- 14 Mar 2024
- 1 Minute to read
- Print
- DarkLight
- PDF
Google Workspace
- Updated on 14 Mar 2024
- 1 Minute to read
- Print
- DarkLight
- PDF
Step by step guide to configure Google Workspace as a SAML Identity Provider within Visma
Follow the steps below to configure Google Suite as a SAML IdP within Visma. Keep the Authentication Settings open in your browser while you access your Google Suite in a new window or tab. You'll need to return to the Single Sign-On page to complete the configuration steps.
Prerequisites
Google WorkSpace account with Admin rights
All of your users under your account in Visma will need a pre-existing account in Google Workspace with exactly the same domain email address.
Configure Visma Single Sign-On to use Google Suite
Log into your Google Admin page.
While in the Admin Console click on Apps and then click on Web and mobile apps.
At the top of the "Apps" table click the Add App dropdown and select Add custom SAML app. You'll be taken to a new page.
On the "Apps details" page type a name that will let you easily identify the provider. Click CONTINUE.
The “Google Identity Provider details” page contains the information needed to configure Visma Single Sign-On. You can Download the metadata now or later, after you finish the setup. Click Continue. You will need the metadata to upload it into Authentication Settings section 3. Upload Google Workspace metadata into Visma.
While on the “Add custom SAML app” page copy:
the Entity ID from Authentication Settings and paste it into the Entity ID field in Google.
the SAML Assertion Consumer from Authentication Settings and paste it into the ACS URL field in Google.
Leave Start URL empty.
Check the box next to Signed Response.
Set Name ID Format to EMAIL and click CONTINUE.
On the “Attribute Mapping” click ADD MAPPING two times. New rows will appear on the page.
Use the table below to add mappings onto the Google page from left to right for each row.
Click FINISH. You’ll be taken to the application’s page in “Web and mobile apps”.
Download the metadata and upload it into Authentication Settings section 3. Upload Google Workspace metadata into Visma.
On the Application page click the down arrow in the upper-right corner of “User access”. You’ll be taken to a new page.
Under “Service status” click ON for everyone and click SAVE.
Continue with your Advanced configuration in Authentication Settings and click Save.
Testing Single Sign-On after Visma has made its configuration
To test SSO access either go to Google Apps in the right upper corner of the navigation bar( the dotted square) and choose your new application or go to you Visma MyDomain, e.g. https://example.my.connect.visma.com directly, and then click the Google Workspace button.