You are here:
Create a SAML App for SSO in Google Workspace
To use Google as your identity provider while using single sign-on, configure the correct settings for your app integration.
Refer to Google's Set up your own custom SAML app documentation.
- Open the Google Workspace Admin Console.
- Go to Apps then Web and mobile apps.
- Click Add app and then Add custom SAML app.
- Enter the App name and click Continue.
- Scroll down to option 2 to find the values you need for SSO Setup. Copy the Entity ID field and download the certificate.
- In the Own Data Platform, paste the Entity ID into the Identity Provider Issuer field, upload the certificate.
- (Optional) To enable SP-Initiated sign in, enable SP-Initiated, copy the Sign On URL value from Google Workspace and paste it into the IdP SSO URL field.
-
Click Next.
It may take a few minutes to verify your settings.
- Once your settings are verified, the IdP Parameters will be displayed.
- In Google Workspace, click Continue.
-
Enter the IdP Parameters from the Own Data Platform in the corresponding fields:
Parameter in Own Parameter in Google Workspace Audience URI (SP Entity ID) Entity ID Single Sign-On URL ACS URL Default RelayState Start URL - In the Name ID format dropdown, select EMAIL.
- Click Continue.
-
Click Finish.
The Settings page for the newly created SAML App will open automatically.
- Click User Access.
- Set Service status to ON for everyone.
- Click Save.

