Before completing the steps below, please make sure you have already followed the process to add ClassLink as a third party SSO provider in the Google Admin Console.
Log into the G Suite Admin Console at https://admin.google.com
Click “Device Management”
Click “Chrome management,” found under “Device Settings”
Click “User Settings”
Under “Organization”, click the Suborganization for which you wish to apply the changes (by default, the changes made in this section apply to your entire G Suite organization).
In the “Search” field (beneath the breadcrumbs section), type “Single”
Set “Single Sign-On Online Login Frequency” to “Every 3 Days,” then set “Single Sign-On” to “Enable SAML-based Single Sign-On from Chrome Devices”
Set the startup page. Search for "startup", locate Pages to Load on Startup, then add https://launchpad.classlink.com/
Return to the Chrome Management page and select the “Device settings” option
If applicable, click the sub-organization for which you previously modified the user settings
In the search field, type “Single”
For Single Sign-On IdP Redirection, select “Allow users to go directly to SAML SSO IdP page”
For Single Sign-On Cookie Behavior, select “Enable transfer of SAML SSO Cookies into user session during login
For Single Sign-On Camera Permissions, enter the following URLs:
That's it! Any Chromebook affected by the above changes will now require logging into ClassLink in order to be accessed.