Configure Google Developers Console
Log in a Google Account Administrator for the domain. Go to the following web address: https://console.developers.google.com/
Create A New Project
-
From the dropdown bring up the project management dialog and create a new project with the desired name.
-
Click NEW PROJECT.
-
Click CREATE, then select the newly created project by clicking on the dropdown and selecting the project from the project management view.
-
Once the project in created, select IAM & Admin>Service accounts option on the side menu.
-
Click + CREATE SERVICE ACCOUNT.
-
Give the service account a name and optionally a description and click CREATE.
-
Assign the service account a Role of Basic > Owner so it has full access to the project. Click CONTINUE.
-
Click DONE on this screen.
-
Click on the newly created service account in the table.
-
Under the KEYS tab click ADD KEY > CREATE NEW KEY. This brings up the Service Account Key creation view.
-
Choose JSON and click CREATE.
-
Download the .jason file. It will be used when configuring FortiNAC.
-
Enable the Admin SDK to access in this project. Click on the top left menu again, and select APIs & Service > Library.
-
Search for Admin SDK.
-
Select Admin SDK API.
-
Then click on it and hit the ENABLE button.
Enable API Access to the Service Account
-
Log into https://admin.google.com and on the Home view in the Admin console, click Security.
-
Select API Controls, then select Domain wide delegation at the bottom.
-
Back in the developer console, find and copy the unique ID from the service account just created.
-
Back in Admin Console, click Add new.
-
Paste Client ID and add the scopes to query (Chrome OS devices’ metadata and mobile devices’ metadata). Click Authorize.
https://www.googleapis.com/auth/admin.directory.device.chromeos
https://www.googleapis.com/auth/admin.directory.device.mobile
-
The “View and manage your Chrome OS devices’ metadata” and “View and manage your mobile devices’ metadata” should be listed as the 2 APIs that are accessible using the service account ID.
Proceed to Configure FortiNAC.