Configure a Google Workspace SAML application

You can integrate Google Workspace with Vantage to provide single sign-on (SSO) services. You should also refer to the Google Workspace documentation for more details on their solution. This topic describes Vantage-specific configuration details when using Google Workspace as your identity provider (IdP).

The Google Workspace group that is used for single sign-on (SSO) with Vantage must have the same name as the group in Vantage.

  1. In the Google Workspace Admin console Home page, navigate to Apps > Web and Mobile Apps
  2. Select Add App.
  3. Select Add custom SAML app.
  4. Enter a name such as Vantage.
  5. Optional: Upload an image to use as an icon in the security assertion markup language (SAML) app.

  6. Select Continue.
  7. Under Option 1: Download IdP metadata, select Download Metadata.
  8. Save this file to a location that the browser that you use for Vantage can access.
  9. Select Continue.
  10. In the Service Provider Details window, specify the Google Identity Provider details for the app.
    1. In the ACS URL field, enter the Assertion Consumer Service (ACS) URL for Vantage: https://YOUR_VANTAGE_URL/api/v1/saml/auth
    2. In the Entity ID field, enter the Service Provider (SP) Entity ID for Vantage: https://YOUR_VANTAGE_URL/api/v1/saml/metadata
    3. In the Name ID section, from the Name ID format dropdown, select EMAIL .
    4. In the Name ID dropdown, select Basic Information > Primary Email.
  11. Select Continue.
  12. Specify how Google's directory attributes are mapped to the Vantage app's attributes.
    1. On the left, select an attribute from those defined in Google Workspace.
    2. On the right, enter nozominetworks-group-name
    3. Select ADD MAPPING.


  13. Select Finish.
  14. Before you continue, make sure that you grant your users access to the new Vantage application. The simplest approach is to enable ON for everyone for Google Workspace's User access option.
  15. Configure Vantage for SSO.
The application has been configured.