Setting up SSO with Google Workspace
Use Google Workspace accounts to sign in to ilert over OAuth 2.0 — the shortest single sign-on setup ilert offers.
If everyone in your organization signs in with a Google Workspace account, this is the fastest way to connect ilert: one field, no certificates, no application to create on the Google side.
Google Workspace was formerly called G Suite. The setup is the same either way.
Prerequisites
The Pro plan or higher
The account owner role in ilert — no other role can change login authentication
A Google Workspace domain
Connect ilert to your Google domain
To verify, open app.ilert.com in a private browser window, click Login with SSO, and enter your ilert subdomain. Google should take over the sign-in.
Optional settings
Provision new users on first sso login
Creates the ilert user automatically on first successful sign-in, with the Responder role, instead of requiring an admin to invite them first. Requires a free seat.
Allow login with username and password
Leave it on and people outside your Google Workspace organization can still sign in with an ilert password. Turn it off to require Google sign-in for everyone.
Longer sessions
Keeps users signed in longer, as though they had ticked Keep me logged in.
Test before you turn off password login.
With Allow login with username and password cleared, a wrong domain locks out everyone including the account owner. Sign in through Google in a private browser window first, and only then clear the checkbox.
FAQ
Can I use more than one Google Workspace domain?
No. ilert accepts a single domain. If your organization spans several, use SAML instead, which does not have this limit.
Can I pass roles and teams from Google?
No. Attribute-based auto provisioning is a SAML feature — ilert has no way to read a role out of a Google sign-in. Users provisioned through Google always arrive as Responder, and an admin adjusts them afterwards.
Last updated
Was this helpful?