I want our SAML setup to function so that when we send our users protected Confluence links, they are not prompted to enter their email address and choose from a bunch of login options if they are already signed into the Azure/Entra IDP on the same browser. No other apps prompt like that if the user is already logged into the SAML IDP.