If you are setting up SSO for Entra ID (formerly Azure) these instructions will be useful for you!
Log in to Microsoft Entra ID (https://entra.microsoft.com/) using a Global Admin account.
Create a new "Enterprise Application", name it "Toggl".
On the "Overview" tab, select the option "2. Set up single sign on" and choose "SAML" on the next page.
Use the information from Toggl (on the right) to fill in the information in the new Enterprise Application:
Change "(2) Attributes & Claims" and switch the "Unique User Identifier" to "user.mail" instead of "user.userprincipalname".
Edit "(3) SAML Certificates" in the "Token signing certificate" section and set the "Signing Option" to one of the following options:
"Sign SAML Response and Assertion"
"Sign SAML Response"
Please avoid selecting the “assertion-only” option to avoid issues.
Still need more help? Feel free to reach out to our Support team via the chat button in the bottom right corner :)