We are working on a Google Apps application for installation by a domain administrator. At first we tried to list it using a list of the (now obsolete) market, but all new applications should now go through the Google Apps Marketplace SDK.
We have a problem with the new SSO GAM SDK, however, despite the fact that it was installed inside our domain inside, each user is requested through the consent screen when sending them to the OAuth login address. The OAuth URL requests the same permission scope that is registered on the GAM SDK configuration screen.
The documents seem completely contradictory in how to remove unsolicited SSOs for applications installed by the GA administrator.
What url, with what parameters should we send users for authentication using GA without requesting (supposedly already granted) consent?
google-apps google-oauth google-apps-marketplace
sgrove
source share