Preparation
This guide assumes you are using GSuite for access to Workplace. The process for SWOOP is similar to Workplace except we do not do directory synchronisation.
The starting point for this guide is that you are logged in as a the GSuite administrator: (https://admin.google.com )
You will need a ACS URL that corresponds to your SWOOP instance in the following format:
https://<your name>.swoopanalytics.com/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp
You will need an Entity ID URL:
https://<your name>.swoopanalytics.com/simplesaml/module.php/saml/sp/metadata.php/default-sp
You starting URL is:
https://<your name>.swoopanalytics.com
For convenience, you can copy/paste the URLS from here: ('urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST' for ACS and 'EntityID'):
https://<your name>.swoopanalytics.com/simplesaml/module.php/saml/sp/metadata.php/default-sp?output=xhtml
(PS: It would be nice if GSuite read the meta data but it doesn't)
Replace '<your name>' with your SWOOP domain.
Setup
From the main GSuite administrator ( https://admin.google.com ):
- Click on the 'Apps (manage app and their settings)' and then 'SAML apps (Manage SSO and User Provisioning).
- Click on '+' to add a new App
- Click on 'SET UP MY OWN CUSTOM APP' at the bottom.
- Download the 'IDP metadata' file (send this to us).
- Click 'NEXT'
- Fill in this 'Basic information for your Custom App' as you like it and click 'NEXT'.
- Fill in the ACS URL, Entity URL and Start URL as per above.
- Set Name ID Format to EMAIL and click NEXT
- Click next for the 'Attribute Mapping'
Here is what the configuration should look like:
Comments
0 comments
Please sign in to leave a comment.