Connect Google Workspace with SAML
This guide explains how to use Casdoor as the SAML identity provider (IdP) for single sign-on (SSO) to Google Workspace.
Learning outcomes
- Create a certificate for the SAML responses.
- Configure a Casdoor application for Google Workspace.
- Add Casdoor as a third-party IdP in Google Workspace.
- Sign in to Google through Casdoor.
What you need
- A Google Workspace domain with administrator access
- An application in Casdoor
Create a certificate in Casdoor
-
In the Casdoor admin console, add an X.509 certificate with the RSA algorithm. See Certificates.
-
Download the certificate.

Configure the Casdoor application
-
Open the edit page of the application.
-
In Cert, select the certificate, and add your Google domain, for example
google.com, to Redirect URLs.
-
Set SAML reply URL to
https://www.google.com/a/<your-domain>/acs. For the ACS URL, see SSO assertion requirements in the Google Workspace help.
-
Copy the URL of the sign-in page of the application.

-
Save the application.