Wanted to see if the following is feasible or is there a way out?
- My situation, computers have internet access always (assumption)
- I want to write a credential provider with a browser embed and talk to an external saml shib Idp
- After saml token is released by shib Idp, I want to submit to AD
- Here is where I am in a dilemma: can AD release SID and other info to credential provider to open desktop windows (i.e. In leu of traditional login Userid password submitted to AD via windows login)? If so what version and what config changes I need to make ?
Any documentation you can point to me?
Appreciate any inputs from your end