Forum Discussion

BPA_001's avatar
BPA_001
Copper Contributor
Jul 06, 2023

AAD federated SSO downside?

We're looking to add our internal SSO as an AAD federated identity. If we do this do we lose any of the AAD capabilities covered by P1 or P2? Conditional access, MFA, identity protection, risk event detection, PIM etc . Does using AAD fully for IAM provide better IAM capabilities?

  • I don't think so you will lose those capabilities of P1 and P2, you might have to think if you are adding user as a guest (B2B) in those cases those license will not be valid on source tenant. The new direction is move to AAD instead of ADFS to take the full capablities that you have outlined
    Please "Accept as Answer" if it helped so it can help others in community looking for help on similar topics.

Resources