Single Sign On and Provisioning

Set up Single Sign-On for Microsoft Entra ID

Markdown Version | Reading Time: about 5 min.; Last Updated: 2026-10-04 04:25:19

TuCalendi lets you log in with the Single Sign-On feature through Microsoft Entra ID (formerly Azure Active Directory). In this article, you'll learn how to create an Entra ID application and configure Single Sign-On (SSO) for your TuCalendi account. Once you set up SSO, your users can access TuCalendi seamlessly with their Microsoft account (https://myaccount.microsoft.com).

This feature is only available with a TuCalendi Pro account.

Create and set up a Single Sign-On app in Microsoft Entra ID

Create an Entra ID application

  1. Sign in to the Azure portal (https://portal.azure.com). Once you've successfully signed in, open Microsoft Entra ID management.

Open Microsoft Entra ID

  1. In the left main menu, open or click "Enterprise applications" to see an overview of the applications you use.

Enterprise applications menu

  1. Click "New application" to start creating the application.

Start creating the application

  1. You're now in the overview of all applications you could install, but here you need to create your own application. To do this, click "Create your own application". Then give your application a name (whatever you like), select the option "Integrate any other application you don't find in the gallery" and click "Create" to create the application.

Create Entra ID application

Name the Entra ID application

  1. Now that you've created your own Microsoft Entra ID application, you should be in the overview of your new application. If not, just click "All applications" in the Enterprise applications overview. There you'll see all the applications you use, including the one you just created. Click your application and you should land in its overview. Now you can start configuring your application.

Set up the Entra ID application: add users

  1. For users to log in to TuCalendi through this application, the option "Enabled for users to sign-in?" must be set to "Yes". You can check this by clicking "Properties" under Manage in the menu. You should also check whether the option "Assignment required?" is also set to "Yes". We don't recommend setting this option to "No", because then any user could log in.

Entra ID properties

  1. Assign users and groups. You need to assign the users to the application who should be able to log in to TuCalendi via Single Sign-On through this application. To do this, click "Users and groups".

Users menu

  1. Then click "Add user/group". In the popup that follows, select all users who are allowed to log in to TuCalendi via Single Sign-On.

Add users

Select all users

  1. Once you've selected all users, just click "Assign". You can add or remove users at any time.

Assign users

Set up the Entra ID application: enable SAML SSO

  1. Set up SAML SSO. To do this, click "Single sign-on" in the menu and then SAML (TuCalendi uses the SAML (Security Assertion Markup Language) protocol to exchange authorization data). Please leave the settings that open afterwards open for now and continue with the next step.

Set up SAML SSO

For now, please just leave the following settings open.

SSO settings

  1. To finish setting up SSO (Single Sign-On), you now also need to enable Single Sign-On in your TuCalendi account. Go to your TuCalendi account and click the 3 dots in the top right menu. A menu opens where you select "Login settings".

TuCalendi menu Login settings

  1. Next, click the "+" to create a new connection.

Create SSO connection

  1. Then click the "Edit" icon and then "SSO settings" to open the data window. Now you'll copy the data from step 1 into TuCalendi and enter the data from TuCalendi into the SSO settings of your Entra ID application. The following image shows which data needs to go where.

SSO data matching

In your Entra ID application, edit section "(1) Basic SAML Configuration" and enter the data from TuCalendi (as shown in the image) into the corresponding fields. The 3 other fields

  • Sign on URL
  • Relay State (Optional)
  • Logout URL (Optional)

must stay empty.

  1. Now download the SAML certificate from "(3) SAML Certificates" in "Base64" format, open it with a text editor and copy its content. Paste the copied content into the "IdP (Identity Provider) certificate" field in the TuCalendi SSO settings.

Download SAML certificate

It should then look something like this:

TuCalendi SSO completed settings

  1. Copy the Application ID and paste it into the "Application ID" field in TuCalendi. You'll find the Application ID in the overview of your Entra ID application.

Enter Application ID

  1. Now just save everything, both in your TuCalendi account and in your Microsoft Entra ID account, and you're done.

If everything is set up correctly, all assigned users should now be able to log in to TuCalendi via SSO with their Microsoft account (https://myaccount.microsoft.com).

If you run into any problems or difficulties during setup, our support team (support@tucalendi.com) is happy to help and will assist you with the setup as best they can.