Skip to content
Talk to an Engineer Dashboard

Google Workspace - OIDC

Learn how to set up OpenID Connect (OIDC) Single Sign-On (SSO) using Google Workspace, with step-by-step instructions for app registration and client configuration.

This guide walks you through configuring Google Workspace as your OIDC identity provider. You’ll create a Google OAuth app, configure an OAuth client, provide the required OIDC values in the SSO Configuration Portal, test the connection, and then enable Single Sign-On.

  1. Sign in to Google Cloud Console and open the project you want to use for this integration. Search for Google Auth Platform and open it from the results list.

    Search for Google Auth Platform in Google Cloud Console

    Click Get started to begin the OAuth app setup.

    Google Auth Platform overview with Get started button

    Enter the App Information and select the appropriate User support email. Google OAuth app configuration flow

    Select the Audience as Internal and click Next. Google OAuth consent screen with Internal audience selected

    Add the relevant email address in the Contact Information and click Next. Google OAuth consent screen contact information step

    Agree to Google’s policy and click Continue and then Create. Google OAuth consent screen policy agreement and Create button

  2. From the left-side menu, navigate to Clients and click Create client. Google Auth Platform Clients page with Create client button

    In Application type dropdown, select Web Application and add Name for the client. Create OAuth client form with Web application selected and client name entered

    Copy the Redirect URI from SSO Configuration Portal. SSO Configuration Portal showing the Google OIDC Redirect URI

    On Google console, under the Authorized redirect URIs, click Add URI. Add the above copied URI to this field and click Create. Google OAuth client form with Authorized redirect URIs section

  3. After the client is created, copy the Client ID and Client Secret from Google Cloud. Google Cloud OAuth client details showing Client ID and Client Secret

    Add the above values under Identity Provider Configuration in the SSO Configuration Portal. For Issuer URL, use https://accounts.google.com. Once all values are entered, click Update. SSO Configuration Portal fields for Google Client ID and Client Secret SSO Configuration Portal showing the Google Issuer URL after update

  4. In the SSO Configuration Portal, click Test Connection. If everything is configured correctly, you will see a Success response.

  5. Once the test succeeds, click Enable Connection to allow users in your organization to sign in with Google Workspace OIDC. SSO Configuration Portal with Enable Connection button for Google Workspace OIDC

    This completes the Google Workspace OIDC SSO setup for your application.