
In fact, HMA is still the only recommended method to enable Modern auth for all on-premises and cloud users in an Exchange Hybrid configuration. Modern auth in Exchange Server 2019 shouldn't be confused with Hybrid Modern Authentication, which uses Azure AD for modern authentication. Initially, this feature is available only for Outlook on Windows, but support for modern auth will be added to other Outlook clients in the future. To use modern auth, users need clients (Outlook or any other native OS clients) that support Modern auth using ADFS.

This document provides the prerequisites and steps to enable this feature. With the release of Exchange Server 2019 CU13, Exchange Server supports OAuth 2.0 (also known as Modern authentication) for pure on-premises environments using ADFS as a security token service (STS).
