You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: pages/account/customer/ovhcloud-account-connect-google-workspace/guide.en-gb.md
+23-23Lines changed: 23 additions & 23 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,5 +1,5 @@
1
1
---
2
-
title: Enable Google Workspace SSO connections with your OVHcloud account
2
+
title: Enabling Google Workspace SSO connections with your OVHcloud account
3
3
slug: connect-sso-googleworkspace
4
4
excerpt: "Learn how to associate your Google Workspace service with your OVHcloud account via SAML 2.0"
5
5
section: Advanced Usage
@@ -11,7 +11,7 @@ updated: 2023-03-30
11
11
12
12
## Objective
13
13
14
-
You can use a**unique**Single Sign-On to sign in to your OVHcloud account. To enable these connections, your OVHcloud account and Google Workspace accounts must be configured using Security Assertion Markup Language (SAML) authentication.
14
+
You can use unique**single sign-on**(SSO) to sign in to your OVHcloud account. To enable these connections, your account and Google Workspace accounts have to be configured using Security Assertion Markup Language (SAML) authentication.
15
15
16
16
**This guide explains how to associate your OVHcloud account with an external Google Workspace service.**
17
17
@@ -42,15 +42,15 @@ Go to `Apps`{.action} then `Web and mobile apps`{.action}.
42
42
43
43
Click `Add app`{.action} then `Add custom SAML app`{.action}.
44
44
45
-
In the "App details" step, add a name for this interconnection. If you are not inspired, **OVHcloud**is a good name. Click `Continue`{.action}.
45
+
In the "App details" step, add a name for this interconnection, **OVHcloud**for example. Click `Continue`{.action}.
Enable access to this application by clicking `OFF for everyone`{.action} in the "User Access" section. Click `ON for everyone`{.action} then the `SAVE`{.action} button.
72
+
Enable access to this application by clicking `OFF for everyone`{.action} in the "User access" section. Click `ON for everyone`{.action} then the `SAVE`{.action} button.
73
73
74
74
{.thumbnail}
75
75
@@ -86,11 +86,11 @@ Your Google Workspace service now trusts OVHcloud as a service provider. The nex
86
86
87
87
To add Google workspace as a trusted identity provider, you need to provide the identity provider metadata in the [OVHcloud Control Panel](https://www.ovh.com/auth/?action=gotomanager&from=https://www.ovh.co.uk/&ovhSubsidiary=GB).
88
88
89
-
Once logged-in, click your profile at the top right.
89
+
Once loggedin, click your profile at the top right.
90
90
91
91
{.thumbnail}
92
92
93
-
Click your name to access your profile management page.
93
+
Click on your name to access your profile management page.
94
94
95
95
{.thumbnail}
96
96
@@ -102,11 +102,11 @@ Click the `SSO Login`{.action} button.
@@ -121,37 +121,37 @@ The `...`{.action} button allows you to update or delete the SSO, and view its d
121
121
Your Google Workspace is now considered a trusted identity provider. However, you still need to add groups to your OVHcloud account.
122
122
123
123
> [!warning]
124
-
> If you try to connect via SSO at this point, you will probably obtain a `Not in valid groups` error message.
124
+
> If you try to connect via SSO at this point, you will probably receive a `Not in valid groups` error message.
125
125
>
126
-
> Indeed, your OVHcloud account checks whether the authenticating user belongs to an existing group on the account.
126
+
> That is because your OVHcloud account checks whether the authenticating user belongs to an existing group on the account.
127
127
>
128
128
129
-
To do this, you must authorise the groups that will be transmitted from Google Workspace to OVHcloud. These groups are the same as those used to categorize your users.
129
+
To resolve this, authorise the groups that will be transmitted from Google Workspace to OVHcloud. These groups are the same as those used to categorise your users.
130
130
131
-
To do this, log on to the [Google Workspace](https://admin.google.com) administration interface with your administrator account.
131
+
To do this, log on to the [Google Workspace](https://admin.google.com) administration interface with your administrator account.
132
132
133
133
Go to `Apps`{.action} then `Web and mobile apps`{.action}.
134
134
135
135
{.thumbnail}
136
136
137
-
Click the application line you added earlier.
137
+
Click on the line for the application you added in the previous step.
138
138
139
139
{.thumbnail}
140
140
141
141
Click `SAML attribute mapping`{.action} to edit the mapping of information shared between Google Workspace and OVHcloud.
In the "Group membership (optional)" category, add any groups that you want to allow to connect to OVHcloud. In the "App attribute" field, enter `Group`.
145
+
In the "Group membership (optional)" section, add any groups that you want to allow to connect to OVHcloud. In the "App attribute" field, enter `Group`.
146
146
147
147
You must then assign **roles** to these user groups at OVHcloud. Otherwise, your OVHcloud account does not know what the user is allowed to do and, by default, no rights are assigned.
148
148
149
149
{.thumbnail}
150
150
151
-
From the OVHcloud Control Panel, add a group by clicking the `Declare Group`{.action} button and filling in the fields:
151
+
From the OVHcloud Control Panel, add a group by clicking the `Declare a group`{.action} button and filling in the fields:
152
152
153
-
-**Group name**: group name within Google Workspace
154
-
-**Role**: level of entitlement granted to this group
153
+
-**Group name**: Group name within Google Workspace
154
+
-**Role**: Level of rights granted to this group
155
155
156
156
{.thumbnail}
157
157
@@ -161,7 +161,7 @@ You can then verify that the group is added to your OVHcloud account in the "Gro
161
161
162
162
{.thumbnail}
163
163
164
-
When you later log in with a user in the **Intern** group, your OVHcloud account will recognize that the user has the UNPRIVILEGED role specified by his group.
164
+
When you later log in with a user from the **Intern** group, your OVHcloud account will recognise that the user has the role "UNPRIVILEGED" specified by his group.
165
165
166
166
You will then be able to log out of your account and log back in with your Google Workspace as an identity provider.
167
167
@@ -171,15 +171,15 @@ On [the OVHcloud login page](https://www.ovh.com/auth/?action=gotomanager&from=h
171
171
172
172
{.thumbnail}
173
173
174
-
You are then redirected to your Google Workspace login page. Enter a login/password for a user of your Google Workspace, then click the `Sign in`{.action} button.
174
+
You are then redirected to your Google Workspace login page. Enter the login and password for a user of your Google Workspace, then click the `Sign in`{.action} button.
175
175
176
176
{.thumbnail}
177
177
178
178
You are now logged in with the same customer ID, but through your Google Workspace user.
179
179
180
180
{.thumbnail}
181
181
182
-
## Go Further
182
+
## Go further
183
183
184
184
[Creating an OVHcloud account](https://docs.ovh.com/gb/en/customer/create-ovhcloud-account/)
0 commit comments