<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Azure as IDP for Workspace in Peer-Peer Topics</title>
    <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2033#M1620</link>
    <description>&lt;P&gt;Yup, our district/county/municipality has a Sharepoint intranet, which requires all staff login to access it.&lt;/P&gt;&lt;P&gt;So we have a SAML set up for that. The one described in Google's support documents.&lt;/P&gt;&lt;P&gt;Since we already had on-prem AD federation set up for one domain, it was a bit painful as that had to be temporarily disabled, so we could add the edu subdomain.&lt;/P&gt;&lt;P&gt;It works perfectly fine, but a definite recommendation is to &lt;EM&gt;not disable unused accounts&lt;/EM&gt; in Workspace, as that will cause their accounts in O365 to be &lt;EM&gt;permanently deleted&lt;/EM&gt; after 30 days, and not able to be automatically recreated if the user then suddenly starts using their Workspace account again.&lt;/P&gt;&lt;P&gt;Typical issue with substitutes who only work rarely.&lt;/P&gt;</description>
    <pubDate>Tue, 19 Dec 2023 08:27:02 GMT</pubDate>
    <dc:creator>Kim_Nilsson</dc:creator>
    <dc:date>2023-12-19T08:27:02Z</dc:date>
    <item>
      <title>Azure as IDP for Workspace</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2025#M1617</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How many of you currently use Azure as your IDP for Workspace?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How many use Google Login stand alone?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anyone using the new web sign in with Google Federated Azure to SSO with Google Creds into Windows Intune managed laptops or desktops?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to decide which way to go - currently a heavy GCPW user.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Dec 2023 22:57:59 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2025#M1617</guid>
      <dc:creator>E8419</dc:creator>
      <dc:date>2023-12-18T22:57:59Z</dc:date>
    </item>
    <item>
      <title>Re: Azure as IDP for Workspace</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2031#M1618</link>
      <description>&lt;P&gt;Anyone using Google as Azure IdP?&lt;/P&gt;</description>
      <pubDate>Mon, 18 Dec 2023 23:54:05 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2031#M1618</guid>
      <dc:creator>Bill_Gibson</dc:creator>
      <dc:date>2023-12-18T23:54:05Z</dc:date>
    </item>
    <item>
      <title>Re: Azure as IDP for Workspace</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2032#M1619</link>
      <description>&lt;P&gt;I am currently but I'm an unsure if this is the right route to take long term&lt;/P&gt;</description>
      <pubDate>Tue, 19 Dec 2023 00:04:44 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2032#M1619</guid>
      <dc:creator>E8419</dc:creator>
      <dc:date>2023-12-19T00:04:44Z</dc:date>
    </item>
    <item>
      <title>Re: Azure as IDP for Workspace</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2033#M1620</link>
      <description>&lt;P&gt;Yup, our district/county/municipality has a Sharepoint intranet, which requires all staff login to access it.&lt;/P&gt;&lt;P&gt;So we have a SAML set up for that. The one described in Google's support documents.&lt;/P&gt;&lt;P&gt;Since we already had on-prem AD federation set up for one domain, it was a bit painful as that had to be temporarily disabled, so we could add the edu subdomain.&lt;/P&gt;&lt;P&gt;It works perfectly fine, but a definite recommendation is to &lt;EM&gt;not disable unused accounts&lt;/EM&gt; in Workspace, as that will cause their accounts in O365 to be &lt;EM&gt;permanently deleted&lt;/EM&gt; after 30 days, and not able to be automatically recreated if the user then suddenly starts using their Workspace account again.&lt;/P&gt;&lt;P&gt;Typical issue with substitutes who only work rarely.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Dec 2023 08:27:02 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2033#M1620</guid>
      <dc:creator>Kim_Nilsson</dc:creator>
      <dc:date>2023-12-19T08:27:02Z</dc:date>
    </item>
    <item>
      <title>Re: Azure as IDP for Workspace</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2034#M1621</link>
      <description>&lt;P&gt;Google login only for access to Workspace.&lt;/P&gt;&lt;P&gt;Really don't want to change that. Mainly because managing passwords and, to some extent, accounts elsewhere is a pain. Now we do have fully automatic sync of user accounts and groups, so very few accounts are manual, even groups. But we do have them, and I don't quite have the hang of managing incoming SSO for separate OUs.&lt;/P&gt;&lt;P&gt;If people who do use SSO says it's fine, and easy to use incoming SSO only in certain OUs, and it doesn't mess up login to Chromebooks, then maaaybe in the future I'll look into it. So far I'm not convinced.&lt;/P&gt;&lt;P&gt;Also, why would I want to pay for third-party SSO? Using Google Sign-in to (curriculum) services is awesome.&lt;/P&gt;&lt;P&gt;We do not use GCPW. Would be cool, but we're instead investing quite heavily in Intune for Windows 11, with forced MFA for login to O/M365 accounts, which effectively means &lt;EM&gt;forced MFA for login to Windows devices&lt;/EM&gt;.&lt;/P&gt;&lt;P&gt;Now, that only affects administrative and non-teaching staff, as all our teachers have Apple Macbooks!&lt;/P&gt;&lt;P&gt;For them we just recently started using Mosyle MDM, and with their Auth 2 feature we will be able to have them log into their Macbooks with the Google accounts!!! Really happy about that! Will implement that during 2024, as we're replacing the remaining 350 old MBAs next year.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Dec 2023 08:36:52 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Azure-as-IDP-for-Workspace/m-p/2034#M1621</guid>
      <dc:creator>Kim_Nilsson</dc:creator>
      <dc:date>2023-12-19T08:36:52Z</dc:date>
    </item>
  </channel>
</rss>

