Configure Google Workspace federated authentication for Arctic Wolf web portals

You can configure Google Workspace as a Federated Identity Management (FIM) source for Arctic Wolf® web portals.

These resources are required:

  • Administrator permissions for the Arctic Wolf 統合ポータル.

    You must be a primary or secondary contact. If you require this level of access, submit your request to a primary or secondary contact in your organization.

These actions are required:

  • Allowlist all necessary IP addresses. To see the IP addresses that you must allowlist, sign in to the Arctic Wolf Unified Portal, click Resources > Allowlist Requirements, and then view the IP addresses in the section for your product.

Configure the OAuth consent screen

  1. Sign in to the Google Cloud Console and select your org-owned project.
  2. In the navigation menu, click Google Auth platform > Branding.
  3. Configure these settings:
    • App name — Enter a descriptive name. For example, Arctic Wolf Unified Portal.
    • User support email — Enter a support email address where users can contact you with any questions about their consent.
    • Developer contact email — Enter a contact email address for Google to use for notifications about your project.
  4. Click Audience.
  5. Under User type, select Internal. This restricts authentication to users within your Google Workspace organization.
  6. Click Data Access > Add or Remove Scopes.
  7. Add these scopes:
    • openid
    • email
    • profile
  8. Click Save.

Create the OAuth client ID

  1. In the navigation menu, click Google Auth platform > Clients.
  2. Click Create Client.
  3. In the Application type list, select Web application.
  4. In the Name field, enter a descriptive name. For example, Arctic Wolf Unified Portal.
  5. Under Authorized redirect URIs, click Add URI, and then enter https://auth.arcticwolf.com/login/callback.
  6. Click Create.
  7. Copy the Client ID and Client secret values, and then save them in a safe, encrypted location. You will provide them to Arctic Wolf later.

Provide your Google Workspace credentials to Arctic Wolf

  1. Arctic Wolf Unified Portal にサインインします。
  2. In the navigation menu, click Organization Profile > Federated Authentication.
  3. Click Submit New Credentials .
  4. Configure these settings:
    • Account Name — Enter a unique and descriptive name for the account.
    • Issuer URL — Enter the Discovery URL value from the Metadata section of the application properties page.
    • Client ID — Enter the IdP-issued client ID.
    • Client Secret — Enter the IdP-issued client secret.
    • Domain Name — Enter your company email domain name.
    • Credential Expiry — (Optional) Enter the credential expiration date, if applicable.
  5. Click Submit Credentials.
  6. To apply the configuration:
    1. When prompted to sign out of the 統合ポータル, click Confirm and Logout.
    2. Sign in to the 統合ポータル through your identity provider (IdP).