Skip to main content
Version: 0.0.6 (latest)

2. Google Workspace LDAP Integration

Steps

  1. Go to Identity & Access → Auth Settings
  2. Click ADD ACCOUNT SOURCE
  3. Select profile: Google Workspace
  4. Upload the mTLS client certificate + key issued from Google Admin Console
  5. Enter the LDAP server address (ldap.google.com:636)
  6. Enter your organization's Base DN, save, and run the connection test

Auth Settings — add account source

After integration
  • Google Workspace users can log in with their Google account password.
  • Login ID is the part before @ in the email. Example: alicealice@company.com
  • Google OIDC (browser SSO) is not currently supported.
Certificate validity period

General section → Certificate validity (hours)

This controls how long the client certificate issued by mass-ctl login remains valid. Users can only access storage data while their certificate is valid.

Default: 24 hours / Maximum: 168 hours (7 days).