You will need the Chrome ADM/ADMX templates before you can configure the Guidde Browser extension.
Download the appropriate Chrome ADM/ADMX Templates from https://chromeenterprise.google/browser/download/
Note: Scroll Down to “Need to stick with on-premise management”
Download both the Policy and Update Templates
Unzip both downloads. We will need 6 files to deploy the extension
Google.admx
GoogleUpdate.admx
Chrome.admx
Google.adml
GoogleUpdate.adml
Chrome.adml
1. Log into the Microsoft Intune Admin Center
2. Go to Devices >> Manage Devices >> Configuration
3. Under Import ADMX >> Import
4. Add the “google.admx” and “google.adml” files respectively >> Next >> Create
5. Edit the “GoogleUpdate.admx” file in a text editor. Delete the line” <using prefix="windows" namespace="Microsoft.Policies.Windows" />"
6. Add the “GoogleUpdate.admx” and “GoogleUpdate.adml” files respectively >> Next >> Create
7. Edit the “Chrome.admx” file in a text editor. Delete the line “<using namespace="Microsoft.Policies.Windows" prefix="windows"/>”
8. Add the “chrome.admx” and “chrome.adml” files respectively >> Next >> Create
9. Please make sure that all uploads are successful before proceeding:
10. Click back to “Policies” >> Create >> New Policy
11. Select “Windows 10 and later” for Platform
12. Select “Templates” for Profile Type
13. Select “Imported Administrative templates (Preview)”
14. Click Create
15. Provide a Name (ie. Guidde - Chrome)
16. Click Next
17. Expand Google >> Google Chrome >> Extensions >> Configure the list of force-installed apps and extensions
18. Select Enabled
19. Add
oacmmmjedhheaijfjidilonpngccnhdl;https://clients2.google.com/service/update2/crx
20. Click OK
21. Click Next
22. Click Next for Scope
23. Add the correct assignment groups (or All Devices)
24. Click Next
25. Click Create
Note: It can take a few hours for Intune to deploy the configuration down to the device. Once deployed you will see:
Silent SSO: Automatic Sign-In for Managed Installations
When the extension is deployed via managed installation, Silent SSO is automatically triggered on the user’s device - no user interaction required.
What happens:
No browser tabs are opened, no prompts or alerts are shown to the user
The extension identifies the org’s SSO domain using the email associated with the user’s Chrome profile
It authenticates the user against the Guidde backend and SSO provider
The auth token is set for both the extension and app.guidde.com
This means users will be signed in and ready to use Guidde without any manual login step.
If the user isn’t logged into the SSO provider yet: The extension will retry authentication every 60 seconds. Once the user signs into any application that triggers an SSO session, the Guidde extension will authenticate automatically.