Sync with Google

This document describes how to set up Foxpass to sync your directory with Google Workspace. Note: this will only sync directory information. To use Google passwords with your Foxpass account, check out Google / Foxpass password delegation and Google LDAP / Foxpass password delegation.

Authorize your Foxpass account with Google

Go to the Foxpass 'Sync' page. Click on the "Google" tab. Choose 'Yes' from one of the dropdown menus, then click the "Authorize Account" button.

Authorize User Sync

Authorize User Sync

Google will then ask for offline access to your data, which Foxpass needs to access the directory data. Click "Allow" to be redirected to Foxpass.

Allow Access

Allow Access

We recommend adding a second set of credentials as a backup in case the first set fails. Failure of the first set of credentials happens when the administrator who authorized the sync leaves the company and has their Google account disabled. You can approve another set of credentials by having another administrator log into Foxpass and click the "Authorize Account for Sync" button.

If you see a green checkmark with a message 'Your account passes user synchronization validation.' at the top of the page, your credentials are good to go.

Account validation message on Foxpass

Account validation message on Foxpass

Click on 'Sync now' button. You will see a message saying ' Sync initiated successfully'.

Sync initiated successfully message

Sync initiated successfully message

Click Ok and you can see the status of your sync in the table as shown in the picture below:

Sync successful

Sync successful

Now, you can see synced users on the Users page.

Sample Users page with synced users from Google

Sample Users page with synced users from Google

Optional: Enable Group Sync Allowed list

If you have group sync enabled, you can have an allowed list of groups, which get imported during sync. This is useful for organizations that only want to import a subset of their groups used in Foxpass. Once group sync is enabled, you'll see a field to add any group prefixes for adding to the allowed list. During the group sync process, any groups that do not begin with that prefix are not synced with Foxpass.

Optional: Enable Allowed User list via Group Membership

If you have group sync enabled, you can add allowed users that belong to specific groups. Group sync is helpful for organizations that only want a subset of their directory to have access to Foxpass. Once group sync is enabled, you'll see a field to mark any groups which are allowed. During the group sync process, any users that are not a member of one of those groups are automatically marked as "inactive."

Optional: Enable Non Allowed User list via Group Membership

If you have group sync enabled, you can have a list of non-allowed users that belong to specific groups. This is useful for organizations that have a large number of machine or role accounts that don't need access to Foxpass. Once group sync is enabled, you'll see a field to mark any groups to be ignored from syncing. During the group sync process, any users that are a member of one of those groups are automatically marked as "inactive."