How to Configure SAML Authentication for Toggl Track

Item

Details

Pre-check

  • Pre-configuration is required in Toggl Track.

  • You must create an account in Toggl Track using the same email address as your TrustLogin account.

  • For the latest configuration steps, please refer to the manual provided by Toggl Track.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the Administrator

Request SP to configure

Provisioning

API-based Provisioning supported (Account management available in TrustLogin)

SAML JITProvisioning supported (Account management available in TrustLogin; user deletion not available)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Toggl Track (SAML)".
    Toggl Track01.png


  3. Note the values for "Identity Provider URL" and "Issuer / Entity ID" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.03.png

Now, switch to the configuration on the Toggl Track side.
Do not click the "Register" button yet — open Toggl Track in a separate window.

Toggl Track Settings

  1. Go to your workspace and open "Setting > Single Sign On". Configure the settings as shown below, then click "Save" to save the settings.
    ACS URL Copy and note down
    ENTITY ID Copy and note down
    YOUR INTEGRATION NAME Any name of your choosing Note: In this example, "Trustlogin" is used
    I have access to an IdP metadata URL Uncheck this box
    SINGLE SIGN ON URL The "Identity Provider URL" from TrustLogin
    ENTITY ID The "Issuer / Entity ID" from TrustLogin
    X.509 CERTIFICATE Click "Select file" and upload the certificate you downloaded from TrustLogin
    DOMAIN The domain of the email address for which you are configuring SSO

    Toggl Track03.png

  2. Click "Enable SSO".
    Toggl Track04.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "ENTITY ID" you noted from Toggl Track
    ACS URL for the Service The "ACS URL" you noted from Toggl Track

    toggl.png

  2. Click the "Register" button to save.

TrustLogin User Settings

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page."
  2. On the "Register App" screen, select "Toggl Track (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it and click the "Register" button.

② When an Administrator Adds Members

  1. Search for and click the "Toggl Track (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.

How to Configure SAML Authentication for Toggl Track

Item

Details

Pre-check

  • Pre-configuration is required in Toggl Track.

  • You must create an account in Toggl Track using the same email address as your TrustLogin account.

  • For the latest configuration steps, please refer to the manual provided by Toggl Track.

Name ID

Email address

Custom attribute Note: For how to configure custom attributes, see here

SP Configuration

Configured by the Administrator

Request SP to configure

Provisioning

API-based Provisioning supported (Account management available in TrustLogin)

SAML JITProvisioning supported (Account management available in TrustLogin; user deletion not available)

None (accounts created in each system)

Access Method

SP-Initiated SSO

IdP-Initiated SSO

Device Compatibility

PC - Browser

PC - Desktop App

iOS - Default Browser (Safari)

iOS - TrustLogin Mobile App In-App Browser

iOS - Native App

Android - Default Browser (Chrome)

Android - TrustLogin Mobile App In-App Browser

Android - Native App

TrustLogin Admin Page Settings

  1. Log in to TrustLogin, open the "Admin Page > App" menu, and click the "Register App" button in the upper right of the screen.
    01.png

  2. Search on the "Register Company App" screen and select "Toggl Track (SAML)".
    Toggl Track01.png


  3. Note the values for "Identity Provider URL" and "Issuer / Entity ID" under "Identity Provider Information," and download the certificate using the "Get Certificate" button.03.png

Now, switch to the configuration on the Toggl Track side.
Do not click the "Register" button yet — open Toggl Track in a separate window.

Toggl Track Settings

  1. Go to your workspace and open "Setting > Single Sign On". Configure the settings as shown below, then click "Save" to save the settings.
    ACS URL Copy and note down
    ENTITY ID Copy and note down
    YOUR INTEGRATION NAME Any name of your choosing Note: In this example, "Trustlogin" is used
    I have access to an IdP metadata URL Uncheck this box
    SINGLE SIGN ON URL The "Identity Provider URL" from TrustLogin
    ENTITY ID The "Issuer / Entity ID" from TrustLogin
    X.509 CERTIFICATE Click "Select file" and upload the certificate you downloaded from TrustLogin
    DOMAIN The domain of the email address for which you are configuring SSO

    Toggl Track03.png

  2. Click "Enable SSO".
    Toggl Track04.png

Return to the TrustLogin Admin Page again.

TrustLogin Admin Page Settings (Continued)

  1. Configure the "Service Provider Settings" as follows.
    Entity ID The "ENTITY ID" you noted from Toggl Track
    ACS URL for the Service The "ACS URL" you noted from Toggl Track

    toggl.png

  2. Click the "Register" button to save.

TrustLogin User Settings

① When a User Adds the App from My Page

  1. Click the "Add App" button on "My Page."
  2. On the "Register App" screen, select "Toggl Track (SAML)" and click the "Next" button in the upper right of the screen.
  3. If you want to change the "Display Name," enter it and click the "Register" button.

② When an Administrator Adds Members

  1. Search for and click the "Toggl Track (SAML)" app in the "Admin Page > App" menu.
  2. Click "Add Member," select the user to add from the member list, and click the "Register" button to add them.