Skip to main content

Deploy the Guidde Browser Extension in Chrome using Microsoft Intune (Windows)

Learn about rolling Guidde's Browser extension in Chrome using Microsoft Intune (Windows).

Updated today

You will need the Chrome ADM/ADMX templates before you can configure the Guidde Browser extension.

  1. Download the appropriate Chrome ADM/ADMX Templates from https://chromeenterprise.google/browser/download/

    Note: Scroll Down to “Need to stick with on-premise management”

Download both the Policy and Update Templates

Unzip both downloads. We will need 6 files to deploy the extension

  1. Google.admx

  2. GoogleUpdate.admx

  3. Chrome.admx

  4. Google.adml

  5. GoogleUpdate.adml

  6. Chrome.adml

1. Log into the Microsoft Intune Admin Center

2. Go to Devices >> Manage Devices >> Configuration

3. Under Import ADMX >> Import

4. Add the “google.admx” and “google.adml” files respectively >> Next >> Create

5. Edit the “GoogleUpdate.admx” file in a text editor. Delete the line” <using prefix="windows" namespace="Microsoft.Policies.Windows" />"

6. Add the “GoogleUpdate.admx” and “GoogleUpdate.adml” files respectively >> Next >> Create

7. Edit the “Chrome.admx” file in a text editor. Delete the line “<using namespace="Microsoft.Policies.Windows" prefix="windows"/>”


​8. Add the “chrome.admx” and “chrome.adml” files respectively >> Next >> Create

9. Please make sure that all uploads are successful before proceeding:


10. Click back to “Policies” >> Create >> New Policy

11. Select “Windows 10 and later” for Platform

12. Select “Templates” for Profile Type

13. Select “Imported Administrative templates (Preview)”
14. Click Create

15. Provide a Name (ie. Guidde - Chrome)

16. Click Next

17. Expand Google >> Google Chrome >> Extensions >> Configure the list of force-installed apps and extensions

18. Select Enabled

19. Add
oacmmmjedhheaijfjidilonpngccnhdl;https://clients2.google.com/service/update2/crx

20. Click OK

21. Click Next

22. Click Next for Scope

23. Add the correct assignment groups (or All Devices)

24. Click Next

25. Click Create

Note: It can take a few hours for Intune to deploy the configuration down to the device. Once deployed you will see:


Silent SSO: Automatic Sign-In for Managed Installations

When the extension is deployed via managed installation, Silent SSO is automatically triggered on the user’s device - no user interaction required.

What happens:

  • No browser tabs are opened, no prompts or alerts are shown to the user

  • The extension identifies the org’s SSO domain using the email associated with the user’s Chrome profile

  • It authenticates the user against the Guidde backend and SSO provider

  • The auth token is set for both the extension and app.guidde.com

This means users will be signed in and ready to use Guidde without any manual login step.

If the user isn’t logged into the SSO provider yet: The extension will retry authentication every 60 seconds. Once the user signs into any application that triggers an SSO session, the Guidde extension will authenticate automatically.

Did this answer your question?