Overview
This article explains the setup procedure required to synchronize group information on Google Workspace with Email DLP, for customers who wish to sync group information to Email DLP.
Notes
- A Google Workspace super administrator account is required to perform this procedure.
- Before performing this procedure, you must enable the directory in Google Workspace in advance.
Turn Directory on or off (external link) - An Email DLP Administrator Role is required to view the screens and change settings.
For information on how to configure administrators, please refer to the article below.
[Email DLP] Administrator Role Setup - For how to access the management console, please refer to the article below.
Accessing Method to Email DLP Management Console - The content of this article is based on the product as of September 2026, and may be changed without notice thereafter.
Procedure
When Configuring for the First Time
- Access the [Google Admin Console] in Google Workspace.
- From the menu list, click [Security]-[Access and data control]-[API controls].
- Click [Manage Domain Wide Delegation].
- Click [Add new] in the [API clients] column.
-
On the [Add a new client ID] screen, enter the following values.
Client ID102937852759751394212OAuth scopes (comma-delimited)
https://www.googleapis.com/auth/admin.directory.group.readonly, https://www.googleapis.com/auth/admin.directory.user.readonly - Confirm that the information for the added API client is displayed on the screen.
-
Access [Tenant Settings]-[Integrations] from the left menu of the Email DLP management console.
-
On the Integrations screen, At [Group Sync]Click[Add Sync Source].
-
On the Sync Source Service selection screen, click [Google Workspace].
-
Enter the email address of the Google Workspace super administrator and click [Continue].
-
When "Enable" is displayed on the [Integrations] page, the integration is complete.
※ Be sure to perform the integration work in the Email DLP management console only after completing Steps 1 through 6.
If you perform the work before it has been completed, an error message like the one shown below will be displayed.
Changing the Linked Google Workspace Super Administrator Account
-
Access [Tenant Settings]-[Integrations] from the left menu of the Email DLP management console.
-
Click [Re-authorize] for [Group Sync with Google Workspace].
-
Enter the email address of the Google Workspace super administrator, then click [Continue].
-
When "Enabled" is displayed on the [Integrations] page, the integration is complete.
※ If an error message like the one shown below appears, please refer to the following article.
[Email DLP] What to Do If Synchronization Between Address Groups and Groupware Fails?
Translation Disclaimer
This article has been automatically translated from the original Japanese version for your convenience.
While we strive to ensure accuracy, we cannot guarantee its reliability or completeness.
In the event of any discrepancies or questions regarding the content, the official Japanese version shall prevail.