Planning your line-of-business application registration strategy
As you plan for business applications to be registered to utilize Azure AD for SSO, it is important to understand the reasoning for doing so. The first is that SSO creates a better experience for users who only require a single username and password for authentication.
The second is to decrease the infrastructure that is required for authenticating to applications that are on-premises. If we can register our on-premises applications to Azure AD with Application Proxy, we no longer require a Windows Active Directory infrastructure on-premises.
The third reason is security. If we have our applications registered with Azure AD, including on-premises and third-party cloud applications, we can utilize the security solutions within Azure AD to authenticate and authorize all enterprise applications. This includes multi-factor authentication (MFA), single sign-on (SSO), self-service password reset (SSPR), Azure AD Identity...