Windchill SSO with Entra ID Application Proxy Approach
We are currently working to switch out Windchill systems from Basic authentication to Form Based (SSO) authentication. We are clear with the approach of using shibboleth as SP and Entra ID AD as IDP & CAS.
But our cyber security team suggested to use Entra ID Application Proxy method for the Windchill SSO which requires no changes to the Windchill application side.
Application Proxy - https://learn.microsoft.com/en-us/entra/identity/app-proxy/
https://learn.microsoft.com/en-us/entra/identity/app-proxy/how-to-configure-sso
Have anyone tried this approach for Windchill SSO? Can anyone suggest on this approach and how reliable it would be with Windchill and its associated integrations ?

