Hi,
We are looking to migrate our built-in accounts to SAML set up in Azure AD. There is no issue for internal users who have an AD account.
We also have about 300 external contractors, who currently have access but they do not have their own AGOL license. Some of the users only need temporary access for 3-6 months for a specific project.
Do they need to have full account set up in our Azure AD ?
Or does B2B work i.e. are they added as guests in our Azure AD and by doing SAML claims transform in Azure, they can be authenticated using their own IDP?
Can someone please point me to ESRI architecture documentation how the external users can be set up for authentication using SAML.
Are there any recommended option(s) ?
Thanks