Google Workspace
  • 14 Mar 2024
  • 1 Minute to read
  • Dark
    Light
  • PDF

Google Workspace

  • Dark
    Light
  • PDF

Article summary

Step by step guide to configure Google Workspace as a SAML Identity Provider within Visma

Follow the steps below to configure  Google Suite as a SAML IdP within Visma. Keep the Authentication Settings open in your browser while you access your Google Suite in a new window or tab. You'll need to return to the Single Sign-On page to complete the configuration steps.

Prerequisites

  • Google WorkSpace account with Admin rights

  • All of your users under your account in Visma will need a pre-existing account in Google Workspace with exactly the same domain email address.

Configure Visma Single Sign-On to use Google Suite

  1. Log into your  Google Admin page.

  2. While in the Admin Console click on  Apps and then click on  Web and mobile apps.

  3. At the top of the "Apps" table click the  Add App dropdown and select  Add custom SAML app. You'll be taken to a new page.

  4. On the "Apps details" page type a name that will let you easily identify the provider. Click  CONTINUE.

    AuthSettings_SSO_Google_Step4
  5. The “Google Identity Provider details” page contains the information needed to configure Visma Single Sign-On. You can  Download the metadata now or later, after you finish the setup. Click  Continue. You will need the metadata to upload it into Authentication Settings section  3. Upload Google Workspace metadata into Visma.

    AuthSettings_SSO_Google_Step5
  6. While on the “Add custom SAML app” page copy:

  • the  Entity ID from Authentication Settings and paste it into the  Entity ID field in Google.

  • the  SAML Assertion Consumer from Authentication Settings and paste it into the  ACS URL field in Google.

  1. Leave  Start URL empty.

  2. Check the box next to  Signed Response.

  3. Set  Name ID Format to EMAIL and click  CONTINUE.

    AuthSettings_SSO_Google_Step9
  4. On the “Attribute Mapping” click  ADD MAPPING two times. New rows will appear on the page.

    AuthSettings_SSO_Google_Step10
  5. Use the table below to add mappings onto the Google page from left to right for each row.

    AuthSettings_SSO_Google_Step11
  6. Click  FINISH. You’ll be taken to the application’s page in “Web and mobile apps”.

    AuthSettings_SSO_Google_Step12
  7. Download the metadata and upload it into Authentication Settings section  3. Upload Google Workspace metadata into Visma.

    AuthSettings_SSO_Google_Step13
  8. On the  Application page click the down arrow in the upper-right corner of “User access”. You’ll be taken to a new page.

  9. Under “Service status” click ON for everyone and click SAVE.

    AuthSettings_SSO_Google_Step15
  10. Continue with your Advanced configuration in Authentication Settings and click  Save.

    AuthSettings_SSO_Google_Step16

Testing Single Sign-On after Visma has made its configuration

  1. To test SSO access either go to Google Apps in the right upper corner of the navigation bar( the dotted square) and choose your new application or go to you Visma MyDomain, e.g. https://example.my.connect.visma.com directly, and then click the Google Workspace button.

AuthSettings_SSO_Google_Test_Step1


Was this article helpful?

What's Next
Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.