1. Home
  2. Applications
  3. Google Workspace
  4. Disable Google Workspace SAML Integration

Disable Google Workspace SAML Integration

Purpose

This shows the step by step guide on how to completely disable Email Integration or Google Workspace SAML in Practice Protect.

Disabling this SAML integration will mean all logins are reverted back to the standard Google Workspace authentication method. We strongly advise to setup Multifactor-Authentication (MFA) for added security.

If your Google Workspace SAML integration was completed prior to November 2024, you may need to follow the legacy method to disable the integration. Refer to the dropdown at the bottom of this article for instructions.

Prerequisites

  • Admin Access to Practice Protect Tenant along with its custom Login URL (i.e. tenantname.practiceprotect.app/my)
  • Google Workspace Account with Super Admin rights

Instructions

  1. Login to Google Workspace Admin using the Super Admin Account.
  2. On the left navigation menu, select Security > Authentication > SSO with Third party IdP. You can also directly go to this link.

  3. From Manage SSO profile assignments, click on the Group or Organizational Unit where the Practice Protect SSO is applied. This will open a new page

  4. Select the SSO Profile to NONE and click Save.



    Note: If these users need to change passwords, they’ll be prompted to do so via their Google Account, rather than your organization’s Change password URL.
  5. Return to thirdparty SSO profiles and click on the Practice Protect SSO profile.

  6. Click DELETE to remove the SSO profile. Click on DELETE again when prompted for confirmation

  7. Login to Practice Protect with the admin account and switch to the Admin Portal.

  8. Go to Apps & Widgets section > Web Apps. Find Google Workspace (type: Web – SAML + Provisioning). Note: App name may set different.

  9. Select the app by ticking the box. On the Actions button, select Delete. Confirm deletion if prompted.

  10. On the left menu, go to Core Services > Roles. Delete the role/s linked to the Email Integration/SAML. (e.g. Google Workspace Email Integration Users).

 

Disable via Legacy Method

  1. Login to Google Workspace Admin using the Super Admin Account.
  2. On the left navigation menu, select Security > Authentication > SSO with Third party IdP. You can also directly go to this link.

  3. Click on Legacy SSO Profile under Third Party SSO profiles

  4. To turn off SSO, untick Enable legacy SSO profile

  5. Hit Save to apply changes. This will successfully turn off SAML SSO or Email Integration for all users.

  6. Login to Practice Protect with the admin account and switch to the Admin Portal.

  7. Go to Apps & Widgets section > Web Apps. Find Google Workspace (type: Web – SAML + Provisioning). Note: App name may set different.

  8. Select the app by ticking the box. On the Actions button, select Delete. Confirm deletion if prompted.

  9. On the left menu, go to Core Services > Roles. Delete the role/s linked to the Email Integration/SAML. (e.g. Google Workspace Email Integration Users).

Note:
This completely disable Google Workspace/Email Integration in Practice Protect. User/s should be able to use their Google credentials and access it directly without being redirected or prompted for Practice Protect login authentication.

If user/s doesn’t remember their Google Workspace credential, person (i.e. IT Personnel) who has admin access on Google should assist on resetting their passwords.

 

 

Updated on November 26, 2024

Related Articles

Need Support?
Can't find the answer you're looking for?
Contact Support