I have:
1. Enabled Modern auth in admin.microsoft.com.
2. cleared legacy options except for smtp
3. Blocked legacy in conditional access.
My tenant is coming up from the block from MS, but I wanted to get ahead of it.
We can get mail on iOs devices after the re-auth using native ios mail apps. Most are not using the company portal and those that were affected all worked for one of our three companies and had the longest running devices. zach_johnson - You may very well be able to find a way to get it running. It is a supported scenario but each tenant settings may be different depending on what other settings you may have. Our tenant is really old and I had to go have support tickets from MS a while back to be able to send from an email alias. Maybe you have "organizational settings" that need to be added if your tenant is pre 2017.