The claim rules for AIQUM are the same as what is needed for System Manager. The rule that is missing from the first KB below is the token groups, you may need to talk with Microsoft Support to get more information on how to configure that rule if you are still unable to log in with SAML and see an error related to missing claim rules (it will have the urn in it).
Don't forget to set up your users as remote users before logging in.