
ChrisB.93121 (Customer) asked a question.
We are about to enable WS-federation for our O365 tenant. We currently have MFA enabled through Okta as well as Office 365. When we enable federation, will be able to continue using app passwords through Azure AD for user apps like Outlook/mobile devices/etc.?
Our desired scenario is MFA through Okta with app passwords through Office 365 Azure AD for user devices and mail apps.

I suspect this wouldn't work, but may need to be validated.
When federating Office 365 to Okta (or any other identity provider), Office 365 will redirect to the identity provider for authentication. There is no method to input the app password with the third party identity provider.
If the flow allows the app password to be inputed into Office 365 independent of the third party identity provider and after the authentication is performed by the third party identity provider, I suspect it would work.