
JohnathanT.02573 (Customer) asked a question.
I'm trying setup O365 Chiclet for a tenant in a different domain & having issues getting SSO to work. The tenant domain is managed my AWS and has a one way trust to an on Prem-AD. We usually use Org2Org but O365 does not support SAML and we are using Ws-Federation. We are trying to create a Master app in our main Okta portal then create a bookmark for 0365 in the tenant portal and have SSO working. Is this even possible?

Hi @JohnathanT.02573 (Customer) , Thank you for reaching out to the Okta Community!
Assuming that WS-Federation is done and working in your main org (let's call it Tenant A)
AND
Assuming that you have a working ORG2ORG connection with a secondary org (let's call it Tenant B)
you should then be able to set up a Bookmark app in Tenant B that points to the Office app from Tenant A. The Bookmark app should have the URL Constructed as mentioned here:
https://saml-doc.okta.com/SAML_Docs/Configure-SAML-2.0-for-Org2Org.html
Under " Configuring Application for Hub/Spoke " → please note the Example on how to construct the URL for details on how to get the relayState and so on.