Overview
Please follow the instructions below to set up SSO via your Google Workspace account. You will need your Workspace administrator to perform these steps.
Configuration steps
- Log in to your Google Workspace account as an administrator, go into the Admin Console, access the Apps menu from the sidebar, and select "Web and mobile apps".
- Select “Add App” in the toolbar and click “Add custom SAML app”.
-
Enter “Dandi” for the app name and click Continue.
-
On the Google Identity Provider details step, download the metadata file from option 1 and send it to your customer success representative.
-
On the service providers details page:
-
Add the ACS URL: https://dandi-184419.firebaseapp.com/__/auth/handler
-
Add the Entity ID: https://app.itsdandi.com
-
Change “Name ID format” from UNSPECIFIED to EMAIL
-
-
On the attribute mapping page, create three mappings from Google Directory to App Attributes:
-
Primary email → email
-
First name → firstName
-
Last name → lastName
-
-
Click the “Finish” button, which will take you to the details page for the app you just created. If you click to expand the “User access” panel, you can toggle the service status to “ON for everyone,” or limit access as appropriate. Please check with your internal Dandi administrator on access controls requirements.
-
Note that new apps can take up to 24 hours to activate through Google. In order to avoid users seeing the "app_not_configured_for_user" error that can occur during this time, Dandi will configure and enable SSO after 24 hours upon receiving the required data from step 4.
Please reach out to support@itsdandi.com if you have any questions.