Merencanakan proses orientasi untuk identitas perusahaan Anda
Tetap teratur dengan koleksi
Simpan dan kategorikan konten berdasarkan preferensi Anda.
Last reviewed 2024-06-26 UTC
Dokumen di bagian Penilaian dan perencanaan membantu Anda menilai
persyaratan dan mengembangkan rencana untuk orientasi identitas perusahaan Anda ke
Cloud Identity atau Google Workspace.
Mengelola identitas perusahaan sering kali merupakan salah satu tanggung jawab utama departemen IT perusahaan. Tetapi setiap organisasi itu unik, dan cara Anda mengelola identitas perusahaan di organisasi juga cenderung unik. Untuk
menentukan cara terbaik menggunakan
Cloud Identity
atau
Google Workspace
untuk mengelola identitas perusahaan di organisasi Anda, penting bagi Anda untuk
menilai kebutuhan Anda.
Sebelum memulai
Sebelum mulai menilai dan merencanakan deployment Cloud Identity atau Google Workspace, pastikan Anda melakukan hal berikut:
Pahami
model domain
yang mendukung Cloud Identity dan Google Workspace.
Tentukan apakah Anda memerlukan satu Google Cloud organisasi atau
beberapa Google Cloud organisasi untuk deployment Anda. Untuk mendapatkan bantuan terkait
keputusan ini, lihat
Praktik terbaik untuk merencanakan akun dan organisasi.
Tinjau artikel
Arsitektur referensi
dan pilih arsitektur yang paling cocok dengan
kebutuhan Anda.
Untuk menilai dan merencanakan deployment Cloud Identity atau Google Workspace Anda, ikuti langkah-langkah berikut:
Jika Anda memilih arsitektur yang menggunakan IdP eksternal, pelajari bagaimana cara
memetakan model logis IdP eksternal Anda ke Cloud Identity atau
Google Workspace.
Jika Anda menggunakan Active Directory, lihat
Federasi dengan Active Directory
untuk mempelajari cara memetakan forest, domain, pengguna, dan grup, serta mempelajari
opsi konfigurasi yang perlu dipertimbangkan.
Demikian pula, jika Anda berencana untuk bergabung dengan Azure Active Directory (AD), lihat
Gabungkan Google Cloud dengan Microsoft Entra ID
untuk mengetahui detail selengkapnya tentang cara memetakan tenant, domain, pengguna, dan grup.
Mengidentifikasi dan menilai akun pengguna yang ada. Jika Anda belum pernah menggunakan
Google Workspace atau Cloud Identity, karyawan organisasi Anda
mungkin telah menggunakan akun konsumen untuk mengakses layanan Google. Sebelum menyiapkan Google Workspace atau
Cloud Identity, sebaiknya Anda menganalisis akun pengguna yang
ada dan cara terbaik untuk menanganinya.
Untuk mengetahui detail selengkapnya tentang berbagai kumpulan akun pengguna yang mungkin Anda miliki dan
pengaruhnya terhadap deployment Anda, lihat
Menilai akun pengguna yang ada.
Tetapkan rencana tingkat tinggi untuk orientasi identitas ke
Cloud Identity atau Google Workspace. Dalam
Menilai rencana orientasi,
Anda dapat menemukan pilihan rencana orientasi yang telah terbukti, beserta panduan tentang
cara memilih paket yang paling sesuai dengan kebutuhan Anda.
Jika Anda berencana menggunakan IdP eksternal dan telah mengidentifikasi akun pengguna
yang perlu dimigrasikan, Anda mungkin perlu mempertimbangkan persyaratan
tambahan saat mengonfigurasi IdP eksternal. Untuk mengetahui detail selengkapnya, lihat
Menilai dampak konsolidasi akun pengguna terhadap penggabungan.
Setelah Anda menyelesaikan penilaian dan membuat rencana, Anda akan siap untuk mengaktivasi identitas perusahaan Anda ke Cloud Identity atau
Google Workspace.
[[["Mudah dipahami","easyToUnderstand","thumb-up"],["Memecahkan masalah saya","solvedMyProblem","thumb-up"],["Lainnya","otherUp","thumb-up"]],[["Sulit dipahami","hardToUnderstand","thumb-down"],["Informasi atau kode contoh salah","incorrectInformationOrSampleCode","thumb-down"],["Informasi/contoh yang saya butuhkan tidak ada","missingTheInformationSamplesINeed","thumb-down"],["Masalah terjemahan","translationIssue","thumb-down"],["Lainnya","otherDown","thumb-down"]],["Terakhir diperbarui pada 2024-06-26 UTC."],[[["\u003cp\u003eThis section focuses on assessing requirements and planning the onboarding of corporate identities to Cloud Identity or Google Workspace.\u003c/p\u003e\n"],["\u003cp\u003eBefore starting, it is recommended to understand the domain model, determine the need for single or multiple Google Cloud organizations, and review relevant reference architectures.\u003c/p\u003e\n"],["\u003cp\u003eThe assessment process involves mapping external Identity Provider (IdP) logical models, such as Active Directory or Azure AD, to Cloud Identity or Google Workspace.\u003c/p\u003e\n"],["\u003cp\u003eIt's crucial to identify and analyze existing user accounts, especially if employees have been using consumer accounts, and determine how they will affect your deployment.\u003c/p\u003e\n"],["\u003cp\u003eA high-level plan for onboarding identities should be established, utilizing proven onboarding plans and considering the impact of external IdP usage and potential user account migrations.\u003c/p\u003e\n"]]],[],null,["# Plan the onboarding process for your corporate identities\n\nThe documents in the **Assess and plan** section help you assess your\nrequirements and develop a plan for onboarding your corporate identities to\nCloud Identity or Google Workspace.\n\nManaging corporate identities is often one of the key responsibilities of\nenterprise IT departments. But each organization is unique, and the way you\nmanage corporate identities in your organization is likely to be unique, too. To\ndetermine the best way to use\n[Cloud Identity](/identity)\nor\n[Google Workspace](https://gsuite.google.com/)\nto manage corporate identities in your organization, it's important that you\nassess your requirements.\n\nBefore you begin\n----------------\n\nBefore you begin to assess and plan your Cloud Identity or\nGoogle Workspace deployment, make sure that you do the following:\n\n- Understand the [domain model](/architecture/identity/overview-google-authentication) that underpins Cloud Identity and Google Workspace.\n- Determine whether you need a single Google Cloud organization or multiple Google Cloud organizations for your deployment. For help with this decision, see [Best practices for planning accounts and organizations](/architecture/identity/best-practices-for-planning).\n- Review the [Reference architectures](/architecture/identity/reference-architectures) article and select the architecture that most closely matches your requirements.\n- If you selected an architecture that [uses an external identity provider (IdP)](/architecture/identity/reference-architectures#using_an_external_idp), review [Best practices for federating Google Cloud with an external identity provider](/architecture/identity/best-practices-for-federating) so that you can incorporate these best practices in your design.\n\nAssess and planning your deployment\n-----------------------------------\n\nTo assess and plan your Cloud Identity or Google Workspace\ndeployment, follow these steps:\n\n1. If you selected an architecture that uses an external IdP, learn how to\n map the logical model of your external IdP to Cloud Identity or\n Google Workspace.\n\n If you use Active Directory, refer to\n [Federating with Active Directory](/architecture/identity/federating-gcp-with-active-directory-introduction)\n to learn how to map forests, domains, users, and groups and learn which\n configuration options to consider.\n\n Similarly, if you plan to federate with Azure Active Directory (AD), see\n [Federate Google Cloud with Microsoft Entra ID](/architecture/identity/federating-gcp-with-azure-active-directory)\n for more details on how you can map tenants, domains, users, and groups.\n2. Identify and assess existing user accounts. If you haven't been using\n Google Workspace or Cloud Identity, it's possible that your\n organization's employees have been using consumer accounts to access Google\n services. Before you set up Google Workspace or\n Cloud Identity, we recommend that you analyze user accounts that\n exist and how to best deal with them.\n\n For more details on the different sets of user accounts you might have and\n how they can impact your deployment, see\n [Assess existing user accounts](/architecture/identity/assessing-existing-user-accounts).\n3. Settle on a high-level plan for onboarding identities to\n Cloud Identity or Google Workspace. In\n [Assess onboarding plans](/architecture/identity/assessing-onboarding-plans),\n you can find a selection of proven onboarding plans, along with guidance on\n how to select the plan that best suits your needs.\n\n If you plan to use an external IdP and have identified user accounts\n that need to be migrated, you might need to consider additional\n requirements when configuring your external IdP. For more details, see\n [Assess user account consolidation impact on federation](/architecture/identity/assessing-consolidation-impact-on-federation).\n\nWhen you have completed your assessment and created a plan, you will be ready to\nonboard your corporate identities to Cloud Identity or\nGoogle Workspace."]]