The user receives an AADSTS50107 error when attempting to sign in to Office 365. The full error message reads:
AADSTS50107: The requested federation realm object 'subdomain.domain.com:exk123456789' does not exist
- Office 365
- Office 365 Federation with Child Domains
- Single Sign-On (SSO)
- Okta Classic Engine
- Okta Identity Engine (OIE)
The issue occurs for customers with a federation with child domains that was set up before the recent platform update. See Okta Classic Engine release notes (Production) for reference.
The update implemented a fix, but the configuration requires a refresh to apply the changes.
Perform the following steps to resolve the issue:
- In the Okta Admin Dashboard, navigate to Applications > Applications > Office 365.
- Select the Sign On tab.
- Click Edit.
- Click Fetch and select.
- Click Select without modifying any settings.
- Click Save at the bottom.
