Skip to main content
Solved

Restricting Google Workspace Access to Devices with Netskope Agent Installed.

  • March 3, 2025
  • 2 replies
  • 75 views

Forum|alt.badge.img

Can we restrict access to Google Workspace (admin.google.com) so that only systems with the Netskope agent installed can access it? In other words, can we ensure that only devices with the Netskope agent can log in to the Google Admin Console?

Best answer by notskope

Can we restrict access to Google Workspace (admin.google.com) so that only systems with the Netskope agent installed can access it? In other words, can we ensure that only devices with the Netskope agent can log in to the Google Admin Console?

I don’t have much Google Workspace admin experience, but there is probably a way to either:

  • Restrict access to the google admin console to Netskope IP addresses via a configuration item in Google Workspace Admin OR
  • Restrict access to google admin console to Netskope IP addresses via your Identity provider (if you have something like Okta or Entra ID at your disposal)

Otherwise, you might ask this question to Google support/Google community.

This topic has been closed for replies.

2 replies

Forum|alt.badge.img+7
  • Netskope Employee
  • March 4, 2025

Please follow the below steps to restrict the Google admin access from the devices which has NS client.

  • Configure the real time protection applies to Google Admin app and select the access method as Client under source criteria , the set action as “Allow”.
  • Configure another real time protection applies to Google Admin app and set the action as “block” and this need to be placed below the first policy.

 

 


notskope
  • New Member III
  • Answer
  • March 4, 2025

Can we restrict access to Google Workspace (admin.google.com) so that only systems with the Netskope agent installed can access it? In other words, can we ensure that only devices with the Netskope agent can log in to the Google Admin Console?

I don’t have much Google Workspace admin experience, but there is probably a way to either:

  • Restrict access to the google admin console to Netskope IP addresses via a configuration item in Google Workspace Admin OR
  • Restrict access to google admin console to Netskope IP addresses via your Identity provider (if you have something like Okta or Entra ID at your disposal)

Otherwise, you might ask this question to Google support/Google community.