KamilK.65553 (Customer) asked a question.
We are using the Template WS-Fed application for Dynamics CRM 365 on-prem authentication. Looks like Okta is setting the duration for the token lifetime at 8 hours. I can't see that this is configurable anywhere. Is anyone aware of a way to modify this?

The session of the WS-Fed application is governed by the service provider of the application itself. Okta does not govern the token timeout on behalf of the service provider as a general rule. To address this you will need to consult the WS-Fed application itself for the token timeout.
Alternatively, when it comes to the Okta session, this is governed by Okta Sign On policy Session Lifetime parameter. For this you can go to Okta admin > Security > Authentication > Sign On tab and modify the top priority policy to the desired Session Lifetime. By default, the Default Policy will have a Session Lifetime of 2 hours.
Thank you for choosing Okta!