AllowedDomainsForApps

Define domains allowed to access Google Workspace

Supported on:

  • Chrome (Windows) since version 51

Description:

Setting the policy turns on Samsung Browser's restricted sign-in feature in Google Workspace and prevents users from changing this setting. Users can only access Google tools using accounts from the specified domains (to allow gmail or googlemail accounts, add consumer_accounts to the list of domains). This setting prevents users from signing in and adding a Secondary Account on a managed device that requires Google authentication, if that account doesn't belong to one of the explicitly allowed domains.

Leaving this setting empty or unset means users can access Google Workspace with any account.

Users cannot change or override this setting.

Note: This policy causes the X-GoogApps-Allowed-Domains header to be appended to all HTTP and HTTPS requests to all google.com domains, as described in https://support.google.com/a/answer/1668854.

Supported features:

  • Applied to browser without restart. Note that some ongoing tasks may not be affected.
  • Applied at Samsung Browser profile level.

Data type:

String
Windows:REG_SZ

Windows registry location:

Software\Policies\Samsung\Internet\AllowedDomainsForApps

Example value:

managedchrome.com,example.com

More policies under Miscellaneous: