Workspace Domains

Service Account Setup

  1. In Google Cloud Console, go to your project and enable the following APIs:
    • Google Drive API
    • Admin SDK API
  2. Go to IAM & Admin → Service Accounts, create a new service account, and check "Enable Google Workspace Domain-wide Delegation" on the account details page.
  3. Under the service account's Keys tab, click Add Key → Create new key → JSON and download the key file.
  4. Note the service account's Client ID (found on the service account details page under "Domain-wide Delegation" or in the downloaded JSON as client_id).
  5. In Google Workspace Admin Console → Security → Access and data control → API Controls → Domain-wide Delegation, click Add new and enter:
    • Client ID: the service account's Client ID from step 4
    • OAuth Scopes (comma-separated):
      https://www.googleapis.com/auth/drive, https://www.googleapis.com/auth/admin.directory.user.readonly
  6. Enter your Workspace domain below and upload the JSON key file, then click Save.
  7. Click "Connect Admin ID" on the registered domain and enter a Workspace admin email to verify the setup is working.

Connected Domains

Loading...

Add Service Account

The domain this service account has DWD for. Must match a real Google Workspace domain.