Workspace Domains
Register Google Workspace service accounts with domain-wide delegation for bulk migrations
Service Account Setup
- In Google Cloud Console, go to your project and enable the following APIs:
- Google Drive API
- Admin SDK API
- Go to IAM & Admin → Service Accounts, create a new service account, and check "Enable Google Workspace Domain-wide Delegation" on the account details page.
- Under the service account's Keys tab, click Add Key → Create new key → JSON and download the key file.
- Note the service account's Client ID (found on the service account details page under "Domain-wide Delegation" or in the downloaded JSON as
client_id). - In Google Workspace Admin Console → Security → Access and data control → API Controls → Domain-wide Delegation, click Add new and enter:
- Client ID: the service account's Client ID from step 4
- OAuth Scopes (comma-separated):
https://www.googleapis.com/auth/drive, https://www.googleapis.com/auth/admin.directory.user.readonly
- Enter your Workspace domain below and upload the JSON key file, then click Save.
- Click "Connect Admin ID" on the registered domain and enter a Workspace admin email to verify the setup is working.
Connected Domains
Loading...
Add Service Account
The domain this service account has DWD for. Must match a real Google Workspace domain.