SAML Auto-provisioning and group membership verification
Currently JitBit only allows SAML based login if the user is manually created, as stated here:
https://docs.microsoft.com/en-us/azure/active-directory/saas-apps/jitbit-helpdesk-tutorial#create-jitbit-helpdesk-test-user
Since SAML based SSO is more and more normal and essential in corporate environments, automatic provisioning is essential to reduce the amount of manual work done by IT. However, to gain back control and reduce rogue user creation, group membership verification, maybe even role based access would be amazing.
This would allow us to switch from AD (LDAP) to Azure AD (SAML) without sacrificing functionality (automatic user creation), and even controlling admin/technician/user access from Azure AD.