Decision tree

Use this decision tree to determine the multilateral federation solution that's best suited for your environment.

Diagram that shows a decision matrix with key criteria to help choose between three solutions.

Migration resources

The following resources can help with your migration to the solutions covered in this content.

Migration resource Description Relevant for migrating to...
Resources for migrating applications to Microsoft Entra ID List of resources to help you migrate application access and authentication to Microsoft Entra ID Solution 1, Solution 2, and Solution 3
Microsoft Entra custom claims provider Overview of the Microsoft Entra custom claims provider Solution 1
Custom security attributes Steps for managing access to custom security attributes Solution 1
Microsoft Entra single sign-on (SSO) integration with Cirrus Bridge Tutorial to integrate Cirrus Bridge with Microsoft Entra ID Solution 1
Cirrus Bridge overview Cirrus Identity documentation for configuring Cirrus Bridge with Microsoft Entra ID Solution 1
Configuring Shibboleth as a Security Assertion Markup Language (SAML) proxy Shibboleth article that describes how to use the SAML proxying feature to connect the Shibboleth identity provider (IdP) to Microsoft Entra ID Solution 2
Microsoft Entra multifactor authentication deployment considerations Guidance for configuring Microsoft Entra multifactor authentication Solution 1 and Solution 2

Next steps

See these related articles about multilateral federation:

Multilateral federation introduction

Multilateral federation baseline design

Multilateral federation Solution 1: Microsoft Entra ID with Cirrus Bridge

Multilateral federation Solution 2: Microsoft Entra ID with Shibboleth as a SAML proxy

Multilateral federation Solution 3: Microsoft Entra ID with AD FS and Shibboleth