Skip to content

Single Sign-On with Google Workspace ​

This guide demonstrates how to configure single sign-on with Google Workspace.

Google Workspace configuration ​

Log in to your Google Workspace Admin Console.

Add application ​

Google Admin Console, Web and mobile apps page with the Add app dropdown

  1. Open the navigation panel, Apps → Web and mobile apps
  2. Click the Add app dropdown at the top of the main page area
  3. Click Add custom SAML app

App details ​

Add custom SAML app wizard, App details step

  1. In the App name field, enter Deskradar

  2. In the Description field, enter Interactive Floor Plans

  3. Upload the application logo into the Upload logo field

    Deskradar logo
  4. Click Continue

Google identity provider information ​

Add custom SAML app wizard, Google Identity Provider details step

Copy the contents of the SSO URL, Entity ID and Certificate fields.

Click Continue.

Service provider details ​

Add custom SAML app wizard, Service provider details step with ACS URL and Entity ID filled in

Fill in the form with the following information, replacing YOUR_DOMAIN with your Deskradar instance domain.

  • ACS URL (Assertion Consumer Service): https://YOUR_DOMAIN.deskradar.cloud/auth/sso/saml/consume
  • Entity ID: https://YOUR_DOMAIN.deskradar.cloud
  • Start URL: leave empty
  • Signed Response: check this box
  • Name ID Format: keep UNSPECIFIED selected
  • Name ID: select Basic Information and Primary Email

Click Continue.

Attribute mapping ​

Add custom SAML app wizard, Attribute mapping step with three mappings configured

Click the Add mapping button to add 3 mappings:

User fieldCategoryApplication attribute
First nameBasic InformationFirstName
Last nameBasic InformationLastName
Primary EmailBasic InformationEmail

Click Finish.

Enable service ​

Deskradar app settings in the Google Admin Console with the User access box

Click the User access box at the top of the page.

Service status set to ON for everyone

In the Service status box, select ON for everyone.

Click Save.

Deskradar configuration ​

Log in to your Deskradar workspace with an administrator account using your email and password.

Deskradar sign-in view

  1. Open the Team page by clicking the icon in the Sidebar.
  2. Switch to the Single Sign-On tab.
  3. Enable the SAML 2.0 authentication method.

Deskradar Team page, Single Sign-On tab with SAML 2.0 settings

  1. In the SAML SSO URL field, enter the value you obtained from the SSO URL field in the Google user interface.
  2. In the Identity Provider Issuer field, enter the value you obtained from the Entity ID field in the Google user interface.
  3. In the Public Certificate field, paste the certificate contents you obtained from the Certificate field in the Google user interface.
  4. Click Save settings.

Sign in to Deskradar with SSO ​

After configuration is complete, users can sign in to Deskradar using their Google work account.

Sign in from Deskradar ​

Launch your Deskradar instance by opening this URL in your browser: https://YOUR_DOMAIN.deskradar.cloud (replace YOUR_DOMAIN with your Deskradar instance domain). Click Enterprise Single Sign-On.

Enterprise Single Sign-On button on the Deskradar login view

  • You will be signed in to Deskradar directly if you’re already signed in on Google Workspace.
  • You will be redirected to the Google Workspace sign-in form if you’re not signed in yet. Enter your work account credentials there to sign in.
  • Upon successful sign-in with your work account credentials, you will be taken back to Deskradar and signed in.

Sign in from a Google app ​

Launch any Google Workspace application and sign in with your domain credentials.

Click the Apps icon.

Click the Deskradar icon.

Deskradar icon in the Google apps launcher