SSO with G Suite (Google Apps)

robin_
Kilo Explorer

Hi everyone,

has anyone experience setting up SSO with G Suite? I found a guide on the Google support page ServiceNow cloud application - G Suite Administrator Help

but it seems outdated.

Already step 1 when it's referring to start ServiceNow application I can't find the "subdomain box"

4. In a new browser tab, start your ServiceNow application.

5. Choose a domain name, entering it in the subdomain box.

6. Paste the value for ServiceNow Login URL that you have copied (https://www.service-now.com/SAMLRedirector/ClientSAMLLogin.aspx) into the ACS URL field.

Any ideas or any good tutorials I could follow?

Thanks,

Robin

4 REPLIES 4

Gowrisankar Sat
Tera Guru

I guess if there is no Domain Specified for your instance, you can ignore that step and proceed further.


Hi Gowrisankar,



I am not sure where to continue the documentation is unclear.



The step:



Paste the value for ServiceNow Login URL that you have copied (https://www.service-now.com/SAMLRedirector/ClientSAMLLogin.aspx) into the ACS URL field.



I am not sure is this in the G Suite admin console or a setting in service now? And if you have a clue, can you tell me where to find this?



Thanks heaps


ty_roach
Tera Guru

Hi Robin:

Yes, those are the same instructions that I've used to successfully enable SSO with Google GSuite.  One additional fact for you:

1. If you intend to configure your SP (your ServiceNow instance) to do auto-account creation, then you'll need to add attributes on the GSuite side.  I added first_name, last_name, department as an example.  Without them, the transform map to automatically create your accounts will not work.

Ty

Community Alums
Not applicable

Hi Ty,

We have been challenged to integrate user data held in G Suite to create sys_user records within ServiceNow. I'm working on the assumption that when you say "auto-account creation" you are referring to this type of integration?

Can you advise what method you used to integrate G Suite with ServiceNow for this? (e.g. LDAP or other method)

Kind Regards

Francis Cavaciuti