AD FS, since Windows Server 2016, contains partial support for an early draft of OAuth 2.0 Token Exchange (on_behalf_of). The spec was finalized as RFC 8693 in january .
Is there any work ongoing to update AD FS in Windows Server 2019 to support (parts of?) the final spec, e.g. adjust parameter names and values, supporting both delegation, impersonation and exchanging SAML tokens to JWT tokens?