Refactor your applications to use OpenID Connect. Introduce a federated authentication & authorisation layer. This allows having a uniform login experience, including 2-factor authentcation, with uniform roles and rules.... without the cost impact of making all casual users a named-user in Active Directory.
0 Comments