SSO Google IDP

This article describes how to login to Umbrella Cost with Google SSO.

Initial Steps

Add App

Go to Google Workspace Admin Console (https://admin.google.com)

Apps → Web and mobile apps → Add app → Add custom SAML app

Type application name → Continue → Continue

Enter the following details:

  • ACS URL: https://mypileus.auth.us-east-1.amazoncognito.com/saml2/idpresponse
  • Entity ID: urn:amazon:cognito:sp:us-east-1_Uv6ArNdSK
  • Name ID format: EMAIL
  • Name ID: Basic information > Primary email

Click Continue.

Add Mapping

Enter:

  • Google Directory attributes: Primary Email → App attributes: email

Click Continue,

Get the metadata file

  • Select the app
  • Set the User Access for everyone, groups or organizational units → Save
  • Apps → Web and mobile apps → your_app →Download metadata →Download metadata

Provide the information to Umbrella Cost

  • The SAML file (the metadata file)
  • List of all email domains