---
title: Enable Google Workspace SSO with SAML
description: Enable Google Workspace SSO with SAML for your Enterprise Arpio Account
---

[Skip to content](https://docs.arpio.io/enable-google-workspace-sso-with-saml#main-content)

English

Show submenu for translations

[Customer ticket portal](https://docs.arpio.io/tickets-view?hsLang=en)

- Home
- Products
- Pricing
- Blog
- Company

Open main navigation

Close main navigation

- Home
- Products
- Pricing
- Blog
- Company
- English
  
  Show submenu for translations
- [Customer ticket portal](https://docs.arpio.io/tickets-view)

 Welcome to Arpio Technical Docs

- There are no suggestions because the search field is empty.

1. [Arpio Documentation](https://docs.arpio.io/?hsLang=en)
2. [Arpio Reference Guides](https://docs.arpio.io/arpio-reference-guides?hsLang=en)
3. [Single Sign-On (SSO) Integration](https://docs.arpio.io/arpio-reference-guides?hsLang=en#single-sign-on-sso-integration)

# Enable Google Workspace SSO with SAML

## Enable Google Workspace SSO with SAML for your Enterprise Arpio Account

These steps will help you configure Google Workspace and Arpio so your Google Workspace users can access Arpio without supplying new authentication credentials.

Before you begin, open two web browser windows.  In the first window, sign in to the [Google Admin](https://admin.google.com/) page for your Google Workspace.  In the other, navigate to the Account page in your Arpio Console.

### Create a new application in Google

1. In the Arpio Account window, click on **ADD IDENTITY PROVIDER**, to see your **SAML Entity ID**, and **ACS URL**, you will need these later.
2. Switch to the Google Admin window.  Use the menu on the left to navigate to **Apps \> Web and mobile apps.**
3. Open the **Add app** drop-down menu at the top of the list of apps and choose **Add custom SAML app.**
4. In the **App details** page, enter a name you choose (like “Arpio”), optionally set a description and an icon, then click **Continue.**
5. In the **Google Identity Provider details** page, click the **Download Metadata** button and save the file to your computer, then click **Continue.![Google SAML SSO - IDP metadata screenshot](https://docs.arpio.io/hs-fs/hubfs/Google%20SAML%20SSO%20IDP%20metadata.png?width=479&name=Google%20SAML%20SSO%20IDP%20metadata.png)**
6. In the **Service provider details** page, enter the following information: 
     - ACS URL: **https://api.arpio.io/api/auth/samlAcs**
     - Entity ID: Paste the value you copied from the Arpio Account page in step 1
     - Name ID format: Choose **EMAIL**
     - Name ID: **Basic Information \> Primary emails![Google service provider details-global](https://docs.arpio.io/hs-fs/hubfs/Google%20service%20provider%20details-global.png?width=479&height=505&name=Google%20service%20provider%20details-global.png)**
7. Click **Continue** to finish the **Service Provider details** page.
8. In the **Attribute mapping** page, use the **Add mapping** button to add two required attributes: 
     - Map **Basic information \> First name** to the value **FirstName**
     - Map **Basic information \> Last name** to the value **LastName![Google Attribute mapping - screenshot](https://docs.arpio.io/hs-fs/hubfs/google%20attribute%20mapping%20cropped.png?width=512&name=google%20attribute%20mapping%20cropped.png)**
9. Click **Finish** to create the SAML app

### Configure your new Google application

Once you have completed the steps above, Google will show you the SAML app you created. 

Apps are created with **User access** set to **OFF for everyone**.  Change it to a value appropriate for your organization, like **ON for everyone**, or enabled for certain groups or organizational units.

![Google SAML App cropped-global](https://docs.arpio.io/hs-fs/hubfs/Google%20SAML%20App%20cropped-global.webp?width=637&height=388&name=Google%20SAML%20App%20cropped-global.webp)

To finish the integration with Arpio, Open the metadata file you downloaded in step 5 with a text editor and copy the entire contents of the file to your clipboard.  You’ll need this value in a later step.

1. Switch back to the Arpio Account window and click the **Add SAML Identity Provider** button
2. In the **Add a new SAML Identity Provider** window that appears, enter the following information: 
     1. Name: A name you choose like “Google Workspace”
     2. Metadata: Paste the contents of the metadata file that you opened with your text editor
        
        ![Screen Shot 2022-01-17 at 2.59.50 PM-global-2](https://docs.arpio.io/hs-fs/hubfs/Screen%20Shot%202022-01-17%20at%202.59.50%20PM-global-2.png?width=344&height=346&name=Screen%20Shot%202022-01-17%20at%202.59.50%20PM-global-2.png)
3. Click **Save**

Your Google SAML integration with Arpio is now complete.

**Note**: Google SAML apps often take several minutes to become fully functional after they are created.  If you receive errors authenticating to an app you just created, or to one you recently enabled for your users, wait a few minutes and try again.

- [Getting Started](https://docs.arpio.io/getting-started?hsLang=en#main-content)

    - [New Account Setup](https://docs.arpio.io/getting-started?hsLang=en#new-account-setup)
    - [New Application Setup](https://docs.arpio.io/getting-started?hsLang=en#new-application-setup)
- [Arpio Fundamentals](https://docs.arpio.io/arpio-fundamentals?hsLang=en#main-content)

    - [Platform Fundamentals](https://docs.arpio.io/arpio-fundamentals?hsLang=en#platform-fundamentals)
    - [Platform Features](https://docs.arpio.io/arpio-fundamentals?hsLang=en#platform-features)
- [Arpio Reference Guides](https://docs.arpio.io/arpio-reference-guides?hsLang=en#main-content)

    - [Arpio API](https://docs.arpio.io/arpio-reference-guides?hsLang=en#arpio-api)
    - [Lifecycle Events](https://docs.arpio.io/arpio-reference-guides?hsLang=en#lifecycle-events)
    - [Role-Based Access Controls (RBAC)](https://docs.arpio.io/arpio-reference-guides?hsLang=en#role-based-access-controls-rbac)
    - [Single Sign-On (SSO) Integration](https://docs.arpio.io/arpio-reference-guides?hsLang=en#single-sign-on-sso-integration)
    - [Test Planning](https://docs.arpio.io/arpio-reference-guides?hsLang=en#test-planning)
    - [Test & Recovery How-To](https://docs.arpio.io/arpio-reference-guides?hsLang=en#test-recovery-how-to)
- [AWS Reference Guides](https://docs.arpio.io/aws-reference-guides?hsLang=en#main-content)

    - [AWS Resource Reference](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-resource-reference)
    - [AWS Configuration Tags](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-configuration-tags)
    - [AWS Access](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-access)
    - [AWS Testing](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-testing)
    - [AWS Solutions](https://docs.arpio.io/aws-reference-guides?hsLang=en#aws-solutions)
- [Azure Reference Guides](https://docs.arpio.io/azure-reference-guides?hsLang=en#main-content)

    - [Azure Resource Reference](https://docs.arpio.io/azure-reference-guides?hsLang=en#azure-resource-reference)
    - [Azure Configuration Tags](https://docs.arpio.io/azure-reference-guides?hsLang=en#azure-configuration-tags)
    - [Azure Scenarios](https://docs.arpio.io/azure-reference-guides?hsLang=en#azure-scenarios)
- [FAQ](https://docs.arpio.io/faq?hsLang=en#main-content)

    - [AWS FAQ](https://docs.arpio.io/faq?hsLang=en#aws-faq)
    - [Contact Support](https://docs.arpio.io/faq?hsLang=en#contact-support)
    - [License & Billing](https://docs.arpio.io/faq?hsLang=en#license-billing)
    - [Tests and Recoveries](https://docs.arpio.io/faq?hsLang=en#tests-and-recoveries)

- Home
- Products
- Pricing
- Blog
- Company

[![bubble-wand-tight.64](https://docs.arpio.io/hs-fs/hubfs/bubble-wand-tight.64.png?width=64&height=64&name=bubble-wand-tight.64.png "bubble-wand-tight.64")](https://arpio.io)

Copyright © 2026, Arpio