<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D5WR00001W5SXN0A3Okta Classic EngineMulti-Factor AuthenticationAnswered2026-05-14T16:43:20.000Z2026-04-07T16:03:45.000Z2026-05-14T16:43:20.000Z

KevinB.98148 (Customer) asked a question.

Okta OIDC for external authentication method in Azure

We have been trying to get rid of ADFS for authentication in Azure, and we want to configure Okta as an external authentication method for it. After setting it on both sides, Okta and Azure, following the documentation placed on here https://okta-help.pixtulate.com/en-us/content/topics/apps/office365/use_okta_mfa_azure_ad_mfa.htm we tried to tested it out, however, every time we do the authentication we received an status of "Evaluation of sign-on policy

CHALLENGE" when trying to do the handshake with Azure, it fails up.

 

Is there anywhere we can track back this issue? Or anything we can try to test up to fix it? Or is there any way that we can bypass the authentication method from Okta when Azure already has a "require Authentication" option

/help/servlet/rtaImage?refid=0EMWR00000Thdmz


  • Mihai N. (Okta, Inc.)

    Hi @KevinB.98148 (Customer)​ , Thank you for reaching out to the Okta Community! 

     

    If I'm understanding the use case correctly, check to see if you have the "Use Okta MFA for Azure AD" option enabled under your M365 app configuration. 

     

     

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

     

    --

    Help others in the community by liking or hitting Select as Best if this response helped you.

    Collect them all. Learn a new skill and earn a new Okta Learning badge.

    Just released: More Okta Community badges just added

    Expand Post
  • KevinB.98148 (Customer)

    Hi Mihai.

     

    Partially, I want to make use of the Okta verify app (MFA) to authenticate against Entra ID, and use it as a External Authentication Method. For this, should I set up the Office 365 App on Okta that supports WE Federation and do the configuration as mentioned on the link you provided?

     

    Appreciate your time!

     

    Expand Post
  • KevinB.98148 (Customer)

    We did followed all the steps and encounter this error Message: AADSTS5007413: Authentication with external provider cannot be completed due to invalid provider discovery response.

     

    Even if we followed the full steps provided by the guideline

     

Loading
Okta OIDC for external authentication method in Azure