Single sign-on and user provisioning are enterprise features available on
demand. Contact Hyperline through the in-app chat to enable them for your
account.
Before you start
You need:- A Hyperline role that includes the Manage authentication permission. This permission also gates enabling or disabling multi-factor authentication. See Users & permissions.
- A Google Workspace administrator account
- The Google Admin SDK Directory API enabled for users and groups
- Pop-ups allowed for Hyperline in your browser
Understand the connection
Single sign-on and directory synchronization are configured separately:A connection can show Connected for single sign-on while directory
synchronization still requires configuration. Provision users in
Hyperline only controls whether Hyperline applies synchronized directory
data to account memberships.
Connect Google Workspace
1
Navigate to Settings > General
2
Click Set up in the Single sign-on section
3
Complete the Google Workspace setup assistant
Configure single sign-on and verify your Google Workspace domain.
4
Return to Hyperline
Hyperline displays the identity provider, domain, and connection status.
5
Configure directory synchronization
Click Configure next to Directory synchronization from Google
Workspace, then authorize access with a Google Workspace administrator
account. Grant access to both users and groups.
6
Wait for synchronization to complete
Hyperline displays In progress while Google Workspace data is being
synchronized, then Connected when it is ready.
Reconfigure single sign-on
Click Reconfigure to reopen the setup assistant for the existing connection. Use it to update single sign-on or finish domain verification without deleting the connection. When you close the setup assistant, Hyperline refreshes the connection details and statuses automatically. To authorize user and group synchronization, use Configure in the directory synchronization line instead.Manage directory synchronization
Once directory synchronization is connected, Hyperline displays:- Last synchronization: the date, time, and result of the latest synchronization
- Synchronize now: fetches the latest users and groups from Google Workspace
- Provision users in Hyperline: controls whether synchronized users become members of this Hyperline account
Google Workspace directory synchronization runs automatically. You can also
start it manually, but a new manual synchronization cannot start if the
connection was synchronized during the previous 30 minutes.
Provision users in Hyperline
After directory synchronization is connected, enable Provision users in Hyperline and click Save changes. Hyperline then imports existing directory users and continues to apply user and group changes. Provisioning follows these rules:- A new directory user creates a member in this Hyperline account.
- If the email address already belongs to a Hyperline user, Hyperline links that user instead of creating a duplicate.
- Profile and group changes update the provisioned member and their assigned role.
- Suspending a Google Workspace user removes their provisioned access. Unsuspending them restores the existing membership instead of creating a duplicate.
- Deleting a directory user removes every provisioned Hyperline membership linked to that identity, except account owner memberships.
- Account owners are never automatically removed or suspended by directory synchronization.
Assign roles from Google groups
Configure role provisioning from Settings > Team > Roles.1
Open Role provisioning
2
Click Add mapping
3
Select a Google group and a Hyperline role
4
Save the mapping

