Domain-wide delegation allows administrators to enable applications to access users' data across your organisation's Google Workspace environment. This allows Google Workplace super administrators to implement and consent on behalf of the Org the Google Workspace Phish Reporter.
To enable this functionality you will need Super Administrator access in Google Workplace.
Setup Google Workplace Domain Wide Delegation
- Log in to the Google Workplace Administrator console with super admin access.
- Go to the Main menu >Security > Access and data control > API controls.
- Scroll down to the end of the page click on Domain Wide Delegation.
- Add API clients with the OAuth Client IDs by selecting Add new, and add the OAuth Client ID 1.
OAuth Client ID 1 : 499341929161-g5mn5p761ngivjfmqvqrsjjc7g1f8911.apps.googleusercontent.com
- Add all 13 OAuth scopes listed below:
- https://mail.google.com/
- https://www.googleapis.com/auth/gmail.addons.current.message.metadata
- https://www.googleapis.com/auth/gmail.addons.current.message.readonly
- https://www.googleapis.com/auth/gmail.addons.execute
- https://www.googleapis.com/auth/gmail.readonly
- https://www.googleapis.com/auth/admin.directory.domain.readonly
- https://www.googleapis.com/auth/admin.directory.user.readonly
- https://www.googleapis.com/auth/script.external_request
- https://www.googleapis.com/auth/script.send_mail
- https://www.googleapis.com/auth/script.locale
- https://www.googleapis.com/auth/userinfo.email
-
https://www.googleapis.com/auth/userinfo.profile
- After adding all OAuth scopes, click Authorize to add this API client.
- Repeat steps 3-4 but with the OAuth Client ID 2.
OAuth Client ID 2 : 499341929161-ir0pg633qqab0mi78l2c2qkrpi6h8uml.apps.googleusercontent.com
- When successfully completed, you will see the following message.
- After this has been completed, the Domain Wide Delegation has been applied to all users of your Google Workspace. You don’t need to do the Authorize Access action for Phish Reporter.
Comments
Please sign in to leave a comment.