Google Workspace SSO

With Google Workspace (formerly G Suite) Single Sign-On (SSO) support, LDAP Server can become an identity provider for your Google Workspace domain. This allows users to sign in to Google Workspace services (such as Gmail or Google Calendar) using their accounts stored on LDAP Server, without the need to remember another set of login credentials.

Before you start:

  1. Go to your Google Workspace Admin Console and enable the Google Workspace Admin API. For detailed instructions, please consult Google Workspace documentation.
  2. Synchronize the accounts between your LDAP Server and Google Workspace with Google Cloud Directory Sync.

To configure Single Sign-On for your Google Workspace domain:

  1. Go to the Google Workspace SSO page.
  2. Check the box marked Enable Google Workspace SSO.
  3. Enter your Google Workspace domain name.
  4. Enter the URL of your Synology NAS that can be accessed by Google Workspace. Remember to specify the protocol (i.e., HTTP or HTTPS) and the port number. For example, http://www.myds.com:5000".
  5. Click the Apply button.
  6. Enter the username and password belonging to the super administrator of your Google Workspace domain.

Note:

  • If Google 2-step verification is enabled for your Google Workspace administrator account, please use your application-specific password instead. For more information, see Google's support documentation.