> For the complete documentation index, see [llms.txt](https://oten.gitbook.io/identity-support/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://oten.gitbook.io/identity-support/user-guide/account-management/authentication/google-oidc-sign-in-to-google-via-oxu.md).

# Google OIDC: Sign in to Google via OXU

### **Scope** <a href="#scope" id="scope"></a>

This document defines the requirements and behavior of the Google OIDC feature, allowing users to authenticate their Google account through OXU.

***

#### **Prerequisites** <a href="#prerequisites" id="prerequisites"></a>

Before enabling Google OIDC, you must complete the following security setup to avoid being locked out:

* **Account Activation:** Email verification must be completed.
* **Password Setup:** A secure OXU password must be created.
* **MFA Configuration:** Multi-Factor Authentication (2FA) must be fully enabled and active.

***

#### **How It Works** <a href="#how-it-works" id="how-it-works"></a>

Google OIDC delegates your Google authentication to OXU.

* **Login Redirection:** When you use "Sign in with Google" on any platform, application, or website, you will be automatically redirected to the **OXU login screen**.
* **Unified Identity:** You will no longer use your Gmail/Google password to sign in. You will use your **OXU credentials** instead.

***

### **Avoid Getting "Stuck"** <a href="#avoid-getting-stuck" id="avoid-getting-stuck"></a>

* **Google Services Access:** Once OIDC is enabled, logging into Google services directly (such as **Gmail** or Google Drive) will also require your OXU account and 2FA verification.
* **Account Readiness:** You **MUST** ensure your OXU account is fully verified and 2FA is functional before turning this feature on. Failure to do so may result in being unable to access your Google or OXU accounts.

**Step-by-Step Activation**

1. **Verify Security:** Ensure your OXU password and 2FA are set up.
2. **Authentication:** The next time you access a Google-linked service, complete the login via the OXU portal.

**Summary**

| **Item**                  | **Description**                                      |
| ------------------------- | ---------------------------------------------------- |
| **Authentication Method** | OXU Credentials (Username/Password + 2FA)            |
| **Redirection Behavior**  | Redirects all Google Sign-in requests to OXU         |
| **Critical Requirement**  | 2FA must be active before enabling                   |
| **Applicable Services**   | All apps using Google Login and native Google servic |
