Google OIDC: Sign in to Google via Oten
Scope
This document defines the requirements and behavior of the Google OIDC feature, allowing users to authenticate their Google account through Oten.
Prerequisites
Before enabling Google OIDC, you must complete the following security setup to avoid being locked out:
Account Activation: Email verification must be completed.
Password Setup: A secure Oten password must be created.
MFA Configuration: Multi-Factor Authentication (2FA) must be fully enabled and active.
How It Works
Google OIDC delegates your Google authentication to Oten.
Login Redirection: When you use "Sign in with Google" on any platform, application, or website, you will be automatically redirected to the Oten login screen.
Unified Identity: You will no longer use your Gmail/Google password to sign in. You will use your Oten credentials instead.
Avoid Getting "Stuck"
Google Services Access: Once OIDC is enabled, logging into Google services directly (such as Gmail or Google Drive) will also require your Oten account and 2FA verification.
Account Readiness: You MUST ensure your Oten account is fully verified and 2FA is functional before turning this feature on. Failure to do so may result in being unable to access your Google or Oten accounts.
Step-by-Step Activation
Verify Security: Ensure your Oten password and 2FA are set up.
Authentication: The next time you access a Google-linked service, complete the login via the Oten portal.
Summary
Item
Description
Authentication Method
Oten Credentials (Username/Password + 2FA)
Redirection Behavior
Redirects all Google Sign-in requests to Oten
Critical Requirement
2FA must be active before enabling
Applicable Services
All apps using Google Login and native Google servic
Last updated