You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: src/content/docs/cloudflare-one/email-security/setup/post-delivery-deployment/bcc-journaling/bcc-setup/gmail-bcc-setup/enable-gmail-integration.mdx
+57-35Lines changed: 57 additions & 35 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -15,50 +15,72 @@ To enable Gmail BCC integration:
15
15
16
16
## Create an integration
17
17
18
-
1. Name your integration, then select **Next**.
19
-
2. Create a Service Account in your GCP Project:
20
-
1. On the [Google Cloud Console](https://console.cloud.google.com/welcome/new), go to the sidebar, select **APIs & Services**, then select **Credentials**.
3. Fill in the details to create a service account:
23
-
-**Service account name**: Enter `Message Retraction Service Account`.
24
-
-**Service account ID**: Enter `message-retraction-service-acc`.
25
-
-**Service account description**: Enter `Email Security Message Retraction`.
26
-
- Select **CREATE AND CONTINUE**.
27
-
4. In **Grant this service account access to project**, select **Select a role** > Choose **Owner**. Select **CONTINUE**, then select **DONE**.
28
-
5. Go back to **Credentials** on the sidebar, and select your service account under **Service Accounts**. In **Details**, take note of the **Unique ID**.
29
-
6. Select **Advanced settings** > **VIEW GOOGLE WORKSPACE ADMIN CONSOLE**, then enter your password. This will redirect you to the Google admin portal.
30
-
7. On the sidebar, select **Security** > **Access and data control** > **API controls** > Select **MANAGE DOMAIN WIDE DELEGATION**.
31
-
8. Select **Add new** > Add a new client ID:
32
-
-**Client ID**: Enter the **Unique ID** you took note of in step 5.
- On the [Google Cloud Console](https://console.cloud.google.com/welcome/new), select **Service Accounts** on the sidebar:
18
+
Name your integration, then select **Next**.
19
+
20
+
### Create a Service Account in your GCP Project
21
+
22
+
1. Once you have named your integration, select **Next**.
23
+
2. On the [Google Cloud Console](https://console.cloud.google.com/welcome/new), go to the sidebar, select **APIs & Services**, then select **Credentials**.
4. Fill in the details to create a service account:
26
+
-**Service account name**: Enter `Message Retraction Service Account`.
27
+
-**Service account ID**: Enter `message-retraction-service-acc`.
28
+
-**Service account description**: Enter `Email Security Message Retraction`.
29
+
- Select **CREATE AND CONTINUE**.
30
+
5. In **Grant this service account access to project**, select **Select a role** > Choose **Owner**. Select **CONTINUE**, then select **DONE**.
31
+
6. Go back to **Credentials** on the sidebar, and select your service account under **Service Accounts**. In **Details**, take note of the **Unique ID**.
32
+
7. Select **Advanced settings** > **VIEW GOOGLE WORKSPACE ADMIN CONSOLE**, then enter your password. This will redirect you to the Google admin portal.
33
+
8. On the sidebar, select **Security** > **Access and data control** > **API controls** > Select **MANAGE DOMAIN WIDE DELEGATION**.
34
+
9. Select **Add new** > Add a new client ID:
35
+
-**Client ID**: Enter the **Unique ID** you took note of in step 5.
- Use the Client ID and copy the scopes to create a new API client. Refer to [Delegate domain-wide authority to your service account](https://cloud.google.com/chronicle/docs/soar/marketplace-integrations/google-alert-center?_gl=1*skktsb*_ga*MTMxODg5NDExMy4xNzI5NjA1MzYy*_ga_WH2QY8WWF5*MTcyOTc3MDg2Ny40LjEuMTcyOTc3MDg5OC4yOS4wLjA.#delegate_domain-wide_authority_to_your_service_account). Then, select **Next**.
58
-
8.**Confirm Workspace Administrator Email**: Enter the email associated with the Google Workspace Administrator account. Your email must match the email associated with your Google Workspace account, or else your integration will not work.
59
-
9. Select **Create integration**.
60
-
10. Once you created your integration, you will be redirected to the **Review details** page, where you will be able to review **Integration details**.
61
-
11. Review your details, then select **Complete Email Security set up** > **Continue to Email Security**.
63
+
64
+
### Log in to Google Workspace Admin Console
65
+
66
+
Log in to Google Workspace Admin Console: Enter your password and log in to the Google Workspace Admin Console.
67
+
68
+
### Create a Domain-Wide Delegation API Client
69
+
70
+
1. Copy the **Client ID** and **Scopes** displayed on the Zero Trust dashboard.
71
+
2. On Google Admin, go to **Security** > **Access and data control** > **API controls**.
4. Use the Client ID and copy the scopes to create a new API client. Refer to [Delegate domain-wide authority to your service account](https://cloud.google.com/chronicle/docs/soar/marketplace-integrations/google-alert-center?_gl=1*skktsb*_ga*MTMxODg5NDExMy4xNzI5NjA1MzYy*_ga_WH2QY8WWF5*MTcyOTc3MDg2Ny40LjEuMTcyOTc3MDg5OC4yOS4wLjA.#delegate_domain-wide_authority_to_your_service_account). Then, select **Next**.
74
+
75
+
### Confirm Workspace Administrator Email
76
+
77
+
Enter the email associated with the Google Workspace Administrator account. Your email must match the email associated with your Google Workspace account, or else your integration will not work.
78
+
79
+
### Create integration
80
+
81
+
1. Select **Create integration**.
82
+
2. Once you created your integration, you will be redirected to the **Review details** page, where you will be able to review **Integration details**.
83
+
3. Review your details, then select **Complete Email Security set up** > **Continue to Email Security**.
0 commit comments