Hacker News new | ask | show | jobs
by leeter 852 days ago
Me: "We should use SCIM, our IDP and our App both support it" PM: "No that's too complicated, we'll roll our own provisioning and never worry about de-provisioning because they won't be able to log in due to SAML anyway!"

I can't tell you how many times I've had that conversation... but I'd need at least both hands and a foot.

1 comments

This is why most SSO forces you to sign in again every day. So frustrating!