
d9b45 (d9b45) asked a question.
Hi,
We have an unusual environment where we do not run a traditional domain or any type of LDAP system for authentication ( users have local accounts - not great but thats how it has been set up historically).
We have been using OKTA for a while for the majority of our applications however have always held of on moving Office 365 across to OKTA for SSO due it being a big bang and not really being able to test it.
Currently users have outlook (windows and mac) set up on their laptops which are configured and authenticate against the users O365 credentials. This is the same for their mobile devices where they may be using iOS mail or the android equivalent or even outlook for mobile.
I would like to get Office 365 integrated with OKTA however i am unsure what the end sure will experience and as its big bang i cannot really test this with a hand full of users or create any documentation on it.
What i am trying to work out is as an end user who already has outlook setup and e mails on mobile set up office 365 credentials what happens when integrate office 365 and OKTA such as
Outlook - does this just continue to work, will they be prompted for credentials (if so which) will they need to set up a new mail profile
Web Mail : can they still go to outlook.office.com and log in or will they need to go via the OKTA dashboard. if they can do directly to office.outlook.com what credentials can they use.
iOS/Android - will this just work or will it prompt for credentials, if so will they need to use OKTA or will they need to set up a new account?
it would be great to be able to create some documentation for our users with screenshots however it seems no one has this.
Thanks in advanced

It has been about a year since we did this but we were O365 w/o Okta integration and switched everyone over to O365 integration w/o too many issues. Here is what I remember:
* Make sure you attributes are mapped correctly, specifically proxy addresses if using vanity domains
* Determine that primary smtp and UPN match
* Federation will take time to propegate, causing some delays in outlook recognizing the new user ID/PW (Microsoft controls the federation). I believe the later you do it, the faster federation works.
Contact me offline and i would be more than happy to go into all the details.
Jeff
Hi there,
I understand that you are looking for documentation that can answer your questions and help you create documentation on your own.
In this case I believe you will find the article below very useful, as it contains a PDF file with the complete Office 365 deployment guide.
https://support.okta.com/help/s/article/Office365-Deployment-Guide
If you run into difficulties, do not hesitate to contact our support
Kind regards,
Dorin Sterian,
Tier 2 Technical Support Engineer
Okta Global Customer Care