Hi Alex,
I think to implement Web Browser SSO and Single Logout is not so difficult in the Gateway and Federations metadata should be tailored to the really necessary functionality.
But first I would recommend to check if you can reuse already existing SSO products for that purpose.
If this is not feasible, I can help you to setup further SAML endpoints.
Kind regards
Heiko