Force AllowCreate in NameIDPolicy for broken SAML clients
Some SAML clients (like Microsoft Office 365) are requesting a NameIDPolicy persistent but don't set AllowCreate flag, so Lasso can't create the NameID Value (we get error "Federation not found on login").
I suggest to force AllowCreate in SAML AuthnRequest when NameIDPolicy is Persistent or Transient.