
JuanC.59954 (Customer) asked a question.
We are currently working to create a conditional access policy that will allow those on our network physically or through our VPN. This is hopefully possible through Okta natively. If it is not, we would like support to link a Microsoft conditional access policy to Okta so that it is the SSO instead for this one application but will still be triggered if they are not on the network.

Hi @JuanC.59954 (Customer) , Thank you for reaching out to the Okta Community!
Unless I'm misunderstanding your use case, if Okta is the IDP you can configure Authentication Policies with App Sign-on Rules based on IP restriction via Network zones.
If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you.
Hope my answer helps!
--
Help others in the community by liking or hitting Select as Best if this response helped you.
Collect them all. Learn a new skill and earn a new Okta Learning badge.
Just released: More Okta Community badges just added