
AnthonyP.42827 (Customer) asked a question.
I just connected my Okta account to Office 365 through the WF-Federation API. Federation is working, however now I cannot provision new users in the Office 365 console. In reading the below article I see that this is by design on Microsofts end:
https://support.microsoft.com/en-us/help/2492140/you-can-t-assign-a-federated-domain-to-a-user
However, I still need the ability to provision users within this domain. Is it possible to configure Azure AD Connect to utilize the sync service only for provisioning users within O365 while at the same time using Okta Universal Directory to Federate users logins within Okta?
- Currently using Okta Universal Directory to Federate users from our on-prem AD domain
- We do NOT have provisioning enabled for our Okta account
- Exchange is currently NOT hosted in O365 but will be migrated.

Hello Anthony,
As you mentioned, this is a limitation not under our control.
I recommend opening up a case with our technical support team so that Professional Services could scope this issue because they are best suited for providing custom solutions while at the same time bringing this issue to the attention of Microsoft support for possible workarounds.
Best regards,