@Pierre Audonnet - MSFT thanks for editing the screenshot. Here is the screenshot from claims x ray. But I made a change before I tested this even for salesforce. I removed the test account from the group included under password reset. And I don't see redirection happening to on-prem adfs any more. So does that mean because the test account is part of this group it is being forced to reauthenticate.
Also i see we have a group with few users under password hash sync for staged roll out but there is none under single sign-on