Skip to content

Google Workspace Enterprise Connection

Google Workspace can provide SAML SSO for users in your Google organization.

In the Google Admin SAML app, set the ACS URL to:

https://<tenant-name>.<region>.authaction.com/oauth2/saml/callback

Set the Entity ID (SP) to your AuthAction tenant URL.

Field in AuthActionWhere to find
IdP SSO URLGoogle Admin > Apps > Web and mobile apps > your SAML app > SSO URL
Entity ID / IssuerGoogle Admin > same app > Entity ID

Step 1: Add a custom SAML app in Google Admin

Section titled “Step 1: Add a custom SAML app in Google Admin”
  1. Go to Google Admin > Apps > Web and mobile apps.
  2. Click Add app > Add custom SAML app.
  3. Name the application (for example “AuthAction”).
  4. Download or note the SSO URL and Entity ID for Google as the IdP.
  5. Set ACS URL and Entity ID (SP) as described above.
  6. Set Name ID format to EMAIL so the assertion identifies users by email.

Step 2: Configure Google Workspace in AuthAction

Section titled “Step 2: Configure Google Workspace in AuthAction”
  1. In AuthAction, go to Connections > Enterprise Connections.
  2. Select Google Workspace.
  3. Enter the IdP SSO URL and Entity ID / Issuer from Google Admin.
  4. Upload Google’s X.509 certificate if required for your setup.
  5. Save.

Assign the SAML app to users or groups in Google Admin, enable the connection for your AuthAction applications, and test login.