How to set up Google Workspace SSO for governing bodies

Single Sign-On

Summary

  • Sign in to the Google Apps Administration Site with an administrator account.
  • Choose ‘Add app’ then ‘Add custom SAML app’ in ‘Web and mobile apps.’
  • Download IdP Metadata and contact Product Support.
  • Populate ACS URL and Entity ID as per your region.
  • Map attributes: First name, Last name, Primary email, with identification option.
  • Enable SAML app for all users in the Expand panel.
  • Submit your SSO onboarding form to complete setup.

Preparation for SSO integration

Google Workspace SSO integration allows governing bodies to securely manage access to ClickView. Complete each step below using the exact UI labels as instructed.

Integration steps

  1. Sign in to your Google Apps Administration Site using an administrator-level account.
  2. In the left panel, select Apps and then Web and mobile apps.
    Apps menu screenshot
  3. Choose Add app then Add custom SAML app.
    Add custom SAML app screenshot
  4. Enter the Application Name (e.g. ‘ClickView’) and optional App Icon, then click Continue.
    Application Name screenshot
  5. Choose Option 1 and Download IdP Metadata. Contact Product Support and provide the GoogleIDPMetadata.xml file. Then click Next.
    Download IdP Metadata screenshot
  6. In the next screen, fill in the ACS URL and Entity ID for your region as follows, then press Continue:
    • ACS URL:
      • Australia: https://saml-in5.clickview.com.au/Shibboleth.sso/SAML2/POST
      • New Zealand: https://shibboleth.clickview.co.nz/Shibboleth.sso/SAML2/POST
    • Entity ID:
      • Australia: https://saml-in5.clickview.com.au/shibboleth
      • New Zealand: https://shibboleth.clickview.co.nz/shibboleth
        ACS URL and Entity ID screenshot
  7. In Attribute mapping, enter mappings for First name, Last name, and Primary email address.Attribute mapping screenshot

User and school identification options

To identify user role and school, only one option is required. You may reuse the same method for both year level and institution mapping.

Option I: Organisation unit path

  1. In SAML attribute mapping, map the Organisation unit path.
    Organization unit path mapping screenshot
  2. Access https://admin.google.com with an admin account.
  3. Navigate: Menu (☰) → Directory → Organisational Units.
    Directory - Organizational Units screenshot
  4. Select the lowest level for your desired year or staff group.
    Lowest org unit screenshot
  5. Click the + to show the ‘Parent organisational unit’, then copy the full path.
    Parent Org Unit screenshot
  6. Paste these values in the SSO onboarding form for each year and staff group.

Option II: Google groups

  • In SAML attribute mapping, scroll to Group membership (optional) and search for the desired groups.Google Groups screenshot
  • Enter the ‘App attribute’ value as ‘Department’. Click Save.

Option III: Using Department field

  1. In SAML attribute mapping, add Department

Enable SAML app for all users

  1. Once the SAML App is added, go to Expand panel, change setting from OFF for everyone to ON for everyone, and press Save.
    Enable SAML app screenshot
    Save setting screenshot
  2. Note it may take up to 24 hours for changes to apply across all users.

Submit the SSO onboarding form

Complete your integration by submitting the SSO onboarding form:

Frequently asked questions

An administrator-level account for Google Apps Administration Site is required.
First name, Last name, Primary email address, and either Organisation unit path or Google Groups are required.
In the Expand panel, set from OFF for everyone to ON for everyone, then press Save.
It may take up to 24 hours for changes to propagate to all users.

Get in touch

If you’re having trouble finding the right topics or videos, just reach out! Our team - Akhil photoDaniel photoJalaj photo Akhil, Daniel, Jalaj, or any of us at ClickView - will be happy to help you get sorted.

Give feedback

Was this guide helpful?

Up Next

How to set up Okta SAML SSO with ClickView

This article explains how to configure a SAML 2.0 application in Okta for use with ClickView and submit the required metadata so the SSO instance can be set up.