---
title: "Configuring Google Authentication"
description: "Enable Google sign-in for your Talkspirit organisation from Administration, turn on the Google provider, and optionally restrict which email domains can register through it."
category: administration-security
section: authentication-and-sso
tags: [admin]
type: Tutorial
lastUpdated: 2026-08-10
locale: en
canonical: https://support.talkspirit.com/en/administration-security/how-to-configure-google-authentication
---

# Configuring Google Authentication


Administrators enable Google sign-in from **Administration → Authentication**, on the **SSO Providers** tab. Turn on the **Google** provider so members can sign in with their Google account, and optionally restrict which email domains can register through it. Configuring authentication requires administrator rights.

## Before you begin

- You must be an administrator of your Talkspirit organisation.
- Google sign-in relies on each member's existing Google account. No connection details are entered in Talkspirit.

## Enable Google sign-in

1. Select your avatar, then **Administration**.
2. Open **Authentication**, then select the **SSO Providers** tab.
3. Turn on the **Google** switch.

Members can now sign in with their Google account. To stop offering Google, turn the switch off and confirm in the dialog that appears. If you signed in through Google yourself, the switch stays disabled until you sign in another way, so you cannot lock yourself out.

![SSO Providers tab of the Authentication page, with the Google card at the top of the provider list and its switch turned on](/images/administration-security/how-to-configure-google-authentication/01-sso-providers-google-enabled.png)

## Restrict registration to specific domains

By default, anyone with a Google account can register. To limit this, expand the **Google** card, enter the domains in **Allowed email domains** (comma-separated, for example `example.com, example.org`), then select **Save domains**. Leave the field empty to allow any domain.

> **Note:** Allowed email domains control who can create an account through Google. They do not force existing members on those domains to use Google.

![Expanded Google card showing the SSO badge, the Allowed email domains field with example.com entered, and the Save domains button](/images/administration-security/how-to-configure-google-authentication/02-google-allowed-domains.png)

## Require members to sign in with Google

Turning on Google adds it alongside email and password. To make Google the only way in, open the **Sign-up settings** tab and turn off **Email and password**. Talkspirit asks you to confirm and blocks the change while no other sign-in method is active, so no one is locked out.

> **Warning:** Turning off email and password removes password sign-in for everyone in the organisation. Enable Google and sign in with it yourself before you turn email and password off.

## What's Next?

- [Configuring SAML Authentication](/en/administration-security/saml-authentication)
- [Automated user provisioning and de-provisioning (SCIM 2.0)](/en/administration-security/automated-user-provisioning-and-de-provisioning-scim-20)
- [Changing or resetting my password](/en/getting-started/changing-your-password)
