How to set up Google Workspace SSO for your School using the new SAML process

App name ClickView

Summary

  • Create a custom SAML app in the Google Workspace Admin console and send your IdP details (SSO URL, Entity ID, and certificate) to ClickView Support to initiate the connection.
  • Receive your ClickView-specific ACS URL and Entity ID from Support and enter them into the SAML app configuration before continuing.
  • Map basic user attributes (first name, last name, email) and configure role identification using OU path, Google Groups, Department field, or a custom attribute.
  • Share your chosen attribute name and example values with ClickView Support so they can configure value parsing on their end.
  • Enable the ClickView app for all users in Google Workspace, then test login at clickview.net. Changes can take up to 24 hours to apply.
star icon
Quick tip
How do I set up Google Workspace SAML SSO for ClickView at my school?
To set up SAML SSO for ClickView, create a custom SAML app in your Google Workspace Admin console and send your SSO URL, Entity ID, and certificate to ClickView Support, who will reply with your school-specific ACS URL and Entity ID. Once configured, map your user attributes to identify staff, students, and grade levels using your OU path, Google Groups, Department field, or a custom attribute. After enabling the app for all users, staff and students can sign in to ClickView at clickview.net using their existing Google credentials.

This guide is for IT Administrators connecting ClickView to a Google Workspace environment using SAML-based Single Sign-On. Once setup is complete, your staff and students can sign in to ClickView through your existing Google identity provider, using their existing Google credentials.

Before you start: This setup requires email exchanges with ClickView Support at defined points. Each phase builds on the last, so work through them in order.

  • Phase I: create the ClickView SAML app and copy your Google IdP details.
  • Phase II: send your IdP details to ClickView Support, then enter the ACS URL and Entity ID they return.
  • Phase III: map your attributes, configure role identification, and enable the app.

Phase I: Creating the application

Step 1: Create a new Application

  1. Sign in to the Google Workspace Admin console with an admin account.
  2. In the left-hand pane, select Apps, then Web and mobile apps.
    Web and mobile apps

Step 2: Create a custom SAML app

  1. Select Add app, then Add custom SAML app.
    Add custom SAML app
  2. Enter the app name as ClickView, then select Continue.
    App name ClickView

Step 3: Copy your Google IdP details

  1. Copy the SSO URL and Entity ID.
    Copy SSO and Entry ID
  2. Download the Certificate by selecting the download icon (the downward-pointing arrow).
    Download Certificate

Contact ClickView Support
Send an email to support@clickvieweducation.com with the following:

  • SSO URL and Entity ID (copied in Step 3)
  • Certificate file (downloaded in Step 3)

ClickView Support will reply with an ACS URL and Entity ID for your instance. You need these to continue, so wait for their reply before moving to Phase II.

Phase II: Configuring Service Provider Details

Step 4: Enter your ClickView service provider details

  1. Select Continue to add the ClickView service provider details.
FieldValue
1ACS URLProvided in a reply email by the ClickView Support team
2Entity IDProvided in a reply email by the ClickView Support team
  1. Once ClickView Support has provided the values, enter them in the ACS URL and Entity ID fields, then select Continue to move on to attributes and mapping.
    SSO configuration

Phase III: Adding attribute mappings

Step 5: Add attribute mappings

  1. In the Attribute mapping section, select Add mapping and add the following basic attributes.

Select the attributes in the Attribute column from the dropdown menu, then enter the corresponding values in the Maps To column manually. Enter these exactly as shown. The setup is case-sensitive.

Attribute nameValue
1First nameGiven Name
2Last nameSurname
3Primary emailPrimary Email
Add mapping

Step 6: Add attribute mappings for role identification

You need an attribute to identify a user’s role: whether they’re a staff member or a student, and for students, their grade level. Choose whichever option best matches how your Google Workspace is already structured.

Option A: Using organization unit path

Best if your users are already organised into OUs by role or year group (e.g. /ABC High/Staff or /ABC High/Students/Grade 9). The OU path is passed directly to ClickView and used to determine the user’s role.

  1. In SAML attribute mapping, add the Organization unit path in the Google Directory Attributes drop-down menu. 
    Organisation unit path
  2. Map to Organization unit path in the App attribute. Click Save.
    Map to Organisation unit path

Option B: Using Google groups

  1. In SAML attribute mapping, scroll to the bottom and search for the desired groups under the Group membership (optional) heading
  2. Enter the ‘App attribute’ value as ‘Groups’. Click Save.
    Enter value as Groups

Option C: Using the Department field

  1. In SAML attribute mapping, add Department. Click Save.
    Add department

Option D: Your own custom attributes

If none of the above match how your Google Workspace is structured, use any user attribute available in your environment, such as a custom schema field or employee ID format, as long as it carries the role or school information you need.

  • In SAML attribute mapping, select Add mapping.
  • Select the attribute that holds the relevant information from the dropdown. This can be any attribute visible in your Google Workspace user profiles.
  • Enter the App attribute name: Role, School, or a single shared name if the attribute encodes both, then select Save

Not sure if your attribute will work? As long as it’s available in Google Workspace’s SAML attribute mapping dropdown and contains consistent, parseable values, ClickView Support configures it on their end. When you reach Step 8, include the attribute name and a few example values for Support to confirm.

Step 7: Enabling SAML app for all users

  1. After the ClickView SAML App is added, open the Expand panel and change the setting from OFF for everyone to ON for everyone ➞ Click Save
    User access settings
    Save service status

Let ClickView Support know your attribute setup

Reply to the earlier email thread and include:

  • The App attribute name you used.
  • The attribute values from your Google Workspace (e.g. /Lincoln High/Students/Grade 9).

This allows ClickView Support to configure value parsing on their end before users sign in.

Once you’ve tested the login and confirmed it works, your users can sign in to ClickView via SAML SSO in Google Workspace.

Quick reference

PhaseWhat you doThen
1Phase ICreate the SAML app; copy SSO URL, Entity ID, and certificateSend details to ClickView Support and wait for the reply
2Phase IIEnter the ACS URL and Entity ID from SupportContinue to attribute mapping
3Phase IIIMap attributes, choose your access method, enable the appEmail attribute details to Support, then test the login after confirmation at https://clickview.net/

Frequently asked questions

Changes can take up to 24 hours to propagate across all users in Google Workspace after you enable the app.
Email your Google IdP SSO URL, Entity ID, and the downloaded certificate file to support@clickvieweducation.com. You need ClickView’s reply (containing your ACS URL and Entity ID) before you can proceed past Phase I.
Use whichever option already reflects your Google Workspace structure — OU path, Google Groups, Department field, or a custom attribute all work. If you’re unsure, email ClickView Support with your attribute name and a few example values before configuring.
Yes. Any attribute available in the Google Workspace SAML attribute mapping dropdown can be used, as long as it holds consistent values. ClickView Support can configure parsing on their end once you share the attribute name and example values.
Contact ClickView Support at support@clickvieweducation.com with your attribute configuration details and any error messages, and they’ll help you troubleshoot.