Improvements
  1. Send readers to the right sign-on, every time:
    Running both SAML and JWT? You now decide which one readers land on by default, so most of your users hit the sign-on flow that's actually meant for them — no detours.
Bug Fixes
  1. Every sign-in option, on every on-premises login page:
    On on-premises installations, a custom login page could hide some of your single sign-on options — that's fixed, so your users always see every way in.