⚠️ Important: TAC does not support SAML configurations, so OpenID Connect (OIDC) must be used.
Step 1: Create a Project in Google Cloud
- Log in to the Google Cloud Console:
- Go to Google Cloud Console and sign in with an administrator account.
- Create a new project:
- Click on Select a project at the top.
- Click New project.
- Enter a name for your project (e.g., TAC-SSO) and select the correct organization.
- Click Create.
Step 2: Enable OpenID Connect API
- In the left menu, go to APIs & Services → Dashboard.
- Click + Enable APIs and Services.
- Search for Google Identity and select "Google Identity Platform".
- Click Enable.
Step 3: Create OAuth 2.0 Credentials
- Go to: APIs & Services → Credentials.
- Click + Create Credentials → OAuth Client ID.
- Under Application Type, select Web Application.
- Fill in the required fields:
- Name:
TAC SSO
- Authorized redirect URIs:
- Click Create.
Step 4: Configure OpenID Connect Scopes
When configuring OpenID Connect for TAC, you must grant the appropriate permissions. The required scopes are: