Skip to main content

Google Workspace (formerly G Suite) SSO

SureMDM offers seamless integration with Google Workspace (formerly G Suite) Single Sign-On (SSO), streamlining user access and enhancing security within your organization's device management ecosystem. With Google Workspace (formerly G Suite) SSO integration, users can access SureMDM using their existing Google Workspace (formerly G Suite) credentials. This eliminates the need for separate login information and simplifies the user experience.

Configure Settings in Google Admin Console

To configure SureMDM Single Sign-On with Google Workspace (formerly G Suite), follow these steps:

  1. Login to https://admin.google.com with Google Workspace (formerly G Suite) credentials.

  2. Click Apps.

  3. Click SAML apps.

  4. Click Add.

  5. Click Setup My Own Custom App.

  6. On the Google IdP Information prompt, copy SSO URL, Entity ID and Certificate and click Next. Click Download to download the certificate.

note

SSO URL, Entity ID and Certificate details are required while configuring SSO in 42Gears UEM.

  1. Enter the Application Name and select the logo file in Upload Logo and click Next. 

  2. Enter the ACS URL and Entity ID and click Next.

Example for ACS URL :https:// (SureMDM Server Path)/console/ssoconsumer/(Encrypted MDM Account ID)

note

Admin should enter their SureMDM Server Path and Account ID into the above-mentioned URL. To get the encrypted account ID, follow these steps:

  1. Navigate to the SureMDM Console > Account Settings > Enterprise Integrations > SAML Single Sign-On.

  2. On the SAML Single Sign-On screen, locate the Assertion URL to get the Encrypted Account ID.

  1. Click Finish.

  2. Click OK.

  3. Click Edit Service.

  4. Select ON for everyone and click Save.

Configure Settings in SureMDM Web Console (Google Workspace (formerly G Suite))

  1. Navigate to SureMDM Web Console > Settings (icon located at top right of the screen) > Account Settings > Enterprise Integrations > SAML Single Sign-On.

  2. Configure Single Sign-On settings for Google Workspace (formerly G Suite).

SettingsDescription
Enable Single Sign-OnSelect this option to allow configuring Single Sign-On settings.
Select Identity Provider (IdP)Select Google Workspace (formerly G Suite).
Service IdentifierEnter the Service Identifier Url that has copied from step no.6, configure settings in Google Admin Console.
Sign On Service UrlEnter the URL for Sign On service Url that has copied from step no.6, configure settings in Google Admin Console
Logout Service Url

Enter the URL for logout.

!Note: Generally, the URL for Sign On Service Url and Logout Service Url will be the same.

RolesChoose an option for the Roles from the drop-down menu. To know more see Configure Permissions for Role-Based Admin.
Device Group SetChoose an option for Device Group Set from the drop-down menu. To know more, see Configure Permissions for Device Group Set Based Admin
Jobs/Profiles Folder SetChoose an option for Device Group Set from the drop-down menu. To know more, see Configure Permissions for Job Folder Set Based Admin.
  1. Click Upload Certificate to upload the certificate  that has downloaded from Google Idp information prompt, refer to step no.6, configure settings in Google Admin Console and click Ok.
note

Ensure password field to be empty.

  1. Click Done.

  2. Login to Google Workspace (formerly G Suite) account in any browser and use the below url to login to SureMDM server.

    For example: https://\<SureMDM Server URL>/console/ssologin/(SureMDM Account ID)

note

Admins should enter their Server URL and Account ID into the above-mentioned URL.