fan-out of unknowns into two inboxes trains two spam buttons. Plus addressing on Gmail is not a custom-domain unknown policy. MailerZ will not strip plus tags on your domain the way Gmail does on @gmail.com.

Send-as is a second hop. Creating an inbound alias does not approve outbound. Catch-all does not mint a From. Copy the dashboard host, port, and TLS pair together. Set From to an identity you created. Do not paste a Gmail password into a CMS, a cron file, or a ticket. Do not mail SMTP secrets to support. Send a 550 line, a timestamp, and a Message-ID. Rotate if a secret already leaked.

Self-send from Gmail to the same Gmail account can short-circuit. That green result is why people swear email deferral vs permanent failure works while customers vanish. Use a second provider. Put a unique subject on the probe so delivery history is searchable. If Header From was rewritten by some other forwarder, authentication stories get noisier. MailerZ does not rewrite Header From on inbound.

Agencies should keep email deferral vs permanent failure per client zone. Separate SMTP credentials. Do not pour every client into one catch-all because the spreadsheet got long. Agency plan capacity exists so you can hold more domains and aliases. It does not replace a named list. Offboard means delete MX you own, revoke SMTP, and stop forwarding leftovers into the agency inbox.

Legal and security questions have published answers on the security, privacy, terms, DPA, and subprocessors pages. MailerZ is not SOC 2, not ISO 27001, and not HIPAA. The 14-day Free store, the 90-day Solo–Agency store, and the 180-day Unlimited store are recovery windows for hops this layer saw. They are not an archive and not legal hold. If counsel wants eDiscovery, buy eDiscovery.

Comparisons only help after the hop is honest. Cloudflare Email Routing is inbound routing. A privacy-mask product hides a destination on a provider domain. A suite hosts mailboxes, Calendar, and admin. Proton-class mailboxes encrypt a store. MailerZ is the delivery layer when you already have Gmail or Outlook and you need a domain route you can prove. Cite the other product’s documentation. Do not invent feature parity.

When How to Distinguish Temporary Deferral From Permanent Failure is closed, the next physical action is a lookup and a probe, not another tab. Start free on one domain you can break. Sign in if the zone already lives here. Review quarterly, or sooner after a nameserver move, a plugin swap, or a staff departure. That is how email deferral vs permanent failure stays a runbook instead of an incident.

A second worked pass for email deferral vs permanent failure: write the last change on a sticky note before you open the dashboard. Nameserver move, leftover MX, new form plugin, contractor laptop, or a registrar forwarding toggle are the usual five. MailerZ history only shows hops that reached this layer. If the sticky note says leftover MX, you do not have a email deferral vs permanent failure mystery. You have a split. Delete the leftover. Wait for TTL. Probe again.

A third worked pass: print the public list. If you cannot print it, you are not ready for production unknowns and you are not ready for a bigger alias ceiling. Unlimited aliases as marketing will not save a missing list. Three named aliases on Free are enough to stop printing a personal Gmail on a homepage. Grow the list when a real person used a leftover, not when a harvest guessed admin@.

Read the class, then the enhanced code

Email deferral versus permanent failure starts with the first digit. 4xx, including 421, asks the sender to try later. 5xx, including 550 and 550 5.7.1, is a final no for that attempt as defined by the responding host. A 4xx that never becomes 250 is still a temporary class that aged into an operational miss. It did not quietly become a 5xx because you waited. Read the enhanced status the dest printed. Do not translate “deferred” into “MailerZ is down” without a public MX print and a history row.

Empty history is not a deferral. Empty history is hop one missing or an unnamed / held alias. A leftover Google host that accepted the message will never 421 at MailerZ. You will not see a 4xx here. You will see silence. Delete the leftover. Wait for TTL on two views. Probe with a new subject. Then you can talk about dest 4xx versus dest 5xx.

Free send-as 550 is permanent for that plan. It is not a dest greylist. Upgrade or stop sending From the domain. Solo is $40 per year when the domain From must travel. Starter is $8 or $80. Business is $19 or $190. Agency is $39 or $390. Confirm the live pricing page. Those numbers are ceilings, not an inbox SLA. Unauthorized send is 550 / 550 5.7.1. MailerZ is not an open relay.

When to retry and when to stop

Retry a 4xx after you confirm the dest mailbox exists, quota is not full, and you are not hammering the same subject. Send a new unique subject after a fix so history is searchable. Do not retry a 5xx plan boundary by changing ports. Do not retry a leftover miss by creating more aliases. Do not paste a Gmail password into a CMS to “see if SMTP works.”

Greylisting at some destinations looks like 4xx then 250 on a later attempt. That is dest policy. MailerZ forwarded. The dest asked for time. Wait, then check the store including spam. Do not disable the alias during the greylist window unless you have a second signal that the local-part is abused.

A 421 that was a full mailbox, and a 550 that was Free

A dest Outlook mailbox hit quota. MailerZ history showed forwarded, then dest 4xx. The operator called it a permanent MailerZ outage and opened a new domain. The mailbox owner emptied Deleted Items. A new subject 250’d. The first subject may still be gone depending on dest retry. That is why you fix quota, then send a new probe, then decide.

A second operator on Free tried send-as from a form. 550. They waited overnight calling it deferral. Free cannot finish send-as. Waiting does not mint outbound. Copy the paid host pair after you upgrade. Set From to an identity you created. Catch-all does not mint a From.

Related: delivery recovery for hops this layer stored, troubleshooting for leftover MX, docs for the pair, features for the product boundary. This page is only class 4 versus class 5 versus silence.

A decision tree that fits on one sticky note

History empty? Print public MX. Leftover? Delete, wait two views, new subject. Still empty with exclusive MX? Alias unnamed or unknowns held. Name it or review the store. Do not call empty a 421.

History shows dest 4xx / 421? Check dest mailbox exists, quota, and greylist. Fix the dest. New subject. Do not upgrade MailerZ to cure a full Outlook mailbox. Do not disable the domain overnight.

History shows dest 5xx? Read the enhanced code. User unknown is a dest directory miss. 5.7.1 policy is dest or our unauthorized send. Free send-as 550 is a plan. Stop retrying the same From on Free. Paid send-as needs the dashboard pair and an identity you created.

History shows forwarded and dest 250 but the human sees nothing? Spam and filters. Not a deferral. Not a permanent MailerZ failure. Check the store. Check a second dest if you fan-out. Confirm /pricing only when the code is a plan boundary. Related: delivery recovery, troubleshooting, docs, features.

Write the class on the sticky before you open a chat: silence, 4, or 5. Then the enhanced code. Then the last change — leftover MX, nameserver move, plugin, or staff laptop. That order stops the “try a new alias” reflex that never fixes a leftover or a quota.

Enhanced codes you will actually see

4.2.2 or quota language is dest storage. 4.7.x often policy or greylist. 5.1.1 is dest unknown user. 5.7.1 is policy or our unauthorized send. 550 without enhancement on Free send-as is still a plan no. Copy the whole line into the ticket. A truncated “550” is how people retry the wrong layer.

New subject after every fix. Same subject across retries makes history look like one stuck item. Confirm /pricing when the line is a plan boundary. Related pages do not change: recovery, troubleshooting, docs, features.

If the dest 4xx repeats past a business day with quota proven empty, treat it as an operational miss and open a dest-side ticket with the full enhanced line. That is still not a MailerZ leftover and not a Free send-as 550. Keep exclusive MX while you wait. Do not add aliases to “see if a new string retries faster.”

FAQ

What is the safest way to handle email deferral vs permanent failure?
Treat 4xx including 421 as deferral until a later 250 appears or it never does. Treat 5xx including 550 as permanent. Empty history is leftover MX, not a deferral. Free send-as 550 is a plan miss. Send a new unique subject after you change MX, credentials, or quota.
Does this require a new mailbox?
No. MailerZ is Mail Box portal webmail (Inbox, Sent, New email). It is not IMAP or POP. Gmail or Outlook remains the store unless you separately buy a hosted mailbox product.
Will it work with Gmail or Outlook?
Yes for inbound when the destination is a verified mailbox. Branded replies need paid send-as plus Gmail Send mail as or a manual Outlook SMTP identity. Free has no send-as.
What DNS records are involved?
A verification TXT, one MailerZ MX set on the authoritative nameservers, leftover host MX removed, and SPF, DKIM, and DMARC if you also send as the domain.
What should I test before production?
Send a uniquely titled message from an unrelated provider into each named alias. Confirm Header From and delivery history. Do not email yourself from the same Gmail account.

Key takeaways

  • 4xx vs 5xx.
  • Empty ≠ 421.
  • 550 Free is permanent.
  • Read the text.
  • New subject after fix.
  • Other mailbox.
  • Stop storms.
  • Name the hop.

Conclusion and next action

Distinguish deferral from permanent failure by the SMTP class and the hop. MailerZ will show codes it saw. Leftover MX shows nothing. 421 can become 250. 550 5.7.1 will not until the plan or pair is honest.

Free send-as is a permanent refuse, not a deferral. Upgrade if From must travel. Solo is $40 per year. Confirm pricing. A 4xx at Gmail after MailerZ already 250’d inbound is the dest hop. Retry there. Do not republish MX because a mailbox was full. Copy the full enhanced status text into the ticket before you guess.

Start free. Sign in if 550s persist and you are still on Free.

Read the class

Start free, cut leftovers, then read 4xx versus 5xx on a unique subject.

Do not call a 421 a reject until it never 250s.

Review quarterly, or sooner if Gmail, Workspace, or MailerZ scope changes. Author: MailerZ editorial, Secuno LLC.