This guide assumes you are using GSuite for access to Workplace. The process for SWOOP is similar to Workplace except we do not do directory synchronisation.
The starting point for this guide is that you are logged in as a the GSuite administrator: (https://admin.google.com )
You will need a ACS URL that corresponds to your SWOOP instance in the following format:
You will need an Entity ID URL:
For convenience, you can copy/paste the URLS from here: ('urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST' for ACS and 'EntityID'):
(PS: It would be nice if GSuite read the meta data but it doesn't)
Replace '<your name>' with your SWOOP domain.
From the main GSuite administrator ( https://admin.google.com ):
- Click on the 'Apps (manage app and their settings)' and then 'SAML apps (Manage SSO and User Provisioning).
- Click on '+' to add a new App
- Click on 'SET UP MY OWN CUSTOM APP' at the bottom.
- Download the 'IDP metadata' file (send this to us).
- Click 'NEXT'
- Fill in this 'Basic information for your Custom App' as you like it and click 'NEXT'.
- Fill in the ACS URL, Entity URL and Start URL as per above.
- Set Name ID Format to EMAIL and click NEXT
- Click next for the 'Attribute Mapping'
Here is what the configuration should look like: