Configuring multiple Google Workspace SSO

Hello All,

We are planning to implement SSO for Sophos Central admin authentication using our two separate Google Workspace domains.  I had some questions on the best way to configure this access:

  • Is it possible to configure two Google Workspace IDPs in Sophos for SSO? Or do we need two completely separate Sophos tenants?
  • Is there a guide with best practices on setting up multi-IDP authentication specifically for Google Workspace?

Thanks,



Added tags
[edited by: Gladys at 8:18 AM (GMT -8) on 20 Nov 2023]
Parents
  • Hi HappyBeats,

    Thanks for reaching out to the Sophos Community Forum. 

    I was able to locate some resources shared with our Sales Engineering team internally, which explain how to set this up. I will reach out to you via private message to assist you in connecting with our team directly. 

    I was not able to find any instances where multi-IDP was used. To reduce complexity, it may be best to set up two different tenants for SSO to be set up respectively on each tenant with their respective IDPs.
    If you do wish to explore this further I'd suggest connecting with our Professional Services team. You can also raise an inquiry with ProServe through your Account Manager or CSM to inquire if such a setup is possible before engaging with the team.

    Creating multiple tenants under one primary estate is possible using "Sophos Central Enterprise Management". Otherwise, if you are a Sophos Partner, the process is a bit more straight forward.

    Kushal Lakhan
    Team Lead, Global Community Support
    Connect with Sophos Support, get alerted, and be informed.
    If a post solves your question, please use the "Verify Answer" button.
    The New Home of Sophos Support Videos!  Visit Sophos Techvids
Reply
  • Hi HappyBeats,

    Thanks for reaching out to the Sophos Community Forum. 

    I was able to locate some resources shared with our Sales Engineering team internally, which explain how to set this up. I will reach out to you via private message to assist you in connecting with our team directly. 

    I was not able to find any instances where multi-IDP was used. To reduce complexity, it may be best to set up two different tenants for SSO to be set up respectively on each tenant with their respective IDPs.
    If you do wish to explore this further I'd suggest connecting with our Professional Services team. You can also raise an inquiry with ProServe through your Account Manager or CSM to inquire if such a setup is possible before engaging with the team.

    Creating multiple tenants under one primary estate is possible using "Sophos Central Enterprise Management". Otherwise, if you are a Sophos Partner, the process is a bit more straight forward.

    Kushal Lakhan
    Team Lead, Global Community Support
    Connect with Sophos Support, get alerted, and be informed.
    If a post solves your question, please use the "Verify Answer" button.
    The New Home of Sophos Support Videos!  Visit Sophos Techvids
Children
No Data