Single Sign-On v1.7

Google Cloud Platform OIDC Integration Guide Overview

This documentation describes how to set up the Pivotal Cloud Foundry (PCF) Single Sign-On service to use Google Cloud Platform (GCP) as an OpenID Connect (OIDC) identity provider.

GCP lets you build and host applications and websites, store data, and analyze data on Google’s scalable infrastructure.


To integrate GCP as a single sign-on identity provider for PCF apps, you need:


  • PCF, v1.11.0 or later.
  • Single Sign-On, v1.4.1 or later installed on your PCF deployment
  • An SSO service plan configured with plan administrators who manage it and orgs to use it. For help configuring plans, see Manage Service Plans.


  • An active Google Cloud project.
  • A GCP user account with project editor or higher privileges.

Integrate Google Cloud Platform OIDC for SSO

Complete the step below to set up GCP as an OIDC identity provider for the SSO service.

  1. Configure GCP as an OIDC Identity Provider

Test and Troubleshoot

Create a pull request or raise an issue on the source for this page in GitHub