Authentication > Integrate OneLogin SSO
Integrate Google Workspace
Connect Google Workspace (formerly G Suite) with Tallyfy using SAML-based Single Sign-On. Your users authenticate with their Google credentials - no separate Tallyfy passwords needed.
- Google Workspace admin account with super-administrator privileges
- Tallyfy Pro or Enterprise plan
- SAML configuration values from Tallyfy Support
-
Sign in to the Google Workspace Admin console ↗
-
Go to Apps > Web and mobile apps
-
Click Add App > Add custom SAML app

- Enter “Tallyfy” as the application name
- Optionally upload the Tallyfy logo
- Click Continue
-
On the Google Identity Provider details page, copy the SSO URL (Single Sign-On URL).
-
Copy the Entity ID (Issuer).
-
Download the Certificate file.

-
Enter the Tallyfy ACS URL (Assertion Consumer Service URL) provided by Tallyfy Support.
-
Enter the Tallyfy Entity ID (Service Provider Entity ID) provided by Tallyfy Support.
-
Leave the Start URL field empty.

Map these user attributes exactly as shown:
| Google Directory Attribute | App Attribute |
|---|---|
| Primary Email | |
| First Name | FirstName |
| Last Name | LastName |
Click Finish. That’s it for the Google side.
-
In the application settings, go to User Access
-
Set Service status to ON for everyone (or pick specific organizational units)

- Send the collected SSO URL to Tallyfy Support.
- Send the collected Entity ID to Tallyfy Support.
- Send the downloaded Certificate file to Tallyfy Support.
-
Once Tallyfy Support processes your information, go to your organization settings
-
Find the SAML configuration section
-
Enter the configuration details Tallyfy Support provides

-
Toggle the SAML activation switch to turn on SSO for your organization

After you finish the integration:
-
Share the Tallyfy login URL with your users (you’ll find it in the SAML configuration modal).

-
Confirm users who need access have been granted access to the SAML app in Google Workspace.
-
Existing Tallyfy users sign in through the shared SSO URL - no separate passwords required.
-
New users are automatically provisioned in Tallyfy on their first SSO login.
Here’s the full SAML authentication flow after configuration is done.
Key points:
- Automatic provisioning - New users are created on first login (step 9a). No manual account setup needed.
- Attribute mapping - The email, FirstName, and LastName attributes from step 7 control how accounts are created and matched.
- Single authentication point - Users only authenticate with Google (steps 4-5), never entering Tallyfy passwords.
Running into authentication problems? Check these:
- Has the user been granted access to the SAML app in Google Workspace?
- Are the attribute mappings correct? Double-check the table above - case matters.
- Is the user accessing Tallyfy through the right SSO URL?
- Still stuck? Contact Tallyfy Support.
Authentication > Integrate Okta SSO
Integrations > Authentication and SSO
Authentication > Integrate JumpCloud SSO
Was this helpful?
- 2025 Tallyfy, Inc.
- Privacy Policy
- Terms of Use
- Report Issue
- Trademarks