My front-end application "App1", acts as a SAML Service Provider (SP). ADFS is my Identity Provider (IdP). App1 internally uses a "backend connection"