EdbMails EDB Recovery and Migration software
  • Products
    EdbMails
    All-in-one Recovery and Migration
    • EDB Recovery and Migration
    • OST, PST, MBOX, NSF, EML, MSG
    • Office 365, Exchange Migration
    • SharePoint, OneDrive & Teams
    • Google Workspace Migration
    • IMAP Migration
    • Duplicate Remover
    • EdbMails Data Recovery
    • Backup Solutions
    • All ProductsAll Products

    EDB Recovery and Migration

    EdbMails lets you recover corrupted, damaged, and offline Exchange EDB files, convert EDB mailboxes to PST format, and directly migrate mailbox data to Office 365 and live Exchange Server.

    EDB to PST
    EDB to PST
    Recover corrupted, damaged, offline EDB files and convert Exchange EDB mailboxes to PST file format
    Public Folder to Exchange
    Public Folder to Exchange
    Migrate public folders from an Exchange offline EDB file to live Exchange Server
    EDB to Live Exchange Migration
    EDB to Live Exchange Migration
    Directly migrate offline Exchange database (EDB) files to live Exchange server
    Archive Mailbox to Office 365
    Archive Mailbox to Office 365
    Migrate archive mailboxes from offline EDB files directly to Office 365
    EDB to Office 365 Migration
    EDB to Office 365 Migration
    Directly migrate offline Exchange database (EDB) files to Office 365
    Public Folder to Office 365
    Public Folder to Office 365
    Migrate public folders from an offline Exchange EDB file to Office 365

    OST, PST, MBOX, NSF, EML, MSG Export and Migration

    EdbMails lets you to recover OST and PST files, export OST, PST, MBOX, NSF, EML, and MSG files to PST files, and directly migrate OST, PST, MBOX, and NSF mailbox data to Office 365 and live Exchange Server.

    OST Recovery and Migration
    OST Recovery and Migration
    Recover offline OST files, convert OST to PST, and migrate OST to Office 365 and Exchange Server
    PST Recovery and Migration
    PST Recovery and Migration
    Recover Outlook PST files , Export PST to PST, migrate PST to Office 365 and Exchange Server
    MBOX Export and Migration
    MBOX Export and Migration
    Export MBOX to PST, migrate MBOX to Office 365 and Exchange Server
    NSF Export and Migration
    NSF Export and Migration
    Export NSF to PST, migrate NSF to Office 365 and Exchange Server
    EML to PST Export
    EML to PST Export
    Convert EML files to Outlook PST files
    PST to MSG Export
    PST to MSG Export
    Convert Outlook PST file to MSG file format
    MSG to PST Export
    MSG to PST Export
    Export MSG files to Outlook PST files

    Office 365, Exchange Migration

    EdbMails lets you securely migrate mailboxes across Microsoft 365, Exchange, Google Workspace (Google Workspace Migraton), and IMAP-supported servers such as Outlook, Gmail, Zimbra, Zoho Mail, and cPanel, ensuring zero downtime.

    Office 365 Backup
    Office 365 Migration
    Migrate between Office 365 tenants, Office 365 to Exchange, Office 365 to PST, PST files to Office 365.
    Exchange Server Backup
    Exchange Migration
    Migrate between any Exchange Servers, Exchange to Office 365, Exchange to PST, PST files to Exchange.
    Tenant to Tenant Migration
    Tenant to Tenant Migration
    Migrate Mailboxes, Public Folders, Archive Mailboxes between Office 365 Tenants.
    Exchange to Office 365
    Exchange to Office 365
    Migrate Mailboxes, Public Folders, Archive Mailboxes from live Exchange server to Office 365.
    Office 365 to IMAP
    Office 365 to IMAP
    Migrate Office 365 to IMAP, Office 365 to Gmail, Office 365 to Outlook, Office 365 to Zoho etc.
    Exchange to IMAP
    Exchange to IMAP
    Migrate from live Exchange Server to IMAP servers such as Gmail, Outlook, and Zoho Mail.
    Public Folder to Office 365
    Public Folder to Office 365
    Migrate Public Folders between Office 365 tenants with complete folder hierarchy and mailbox data integrity.
    Exchange to PST
    Exchange to PST
    Export live Exchange Server mailboxes, public folders, and archive mailboxes to Outlook PST files.

    SharePoint, OneDrive & Microsoft Teams Migration

    EdbMails lets you migrate SharePoint sites, OneDrive data, Microsoft Teams, teams, channels, chats, permissions, and documents between Microsoft 365 tenants while maintaining the existing folder structure and data integrity.

    SharePoint, OneDrive & Teams Backup
    SharePoint Online Migration
    Migrate documents, lists, files and folders from SharePoint sites.
    OneDrive for Business Migration
    OneDrive for Business Migration
    Migrate documents, lists, files, folders, private chats from OneDrive.
    Microsoft Teams Migration
    Microsoft Teams Migration
    Migrate Teams, chats, channels, documents, files and folders etc.

    Google Workspace / G Suite Migration

    EdbMails offers secure Google Workspace migration to Office 365, Exchange, or IMAP, and export to PST covering emails, contacts, calendars and tasks.

    Google Workspace Migration
    Google Workspace Migration
    Migrate emails, calendars, contacts, tasks from Google workspace to Google workspace, office 365, Exchange and IMAP. Export to PST
    Google Workspace to Office 365
    Google Workspace to Office 365
    Migrate emails, calendars, contacts, tasks from Google Workspace / G Suite to Office 365
    Google Workspace to Exchange Server
    Google Workspace to Exchange Server
    Migrate emails, calendars, contacts, tasks from Google Workspace / G Suite to on-Premise Exchange Server
    Google Workspace to IMAP
    Google Workspace to IMAP
    Migrate emails, calendars, contacts, tasks from Google Workspace / G Suite to IMAP, Outlook, Zimbra, Zoho etc.
    Google Workspace to Google Workspace Migration
    Google Workspace to Google Workspace
    Migrate emails, calendars, contacts, tasks between two Google Workspace / G Suite tenants
    Google Workspace to PST
    Google Workspace to PST
    Export emails, calendars, contacts, tasks from Google Workspace / G Suite to Outlook PST files

    IMAP Migration

    EdbMails IMAP Migration tool lets you easily migrate emails from IMAP servers such as Outlook, Gmail, Zoho Mail, Zimbra, cPanel, and more. Supports IMAP to IMAP, Office 365, Exchange Server, PST, and bulk PST to IMAP migration.

    IMAP Email Backup & Migration
    IMAP Email Backup & Migration
    Backup and migrate emails from IMAP servers to PST, Office 365, and On-Premises Exchange Server
    IMAP to Office 365
    IMAP to Office 365
    Migrate emails, folders, and attachments from IMAP servers to Office 365
    IMAP to Exchange
    IMAP to Exchange
    Migrate emails, folders, and attachments from IMAP servers to on-premises Exchange Server
    IMAP to PST
    IMAP to PST
    Export emails, folders, and attachments from IMAP servers to Outlook PST files for backup
    PST to IMAP
    PST to IMAP
    Migrate emails, folders, and attachments from bulk PST files to IMAP servers

    Duplicate Remover

    EdbMails Duplicate Remover lets you easily remove duplicate items from Office 365 and Exchange Server, and from IMAP, Outlook, Gmail, Zimbra, Zoho Mail, etc., ensuring a clean and organized mailbox.

    Remove Duplicates
    Remove Duplicates
    Easily clean up your Office 365, Exchange, Outlook and IMAP accounts by removing duplicate emails.
    Remove Duplicates from Office 365
    Remove Duplicates from Office 365
    Remove duplicate emails, calendars, contacts, journal tasks, etc. from Office 365.
    Remove Duplicates from Exchange Server
    Remove Duplicates from Exchange Server
    Remove duplicate emails, calendars, contacts, journal tasks, etc. from live Exchange Server.
    Remove Duplicates from IMAP, Outlook
    Remove Duplicates from IMAP, Outlook
    Remove duplicate emails, attachments from IMAP, Outlook, Gmail, Zimbra, Zoho Mail etc.

    Exchange, SharePoint, OneDrive, Teams and Office 365 Backup

    EdbMails enables secure, automated backup and recovery for Microsoft 365 services including Exchange Online, SharePoint, OneDrive, Teams, and Live Exchange Server with complete data protection and restore flexibility.

    Office 365 Backup
    Office 365 Backup
    Incremental, Granular, Encrypted and Compressed Office 365 Mailboxes Backup
    Exchange Server Backup
    Exchange Server Backup
    Incremental, Granular, Encrypted and Compressed Exchange Mailboxes Backup
    SharePoint, OneDrive & Teams Backup
    SharePoint, OneDrive & Teams Backup
    Backup Online site collections, Team sites, Office 365 groups, all documents etc.

    EdbMails Data Recovery

    EdbMails Data Recovery Software lets you recover permanently deleted data, including photos, videos, documents, and archived files, from partitions on hard drives, SSDs, USB drives, SD cards, and external storage devices.

    EdbMails Data Recovery
    EdbMails Data Recovery
    Recover and restore permanently deleted data from hard drives, SSDs, USB drives, SD cards, and etc.
    Whitepaper Whitepaper
    Request a Demo Request a Demo
    Sign Up Sign Up
  • Features
  • FAQ
  • Offers
  • Pricing
  • Download
  • Support
  • Sign in
User’s Manual
Google Workspace Migration

User Manual

User Manual

  • Overview
  • System Requirements
  • Migration Scenarios
  • Installation
    • Installation process
    • Reinstall or Upgrade
    • How to uninstall
  • FAQs
    • Google Workspace to Office 365
    • Google Workspace to IMAP
    • Google Workspace to Exchange
    • Google Workspace to Google Workspace
    • Google Workspace to PST Export
  • Videos
  • Screenshots
    • Google Workspace to Office 365
    • Google Workspace to Exchange
    • Google Workspace to IMAP
  • How it works?
    • Google Workspace to Office 365 Migration
    • Migrate Google Workspace to Google Workspace
    • Google Workspace to Exchange Migration
    • Google Workspace to IMAP Migration
    • Export Google Workspace to Outlook PST
  • Google Workspace Admin Configuration
  • Connect to target Office 365
  • Connect to Exchange server for multiple mailboxes migration
    • Connect with Global Admin
    • Connect to Multiple users using CSV file
    • Connect using full access permission
    • Connect individual users for Single / Specific user Migration
  • Connect to Hosted Exchange for its Migration
    • Connect with Full Access permissions
    • Connect to multiple users using CSV file
    • Connect to Individual user for migration
  • Connect to IMAP
    • Connect IMAP Single Server
    • Connect IMAP Multiple Server
  • Knowledge Base
    • Bulk Google Workspace Mailbox Migration
    • Google Workspace Migration
    • Why Choose EdbMails
    • Automatic Mailbox Mapping
    • Best Google Workspace Migration Software
    • Migrate Google Workspace Emails, Contacts & Calendars
    • Fix Google Workspace Migration Issues
    • Avoid Google Workspace Migration Mistakes
    • Mistakes to Avoid During Google Workspace Migration
    • Migrate Large Google Workspace Mailboxes
    • Google Workspace Metadata Preservation
    • Fix Google Workspace API Permission Errors
  • Map the Mailboxes
  • Incremental Migration
  • Exchange Throttling Policy
  • Multifactor Authentication
    • Enable MFA in Office 365
    • Create App password for MFA
    • Disable Security Defaults
  1. Home
  2. Google Workspace Migration
  3. Google Workspace (G Suite) Admin Configuration for Migration | EdbMails
Download Buy Now

Google Workspace (G Suite) Admin Configuration for Migration

EdbMails Google Workspace Migration Tool lets you securely migrate emails, calendars, contacts, tasks, folders, and attachments from Google Workspace (G Suite) using an Admin account—without requiring individual user passwords. To access all user mailboxes across the organization, the Admin account must be configured with a Service Account and Domain-Wide Delegation.

The configuration involves the following steps:

  • Configure Service Account in Google Cloud.
  • Grant Domain-Wide Delegation.
  • Generate and download a secure JSON key.

Steps to Configure a Service Account

Step 1: Sign in to Google Cloud Console

  • Open the Google Cloud Console.
  • Sign in using your Google Workspace Super Administrator account.

      Note: Super Admin privileges are required to grant Domain-Wide Delegation and approve API access.

Step 2: Create or Select a Google Cloud Project

  • In the top-left corner, click ‘Select a Project’, then click ‘New Project’.

    Create New Project

  • Enter a project name and click the ‘Create’ button.

    Name the Project

  • Wait a few seconds while the project is being created.

Step 3: Enable the Required Google APIs

  • From the left-hand menu, navigate to ‘APIs & Services’ → ‘Library’.

    Navigate to Library

  • Search for and enable the following APIs.
    • Admin SDK API
    • Google People API
    • Gmail API
    • Google Calendar API
    • Google Tasks API

    Search for API

    Search for API

  • Wait until each API shows as Enabled before proceeding.

Step 4: Create a Service Account

  • In the left-hand menu, navigate to ‘IAM & Admin’ → ‘Service Accounts’.

    Navigate to Service Account

  • Click ‘Create Service Account’.

    Create Service Account

  • Enter a service account name. The Service Account ID will be auto-generated.
  • Click the ‘Create and Continue’ button.

    Enter Service Account Name

  • Skip the Assign roles step (roles are not required for Domain-Wide Delegation) and click ‘Done’.

    Check Permissions

Grant Domain-Wide Delegation in Google Admin Console

This step authorizes the Service Account to access Google Workspace data at the domain level.

  • Open the Google Admin Console and log in using your Super Administrator account.
  • Navigate to ‘Security’ > ‘Access and data control’ > ‘API Controls’.

    Navigate to API controls

  • Click on ‘Manage Domain Wide Delegation’.

    Manage Domain Wide Delegation

  • Click on ‘Add New’ and paste the Client ID copied from Google Cloud.

    Add a New Client ID

  • In the OAuth Scopes field, enter the following scopes
    • https://www.googleapis.com/auth/admin.directory.user.readonly
    • https://www.googleapis.com/auth/gmail.readonly
    • https://www.googleapis.com/auth/calendar.readonly
    • https://www.googleapis.com/auth/tasks.readonly
    • https://www.googleapis.com/auth/contacts.readonly
    • https://www.googleapis.com/auth/admin.directory.group.readonly

    Enter OAuth Scopes

  • Click ‘Authorize’, then ‘Save’.

    The Service Account is now approved to access Google Workspace data based on the defined permissions.

Download the JSON Key

  • Go back to Google Cloud Console.
  • Navigate to ‘IAM & Admin’ → ‘Service Accounts’ and click your service account.

    Select Service Account

  • Click on ‘Manage Domain Wide Delegation’.

    Manage Domain Wide Delegation

  • Go to the ‘Keys’ tab and click ‘Add Key’ > ‘Create New Key’.

    Create New Key

  • Select ‘JSON’ and click ‘Create’.

    Create New Key

  • The JSON key file will download automatically.

      Note: This JSON file contains the private key required for secure authentication. It must be uploaded or configured in EdbMails to establish API connectivity.

Why JSON Key Creation Is Blocked?

If JSON key creation is restricted for any account (including administrators or owners), it is typically enforced by the following organization policies in Google Cloud:

  • iam.managed.disableServiceAccountKeyCreation
  • iam.disableServiceAccountKeyCreation

When these policies are enabled, no one can create service account JSON keys.

How to Allow JSON Key Creation?

To permit JSON key creation:

  • The above mentioned policies must be explicitly disabled (set to inactive)
  • The change must be made at the organization level

When these policies are enabled, no one can create service account JSON keys.

Required Permissions:

You need the Organization Policy Administrator role to:

  • View organization policies
  • Update or disable constraints
  • Manage policy settings across the organization

Steps to assign the Organization Policy Administrator role:

  • Login to the Google cloud console with the owner account, then navigate to IAM & Admin → IAM.
  • Navigate to ‘IAM & Admin’ → ‘Service Accounts’ and click your service account.

    IAM & Admin

  • In the Assign Roles field, search for and select Organization Policy Administrator, then click Save to apply the changes.

    Assign role

  • Select the project, then navigate to IAM & Admin → Organization Policies.
  • Set the following policies to inactive:
    • iam.managed.disableServiceAccountKeyCreation
    • iam.disableServiceAccountKeyCreation

    Set Policies to inactive

  • Click on ‘Manage Policy’.

    Manage Policy

  • Select the Override parent’s policy option, then click on Add a rule.

    Override parent’s policy

  • Keep Enforcement set to Off, then click Done.

    Set Enforcement to OFF

  • Click on Set Policy.

    Set Policy

  • Follow the same steps to set iam.disableServiceAccountKeyCreation to inactive as well.
  • Allow 5–10 minutes for the changes to take effect, then download the generated JSON key for use in the EdbMails application.

Additional resources

  • G Suite to Office 365 Migration
  • G Suite to Exchange Migration
  • G Suite to IMAP Migration
lady image

 

 In this manual

IntroductionConfigure Service AccountDomain-Wide DelegationGenerate JSON Key

Google Workspace Migration

100 Mailboxes $299 Only

Buy Now

Need help?

24/7 Customer support

Contact us on Live chat

Personalized Demo

Book a personalized demo

Still need help?

Email us / Call us

@edbmails.com All rights are reserved Privacy Policy | Terms of Use | GDPR | Security | Press Releases

hidden msg
Live Chat

Hi, May I help you?

Hide Chat Now