Hello there!

Need Help? We are right here!

support
miniOrange Email Support
success

Thanks for your inquiry.

If you dont hear from us within 24 hours, please feel free to send a follow up email to info@xecurify.com

G-Suite Directory integration of miniOrange

G-Suite is a very popular application which is used for making corporate groups for important discussions or meetings in a company. Google has a number of features that makes it important for departments, teams and special-interest groups to manage their own group memberships and participate in online discussions. There is the admin console in G-Suite which supports mapping of the user when G-Suite is set up for Single sign-on.

In Google apps individual can be easily mapped but when group mapping is concerned, some restrictions are imposed. these restrictions are listed below:

It will automate a one time sync from G-Suite to miniOrange even if the changes are made in the miniorange then it will get mapped with the G-Suite automatically.


miniOrange with Directory Integration of G-Suite

With miniOrange you can take complete control over application access, user provision and deprovision in real time and you can also add second factor authentication. Our Identity and access management system is rooted in G-Suite which provides an identity for authentication. G-Suite end-users will enjoy miniOrange single sign-on across desktop, web, mobile, two-factor authentication as well as the approval of applications.

Directory is a specialized database that is specially made for storage of the users and the other attributes. Directories typically store data that does not change often such as employee information, user policies, and group membership on the office network. It will automatically import the user accounts from G-Suite into miniOrange, so you don't have to import them by manually. Users can synchronize with G-Suite in real time so that any changes in roles, groups are reflected directly into G-Suite. It will continuously monitor G-Suite for new or updated users and instantly creating/updating those users in miniOrange.

Select Google if you want to continue to use G-Suite as your directory and authentication source. In this case, your users passwords will be managed by G-Suite, and miniOrange authenticates users against their G-Suite credentials. It will keep miniOrange updated whenever users are added or updated in G-Suite. New users are passed to miniOrange in the real-time after authentication using G-Suite credentials. Also, G-Suite gets updated whenever users are added or updated in miniOrange.



app-add-application-save





Steps to setup G-Suite as IDP

  • 1

    Setup G-Suite as IdP in miniOrange

  • 2

    Setup miniOrange as SP into G-Suite

  • 3

    Map G-Suite User Attributes

  • 4

    Importing Users


  • Step 1: Steps to setup G-Suite as IDP in miniOrange

    • Log in to Your miniOrange Console and Add Identity Provider
    • Google Apps directory integration AddingIDP

    • Go to https://admin.google.com and login to your Google Apps Administrator account.
    • Google Apps directory integration GoogleAllApps

    • On the Admin Home, select More Controls Apps.
    • In the App Settings, select SAML apps.
    • Click on the "+" button at the bottom right corner to create a new SAML app.
    • Choose Setup my own custom app at the bottom of the list.
    • Google Apps directory integration AllApps

    • Download the IDP metadata or keep handy the Entity ID and SSO URL it will be required by the miniOrange.
    • Fill the details by adding the following data from Google Apps Metadata
    • IDP Display Name GSuite
      IDP Identifier GoogleApps
      IDP Entity Id IDP Entity ID
      SAML SSO Login URL Identity Provider SSO URL
      X.509 Certificate>X.509 Certificate
    • Click on Save. (Now you have setup connection between your IDP and miniOrange.)


    Step 2: Steps to setup miniOrange as SP in G-Suite.

    • Go to your Google G-suite admin page.
    • Google Apps directory integration GoogleAllApps

    • Choose SAML apps.
    • Click on the Plus icon at lower-right.
    • Choose Setup my own custom app at the bottom of the list.
    • Google Apps directory integration AllApps

    • Set the Application Name and the logo of your Choice.
    • Google Apps directory integration NameApp

    • Provide the Service Provider Details from miniOrange Dashboard Select miniOrange as SP You will see the following details.
    • Google Apps directory integration SPDetails

    • Select EMAIL as the Name ID Format. (OPTIONAL) Configure Attribute Mapping of your choice.
    • Google Apps directory integration FillSP

    • Switch your new SAML App ON for everyone and Click on Save button.
    • Google Apps directory integration Service


    Step 3: Steps to map G-Suite user attributes with miniOrange.

    • Go to the Settings of the SAML APP you have created in Google Admin Console.
    • Select the option Add New Mapping and add the attributes of your choice and Click on Save.
    •  Google Apps directory integration Add Custom Mapping

    • Go to Dashboard of miniOrange and Add the attributes that are in your IDP.
    •  Google Apps directory integration Mapping miniOrange

    • Add the attributes that are sent to SP and received from IDP through miniOrange>Apps.
    •  Google Apps directory integration Mapping SAML APP

    • Enable the option for end user login and Send Configured Attributes in Identity Providers.
    • Add the attributes same as in IDP and click on Save.
      After successful Test Configuration you can see the attributes you have configured.
    •  Google Apps directory integration Enable User Login

    • After doing the configurations try Test Configuration in miniOrange you will see the Test Successful Window with all the configurations.
    •  Google Apps directory integration Successful

    • Now try to sign in with the user which is not in miniOrange. The user will get automatically updated in the users list in miniOrange.You can see the user list in miniOrange>Users. (The red symbol indicates the user is not from miniOrange.)
    • Google Apps directory integration Users


    Step 4: Importing Users

    • Import Google Apps users in miniorange Directory. Navigate to Users -> User Sync/Provisioning Section.

    •  Google Apps directory integration Dashboard

    • Select Google Apps from the dropdown list.
    •  Google Apps directory integration  Setup Users

    • Enter Google administrator email to verify your identity once and click on verify credentials.
    •  Google Apps directory integration Select Account

    • Login with your Google Admin Account.
    •  Google Apps directory integration Login

    • Once logged in successfully, click on Allow button to authorize miniorange to view and manage the provisioning of users on your domain.
    •  Google Apps directory integration Allow Access

    • Once your Google Apps domain identity is verified. We can import users from Google Apps.
    •  Google Apps directory integration Credentials Verified

    • Now, Enable Import Users and save provisioning settings for google apps.
    •  Google Apps directory integration

    • Go to Import Users Tab and select Google Apps from the dropdown. Click on Import to create users in miniorange.
    •  Google Apps directory integration Import Users

    • Once the import is done. You can view these users in Users->User List.
    •  Google Apps directory integration Send Activation to all

    • Once imported Send invitation emails to users with link to reset their G-Suite account password once.
    •  Google Apps directory integration New User Activation

    • When user reset their password, the password gets synced in google apps account. When a user clicks on the password reset link from the invitation email. He will see a page like this to Reset the google password.
    •  Google Apps directory integration Reset Password



    We offer Security Solutions of Single Sign-On, Two Factor Authentication, Fraud Prevention and much more.

    Please call us at +1978 658 9387 (US), +91 77966 99612 (India) or email us at info@xecurify.com