You need to configure WebSphere/WebLogic for SAML to be able to utilize it with Maximo Mobile. We have no middleware server and utilize whatever authentication scheme is configured for Maximo.
You are able to configure special rules when configuring SAML inside WebSphere to filter which requests get intercepted. For example, you can specify that a specific DNS requires SAML while others could continue to utilize LDAP authentication. If your Maximo DNS is maximo.mycompany.com you could setup a secondary DNS of mobile.mycompany.com and configure the filter in WebSphere to only intercept requests when it's mobile.mycompany.com. This would allow you to utilize something like Azure AD, Okta, etc. for MFA on mobile while continuing to use the AD username & password for legacy Maximo.
------------------------------
Steven Shull
IBM
------------------------------