Delegate application login to AXN using SAML or OpenID Connect.

Drag and drop policy editor to customize ABAC and step-up authentication.

Reverify attributes, device, and location, and trigger step up to catch anomalies.

Translate policy results to simple attributes for app authorization.
