Google Workspace
Configuring Key9 Identity SAML SSO with Google Workspace
Google documentation can be found here.
To setup Google Workspace, we just need two pieces of information.
The only required parameter is the user email address, so we will assign the default SamlID field as that parameter.
Workplace Domain:Enter the domain you registered with Google Workspace (do not include https://). Example: yourcompany.com
Start App:This is the default Google Application that you will be redirected to after login (lowercase). Examples: dashboard, mail, calendar
You will need to be able to access the Admin Console to setup SSO.
After you have created your Key9 application, click the SSO tab in the side navigation. This will contain information needed to configure Google Workspace.
Sign in to your Google Admin console.
In the Admin console, go to Menu and then Security and then Authentication and then SSO with third party IdP.
In Third-party SSO profiles, click Add SAML profile.
Enter a name for the profile (Key9 Identity).
(Optional) You can Download SAML Metadata file from the side navigation of your Key9 application, then click upload XML file to provide IdP information, then skip to Step 8
Fill in the following information:
Copy the Key9 SSO url to the Sign-in page URL field.
Copy the Key9 SLO to the Sign-out page URL field.
Enter a change password URL for your IdP... LOL, just kidding we don't use those things!
Click Upload certificate to upload your certificate file. (To view and copy the x509 certificate in Key9, select View Certificate Details from the Certificate Options dropdown menu, then click the copy icon.)
Click Save.
-------------------
By default, applications are not active upon creation. Active applications are immediately available to assign groups. Applications should only be activated when you have configured the Service Provider (SP).
Last updated