Skip to main content

SAML integration to Google Workspace

Connect Blinq to Google Workspace with a custom SAML app, so your team signs in with their Google credentials.

SAML is an XML-based open standard for transferring identity data between two parties. Using SAML, you can integrate Blinq with Google Workspace by creating a custom SAML application.

Note: Blinq currently only supports Identity Provider initiated SSO. Support for Service Provider initiated SSO is coming, which will let your organization log in to Blinq using SAML-based SSO.


Step 1: Create a SAML application in Google Workspace

  1. Navigate to admin.google.com and log in.

  2. Hover over the left side of the screen to view the navigation bar, then select Apps > Web and mobile apps.

  3. Select Add App, then select Add custom SAML app from the dropdown.

  4. Enter an App name and Description.

  5. Select Continue.

You'll see two options. Use Option 2: copy the SSO URL, entity ID, and certificate. You'll need to give these details to Blinq, so open the Blinq dashboard before continuing.


Step 2: Add Google's details to Blinq

  1. Navigate to the dashboard in a new tab.

  2. Log in to Blinq if you aren't already.

  3. Select your workspace in the top left of the screen.

  4. In the dropdown, select Settings.

  5. Under the Integrations page you'll see SAML Configuration settings, containing Identity Provider Settings and Service Provider Settings. Select Identity Provider Settings, where you'll see three inputs for the details from Google.

  6. Navigate back to Google Workspace, copy each detail, and paste them into the corresponding input in Blinq.

  7. Once all the details are pasted in, select Save.


Step 3: Give Blinq's details back to Google

  1. Select the Service Provider Settings section. You'll see two pieces of information, the Service Provider Entity ID and the ACS URL.

  2. Copy the Service Provider Entity ID and navigate back to Google Workspace.

  3. Select Continue.

  4. Google asks for the Entity ID and ACS URL. Paste in those details from Blinq.

  5. Select the Name ID Format dropdown, then select Email.

  6. Select Continue.

  7. No attribute mappings are needed. Leave the default settings and select Finish.


Step 4: Enable the Blinq app in Google Workspace

  1. Select the User access section in your Blinq app on Google Workspace.

  2. To turn the service on or off for everyone in your organization, select ON for everyone or OFF for everyone, then select Save.


Step 5: Verify SAML login works

  1. In your Blinq application in Google Workspace, select TEST SAML LOGIN.

  2. A new tab should open asking you to log in via Google. If it doesn't, use the information in the resulting SAML error messages to update your IdP and SP settings, then retest.

  3. Log in using an email address that matches your Google domain. For example, if your Google domain is blinq.me, log in with an address ending in @blinq.me.

  4. If you see JSON-formatted data with your personal information after logging in, SSO is set up successfully.


Related guides

Setting up enforced SSO with another provider? See Okta or Azure AD.


Need help?

Reach out via the chat widget in the Help Center or email [email protected].

Did this answer your question?