Single sign-on (SSO) is an authentication method that enables users to securely authenticate with multiple applications and websites by using just one set of credentials.
This article walks you through setting up SSO with Google Suite.
Open your SSO settings
Add and verify your domain
Click the Add SSO Configuration button. This opens the SSO configuration drawer, where you'll need to:
Enter the domain that you'll be using for SSO. After entering the domain, click the Generate TXT record button. This displays the verification key that will be used to verify ownership of the entered domain.
To verify ownership of the domain, add the verification key as a TXT record on your domain's DNS. Once the key is added, click the Verify domain button to complete the verification process.
Configure SSO in your Google Admin Console
In your Google Admin Console, select Apps, then click Web and mobile apps.
Expand the Add app dropdown and select Add custom SAML app.
This opens the flow for adding the SAML configuration:
Enter the app details: provide the name of the app that will be used (for example, RSVPify SSO) and proceed to the next step.
Copy the following fields into the RSVPify SSO configuration drawer:
SSO URL → SAML 2.0 Endpoint (HTTP) or SSO URL
Entity ID → Entity ID or Issuer URL
Certificate → Certificate
Copy the following fields from RSVPify into the new Google SAML application:
Identifier / Entity ID → Entity ID
Reply URL → ACS URL
When this is done, save the SSO configuration form in RSVPify. If everything is set up correctly, the SSO configuration is saved and shows a Configured state.
Set up the primary email and first name mappings in Google Admin
Go to Add Mapping in the Attributes mapping tab.
From Google Directory attributes, select Basic Information > Primary email, and for App attributes enter email. This results in a Primary email → email mapping.
After adding the mapping, click Finish. You now have a fully set up SSO login flow for RSVPify using Google Suite.
❗ From this moment, all workspace members will have to use the SSO login flow and won't be able to log in using their email address and password.










