Skip to main content

Command Palette

Search for a command to run...

Configure Your Workplace: Google Workspace for IT Admins: Challenge Lab - GSP377

Updated
11 min readView as Markdown
Configure Your Workplace: Google Workspace for IT Admins: Challenge Lab - GSP377
D

A passionate full-stack developer from @ePlus.DEV

Overview

In a challenge lab you’re given a scenario and a set of tasks. Instead of following step-by-step instructions, you will use the skills learned from the labs in the course to figure out how to complete the tasks on your own! An automated scoring system (shown on this page) will provide feedback on whether you have completed your tasks correctly.

When you take a challenge lab, you will not be taught new Google Cloud concepts. You are expected to extend your learned skills, like changing default values and reading and researching error messages to fix your own mistakes.

To score 100% you must successfully complete all tasks within the time period!

This lab is recommended for students enrolled in the Configure your Workplace: Google Workspace for IT Admins skill badge. Are you ready for the challenge?

Setup

Before you click the Start Lab button

Read these instructions. Labs are timed and you cannot pause them. The timer, which starts when you click Start Lab, shows how long Google Cloud resources will be made available to you.

This hands-on lab lets you do the lab activities yourself in a real cloud environment, not in a simulation or demo environment. It does so by giving you new, temporary credentials that you use to sign in and access Google Cloud for the duration of the lab.

To complete this lab, you need:

  • Access to a standard internet browser (Chrome browser recommended).

Note: Use an Incognito or private browser window to run this lab. This prevents any conflicts between your personal account and the Student account, which may cause extra charges incurred to your personal account.

  • Time to complete the lab---remember, once you start, you cannot pause a lab.

Note: If you already have your own personal Google Cloud account or project, do not use it for this lab to avoid extra charges to your account.

Start your lab

When you are ready, click Start Lab in the upper left.

Sign in to the Google Workspace Admin Console

To access the Google Workspace Admin Console, you must find your credentials and then sign in.

Find your lab's User Email and Password

To access the resources and console for this lab, locate the User Email and Password in the Lab Details panel. This panel is on the left or at the top, depending on the width of the browser window. Use these credentials to log in to the Google Workspace Admin Console.

If your lab requires other resource identifiers or connection-related information, they appear on this panel as well.

Sign in to the Admin Console

  1. Click Open Google Workspace Admin Console.

Tip: Open the tabs in separate windows, side-by-side.

Note: If you see the Verify your account dialog:

  • Click Next.

  • Click the prefilled user.

  • Click Use another account.

  1. On the Sign in page, log in using the User Email and Password details provided.

  2. When prompted, click I understand and ACCEPT TERMS OF SERVICE to accept all terms and conditions.

After a few seconds, the Admin Console opens.

  1. Right-click VERIFY DOMAIN in either the yellow box at the top or the red box in the Domains card, and select Open link in new tab.

    Note: To complete this step in a real-life scenario, you'd need to add an actual DNS record.

  2. Click the new tab, called Domain setup, to complete the Google Workspace domain verification steps.

  3. On the Let's set up your domain page, click Get Started.

  4. Select the My domain uses a different host checkbox and then click Continue.

  5. At the bottom of the Add verification code page, select the Come back here and confirm once you have updated the code on your domain host checkbox, and then click Confirm.

  6. Wait until it says Your domain is verified! and then close the Domain setup tab.

    Note: Do not click Activate Gmail.

  7. Return to the Admin Console tab and refresh the page.

Challenge scenario

Your company acquired a small company that will become a new division. As part of the team tasked with configuring Workspace for this new division, you are assigned to use the Google Workspace Admin Console to configure the new operating division environment to run safely, securely, and reliably.

As a Workspace administrator you need to perform following administrative operations:

  • Update organization profile and preferences

  • Create a new group

  • Create a shared resource

  • Create an organizational unit (OU) structure and configure access for Google Vault

  • Enable super admin recovery

Task 1. Update the organization profile and preferences

Update the organization's name to Cymbal Finance and then the organization preferences setting so that new products are not automatically rolled out to users when they are released.

Click Check my progress to verify the objective.

Update the organization profile and preferences

Check my progress

Task 2. Create a new group

Create a new restricted group named Operating Team to be used by employees in the new division for easy group communication and collaboration. When you create this group, restrict the membership to invited users only.

Click Check my progress to verify the objective.

Create a new group

Check my progress

Task 3. Create a shared resource

Create a Calendar resource named Meeting Room, which represents a physical meeting room as a shared resource that users can view and book in Calendar. The meeting room will have at least one feature of the Other type.

Use below details to create resources:

For building:

Parameter Value
Name Head Office
Floors G

For resource:

Parameter Value
Category Meeting Space
Building Head Office
Floor G
Resource name Meeting Room
Capacity 12

For resource feature:

Parameter Value
Feature name Whiteboard
Feature type Other

Click Check my progress to verify the objective.

Create a shared resource

Check my progress

Task 4. Create an organizational unit (OU) structure and configure access for Google Vault

To apply different administrative settings to some users, you must place them in child OUs below the top-level organization. In this task, create an OU named Operating Unit for the division and add at least two users to this OU with the following details:

First Name Last Name
Jamie Jim
Leslie Brick

Then configure Google Vault so that only users in the Operating Unit OU can access it.

Click Check my progress to verify the objective.

Create an OU structure and configure access for Google Vault

Check my progress

Task 5. Add user account recovery information

Add an email recovery option in your lab account, so that if you forget your password, you can easily reset it.

Click Check my progress to verify the objective.

Add user account recovery information

Check my progress


Solution of Lab

https://www.youtube.com/watch?v=3dkSgnCNsSA

https://www.youtube.com/watch?v=qE4v0ARydy4

Google Workspace Admin Challenge Lab — Quick Solution

Complete only the tasks that have Check my progress.

Use an Incognito window and sign in only with the temporary lab account.

Prerequisite: Verify the Domain

  1. Open the Google Workspace Admin Console.

  2. Sign in with the credentials provided by the lab.

  3. Accept the Terms of Service and click Get set up.

  4. Right-click Verify or Verify domainOpen link in new tab.

  5. Click Get Started.

  6. Select Other verification options.

  7. Select Other as the domain host → Continue.

  8. Select:

    Come back here and confirm once you have updated the code on your domain host
    
  9. Click Confirm.

  10. Wait for Your domain is verified!

  11. Close the tab and refresh the Admin Console.

Do not click Activate Gmail.


Task 1: Update the Organization Profile and Preferences

Change the organization name

Go to: Admin Console → Account → Account settings → Profile

Set: Organization name

Cymbal Finance

Click Save.

Disable automatic release of new products

Go to: Admin Console → Account → Account settings → Preferences

Find New products or New products release and select the option that prevents new products from being automatically enabled.

Depending on the current interface, select:

Manual release

or disable:

Turn on new products automatically

Click Save.

Click Check my progress – Update the organization profile and preferences.


Task 2: Create the Operating Team Group

Go to: Admin Console → Directory → Groups → Create group

Enter:

Field Value
Group name Operating Team
Group email operating-team
Description Optional

Click Next and configure:

Access type: Restricted
Who can join the group: Invited users only

Complete the group creation.

You do not need to add members unless the progress checker specifically requests them.

Click Check my progress – Create a new group.


Task 3: Create the Shared Calendar Resource

Go to: Admin Console → Directory → Buildings and resources → Manage resources

Create the building

Open Buildings or Manage buildings, then create:

Field Value
Building name Head Office
Floors G

Complete any other required fields with valid values, then click Add building or Save.

Create the resource feature

Open Resource features and create:

Field Value
Feature name Whiteboard
Feature type Other

Click Save.

Create the meeting room

Return to Resources and select Add resource.

Enter:

Field Value
Category Meeting Space
Building Head Office
Floor G
Resource name Meeting Room
Capacity 12
Feature Whiteboard

Click Add resource or Save.

Click Check my progress – Create a shared resource.


Task 4: Create the Operating Unit OU and Configure Vault

Create the organizational unit

Go to: Admin Console → Directory → Organizational units

Create a child OU directly under the root organization:

Operating Unit

Create the two users

Go to: Admin Console → Directory → Users → Add new user

Create:

First name Last name Organizational unit
Jamie Jim /Operating Unit
Leslie Brick /Operating Unit

For each user, select Operating Unit during creation or move the user afterward through:

User → More options → Change organizational unit

Turn off Vault for the root organization

Go to: Admin Console → Apps → Google Workspace → Google Vault

  1. Select the root organizational unit.

  2. Set Service status to:

    OFF for everyone
    
  3. Click Save.

Turn on Vault only for Operating Unit

  1. Select Operating Unit from the left panel.

  2. Change the service status to:

    ON
    
  3. Click Override.

The final configuration must be:

Organizational unit Google Vault
Root organization OFF
Operating Unit ON — overridden

Click Check my progress – Create an OU structure and configure access for Google Vault.


Task 5: Add Recovery Information

Open the lab administrator’s user profile: Admin Console → Directory → Users → Select the lab Admin account

Open:

Security → Recovery information

Add a valid recovery email address and click Save.

If the option is not available from the Admin Console:

  1. Click the Admin account avatar.

  2. Select Manage your Google Account.

  3. Open Security.

  4. Find Recovery email.

  5. Add a valid email address and complete verification if requested.

Do not use the same temporary lab email as its own recovery email.

Click Check my progress – Add user account recovery information.

Tip & Tricks

Part 1 of 50

Quick and practical tips to help users optimize tasks, improve skills, and solve common problems effectively across various areas like tech, lifestyle, productivity, and more.

More from this blog

E

ePlus.DEV - Exploring Technology with David Nguyen

1282 posts

A passionate full-stack developer from VIETNAM.