Our company heavily relies on Google Workspace for authentication across various SaaS applications like Slack, Tableau, and Zendesk through "Login with Google." We're currently planning to implement JumpCloud as our primary MDM solution for both macOS and Windows, focusing on features such as device management, synchronizing Google passwords for device login, future setup of JC RADIUS for VPN and Wi-Fi, and utilizing JC Content Awareness Access (as our Google Business Standard doesn't include Google CAA) to manage access to resources like Google Drive on unmanaged devices.
I understand that we can continue using our existing SaaS applications by authenticating Google through the JumpCloud portal, allowing Google to manage the login process for these apps.
From my current understanding, the main distinctions between using Google or JumpCloud as our IdP and SSO provider would primarily be:
* The platform where user creation and lifecycle management are handled.
* The system responsible for managing two-factor authentication.
Considering this, what limitations might we encounter with JumpCloud as our MDM if we choose to use Google as our primary IdP and SSO provider?
Additionally, if we initially proceed with Google as our IdP and SSO, how complex would it be to switch back to JumpCloud for these functions in the future, particularly from a user experience perspective?
I'm also curious about the recommended best practices in this scenario and how other organizations typically approach this.
Thank you for your insights!