I am contacting on behalf of a Multi-Academy trust who are wishing to setup their federated Azure AD to allow sign in to their Capita Reading Cloud library systems using O365 credentials. This MAT contains several schools all with their own separate RC website.
Their concern is that the student matching may inadvertently match against a student in another school when signing into Reading Cloud via SSO, is there a way to restrict this matching so that it only looks for students within their school?