Reduce unnecessary SAMLP federation limitations
There is currently some restriction that when establishing federation with SAMLP, the issuerUri must contain at least a slash. Microsoft support tells me that it must be a URL.
In the SAML world, issuerUri corresponds to an entityID on the IDP side. The entityID is simply a string; it's not meant to be addressed at all.
As a result of this unnecessary restriction, I had to reconfigure my IDP and work with all of my service providers to complete the change. Quite a nightmare, disruptive scenario to go through and for no good reason.