
TimothyW.11033 (Customer) asked a question.
Here is our environment:
- We have Autopilot enrolled Windows laptops.
- Our environment is configured with WS-Federation in our Office 365 application in Okta.
- Okta has enabled the Autopilot OFFICE365_AAD_JOIN_CLIENT_FILTERS option in our tenant.
- We have followed the documentation at https://help.okta.com/oie/en-us/Content/Topics/Apps/Office365/win-autopilot/win-autopilot-integration.htm*Add to configure the Authentication policy.
When the user encounters the first login during the OOBE, their login is redirected to the Okta login and their login works as expected. However, after the setup completes and the machine reboots the user is presented again with the Windows login form. Upon entering their user credentials, Windows simply returns a login failure. The Okta login is never presented.
Does anyone have this use case working?

Hello @TimothyW.11033 (Customer) Thank you for reacting out to our Community!
There might be a sign on policy that could cause this issue, we recommend to check the Okta System logs to see if there are any indications of failed logins. If there is nothing in the logs that would indicate an issue, we recommend to check the login events from Office side to see what could be the issue.
The Okta Community Catalysts Program is now live. Collect online badges when you participate in the Okta Help Center Questions community. Learn more here.
Community members help others by clicking Upvote or Select as Best on responses. Try it today.