Google Workspace Enterprise Connection
Google Workspace can provide SAML SSO for users in your Google organization.
ACS URL
Section titled “ACS URL”In the Google Admin SAML app, set the ACS URL to:
https://<tenant-name>.<region>.authaction.com/oauth2/saml/callbackSet the Entity ID (SP) to your AuthAction tenant URL.
Fields to copy into AuthAction
Section titled “Fields to copy into AuthAction”| Field in AuthAction | Where to find |
|---|---|
| IdP SSO URL | Google Admin > Apps > Web and mobile apps > your SAML app > SSO URL |
| Entity ID / Issuer | Google Admin > same app > Entity ID |
Step 1: Add a custom SAML app in Google Admin
Section titled “Step 1: Add a custom SAML app in Google Admin”- Go to Google Admin > Apps > Web and mobile apps.
- Click Add app > Add custom SAML app.
- Name the application (for example “AuthAction”).
- Download or note the SSO URL and Entity ID for Google as the IdP.
- Set ACS URL and Entity ID (SP) as described above.
- Set Name ID format to EMAIL so the assertion identifies users by email.
Step 2: Configure Google Workspace in AuthAction
Section titled “Step 2: Configure Google Workspace in AuthAction”- In AuthAction, go to Connections > Enterprise Connections.
- Select Google Workspace.
- Enter the IdP SSO URL and Entity ID / Issuer from Google Admin.
- Upload Google’s X.509 certificate if required for your setup.
- Save.
Step 3: Enable and test
Section titled “Step 3: Enable and test”Assign the SAML app to users or groups in Google Admin, enable the connection for your AuthAction applications, and test login.