Identity
Available

Google Workspace Integration

TigerTrust integrates with Google Workspace for single sign-on, user provisioning, and group-based access control using Google's identity platform.

Key Features

SAML SSO
User Provisioning
Group Sync
Admin Console
Cloud Identity
Context-Aware Access
Directory API

Benefits

Single sign-on with Google credentials
Automated user lifecycle management
Google Groups-based access control
Integration with Admin Console
Context-aware access policies
Use cases

What teams build with this integration

Common scenarios platform, security, and SRE teams solve after connecting Google Workspace.

01Scenario

Enabling SSO for Google Workspace users

02Scenario

Syncing organizational units to TigerTrust

03Scenario

Managing access through Google Groups

04Scenario

Enforcing context-aware access policies

Google Workspace Integration

TigerTrust integrates with Google Workspace for enterprise identity and access management.

SAML App Configuration

Add TigerTrust as a SAML app:

1. Navigate to Admin Console > Apps > Web and mobile apps
2. Click "Add app" > "Add custom SAML app"
3. Configure:
   - App name: TigerTrust
   - ACS URL: https://api.tigertrust.io/auth/saml/callback
   - Entity ID: https://tigertrust.io/saml/metadata
   - Name ID: Email address

Attribute Mapping

Map Google attributes to TigerTrust:

Google AttributeTigerTrust Field
Primary emailemail
First namefirstName
Last namelastName
Departmentdepartment

User Provisioning

Enable automatic provisioning via Directory API:

google_workspace: domain: example.com service_account: [email protected] admin_email: [email protected] sync: users: true groups: true organizational_units: true filters: include_ous: - /Engineering - /Operations - /Security

Group-Based Access

Map Google Groups to TigerTrust roles:

group_mappings: - google_group: cert-[email protected] tigertrust_role: administrator - google_group: cert-[email protected] tigertrust_role: operator - google_group: security-[email protected] tigertrust_role: security_auditor

Context-Aware Access

Configure access policies based on context:

Access Level: Secure Certificate Access
---
Conditions:
  - Device policy: Corporate managed
  - IP ranges: 10.0.0.0/8, 192.168.0.0/16
  - Location: United States

Applications:
  - TigerTrust

Admin Console Integration

Manage TigerTrust from Admin Console:

  • User assignment and removal
  • Group membership management
  • Access policy configuration
  • Audit log viewing

Cloud Identity

For Cloud Identity customers:

  • Same SSO capabilities
  • Directory sync support
  • Group-based access control
  • Context-aware access (premium)

Simplify identity management with Google Workspace and TigerTrust.

Getting Started

1

Add TigerTrust as a SAML app in Admin Console

2

Configure SAML settings and attributes

3

Enable user provisioning with Directory API

4

Set up group mappings for roles

5

Configure context-aware access (optional)

Ready to Integrate Google Workspace?

Get started with TigerTrust and automate your certificate lifecycle management today.