Then whenever you need to decide whether to use federated login for a given domain, you first check your whitelist of domains, and if there is no match, you check with each IDP on your SaaS vendor list to see if they host that domain.In the case of the Google Apps IDP, the process for performing that check is described in this article, including a method to identify what URL to send the user to vi