Connecting Timely with Microsoft Azure AD

Plans: Unlimited+ · Permissions: Admins

Integrations Single Sign-On (SSO) Handbook Invite Azure AD users to Timely and enable single sign-on for faster access.

For teams that use Microsoft Azure AD, you can connect it directly to Timely to add existing and new Azure AD users automatically.

Timely supports two configuration options: SAML SSO (single sign-on) and OAuth 2.0 SSO. OAuth 2.0 SSO is available for Azure AD and Microsoft accounts.

Import and sync Azure AD users to Timely

  1. Head to Settings > Integrations within Timely, then click “Microsoft Azure AD”

Azure AD in settings

  1. Enter your tenant ID (found in the “Properties” section of your Azure Active Directory)

Azure AD tenant ID

  1. Submit that ID then select the account you want to connect

Select Azure AD account

  1. Check the “Consent on behalf of your organization” checkbox, then click “Accept”

Azure AD permissions

After accepting, Azure AD users will be synced to Timely.

Setting up SAML SSO

These steps can also be done independently to set up Azure AD SAML SSO without syncing users.

SP configuration steps

  1. In the Azure portal, head to the Azure AD SAML Toolkit application integration page. Under Manage, select Single sign-on, then SAML.

Azure SAML setup

  1. Click the edit icon for Basic SAML Configuration

Edit SAML configuration

  1. Enter these values:
    • Identifier (Entity ID): https://auth.memory.ai/
    • Reply URL: https://auth.memory.ai/users/saml/auth

SAML URLs

  1. In the SAML Signing Certificate section, download the Certificate (Base64)

Download certificate

  1. Copy the URLs from the Set up Azure AD SAML Toolkit section

SAML toolkit URLs

  1. Share the User Attributes & Claims which define unique Email, UUID, and Name for your users

User attributes

Completing the SAML SSO process

Email [email protected] with:

  1. Certificate (Base64) from step 4
  2. URLs from step 5
  3. User attributes from step 6
  4. Email domains for all current and future users
  5. Optional: List of Azure AD departments to limit synced users

FAQs

Can I configure SAML SSO without importing users automatically?

Yes — skip the “Integrations” section in Timely and begin with the SAML SSO SP configuration steps above. Then email [email protected] to finalize.

Do I need to do anything after setting up the integration?

New team members will be added as Employee-level users without project access. You’ll want to edit them individually to set the right projects, rates, and privileges.

Do employees need to set anything up?

Nope! They’ll be able to use SSO as soon as the setup process is finished.

What about users added to Azure AD later?

The import continues automatically — new users will be caught and connected for you.

Can I choose specific users or groups to import?

By default, all valid users sync. To limit by department, contact [email protected] before connecting the integration.

Last updated April 14, 2026