<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00007UhVTvCANOkta Classic EngineSingle Sign-OnAnswered2024-04-16T10:19:14.000Z2022-03-09T19:07:50.000Z2022-03-11T13:20:06.000Z

k1hy6 (k1hy6) asked a question.

Microsoft 365 integration

Hello,

 

We have a situation where we use both Google Workspace and O365 as office solutions. The problem is that we have tried integrating O365 into Okta, but it turned out to be a complicated process. Our main complain that we cannot use the only one domain for admin access and SSO. We only have two domains: our microsoftonline and one for our Gogole Workspace and it is also used for our SaaS website (bitrise.io). When I try setting up SSO with a different domain (I only tested this in a test environment), it says

 

"Could not setup the domain federation with Office 365; please retry setting up the federation for this domain after a few hours." What exactly causes this?

 

The question is: Can we use that same domain without having complications? Can't we really use the default domain for admin authentication? That would cause a lot of problems.


  • Hello 

     

    Thanks for posting.

     

    There's also a couple of things to be aware of: 

    • Ensure that a non-federated (ideally the onmicrosoft.com) domain is set as the default domain ahead of time (federated domains cannot be default and will give an error)
    • Ensure that the account you are using for AADConnect and your admin account are using a non-federated domain (also, ideally onmicrosoft.com)

     

    When you add a domain to O365, using the O365 admin portal, it alters your default domain to the new domain. O365 will not alow you to federate the default domain.

     

    For further information see https://support.okta.com/help/articles/Knowledge_Article/38682106-Microsoft-Office-365-Integration-Guide

     

    Let us know if this helps you.

     

     

    Daniela Chavarria.

    Okta Inc.

    Expand Post
    • k1hy6 (k1hy6)

      Thank you for the answer. I actually have figured it out, for some reason my logic of merging the two domains was wrong, that is why I wasn't able to do ti. But thanks for clarification. Have a nice day!

This question is closed.
Loading
Microsoft 365 integration