Setting up SSO for Entra ID (formerly Azure AD)

Steps on how to setup SSO for Entra ID (formerly Azure AD)

If you are setting up SSO for Entra ID (formerly Azure) these instructions will be useful for you!

  1. Log in to Microsoft Entra ID (https://entra.microsoft.com/) using a Global Admin account.

  2. Create a new “Enterprise Application”, name it “Toggl”.

  3. On the “Overview” tab, select the option “2. Set up single sign on” and choose “SAML” on the next page.

  4. Use the information from Toggl (on the right) to fill in the information in the new Enterprise Application:

  1. Change “(2) Attributes & Claims” and switch the “Unique User Identifier” to “user.mail” instead of “user.userprincipalname”.

  2. Edit “(3) SAML Certificates” in the “Token signing certificate” section and set the “Signing Option” to “Sign SAML response”:


  1. Add individual user accounts or groups to the “Users and groups” to allow them to use the IdP:

Still need more help? Feel free to reach out to our Support team via the chat button in the bottom right corner :slight_smile: