This is a valuable security improvement. Allowing the client to pass the original user IP during SSO authentication would improve audit accuracy, strengthen security monitoring, and help prevent bypassing IP-based access controls.
https://crossyroad2.io