Various organizations use Gmail for his or her enterprise electronic mail wants. Gmail for enterprise is a part of Google Workspace, which offers a set of productiveness and collaboration instruments like Google Drive, Gmail, and Google Calendar. Google Drive helps storing paperwork reminiscent of Emails comprise a wealth of data discovered elsewhere, reminiscent of inside the topic of an electronic mail, the message content material, and even attachments. Performing an clever search on emails with co-workers may help you discover solutions to questions, enhancing productiveness and enhancing the general buyer expertise for the group.
Amazon Q Enterprise is a completely managed, generative AI-powered assistant designed to boost enterprise operations. It may be tailor-made to particular enterprise wants by connecting to firm information, data, and methods by means of over 40 built-in connectors.
Amazon Q Enterprise permits customers in varied roles, reminiscent of entrepreneurs, mission managers, and gross sales representatives, to have tailor-made conversations, remedy issues, generate content material, take motion, and extra, all by means of a web-based interface. This software goals to make workers work smarter, transfer sooner, and drive extra important impression by offering quick and related data and streamlining duties.
With the Gmail connector for Amazon Q Enterprise, you’ll be able to improve productiveness and streamline communication processes inside your group. This integration empowers you to make use of superior search capabilities and clever electronic mail administration utilizing pure language.
On this publish, we information you thru the method of establishing the Gmail connector, enabling seamless interplay between Gmail and Amazon Q Enterprise. Whether or not you’re a small startup or a big enterprise, this resolution may help you maximize the potential of your Gmail information and empower your group with actionable insights.
Discovering correct solutions from content material in Gmail mailbox utilizing Amazon Q Enterprise
After you combine Amazon Q Enterprise with Gmail, you’ll be able to ask a query and Amazon Q Enterprise can index by means of your mailbox and discover related solutions. For instance, you may make the next queries:
- Pure language search – You possibly can seek for emails and attachments inside your mailbox utilizing pure language, making it easy to search out your required data with out having to recollect particular key phrases or filters
- Summarization – You possibly can request a concise abstract of the conversations and attachments matching your search question, permitting you to rapidly grasp the important thing factors with out having to manually sift by means of particular person gadgets
- Question clarification – In case your question is ambiguous or lacks adequate context, Amazon Q Enterprise can interact in a dialogue to make clear the intent, so that you obtain essentially the most related and correct outcomes
Overview of the Gmail connector for Amazon Q Enterprise
To crawl and index contents in Gmail, you’ll be able to configure the Gmail connector for Amazon Q Enterprise as a knowledge supply in your Amazon Q Enterprise utility. While you join Amazon Q Enterprise to an information supply and provoke the sync course of, Amazon Q Enterprise crawls and indexes paperwork from the information supply into its index.
An information supply connector is a mechanism for integrating and synchronizing information from a number of repositories into one container index. An information supply is a knowledge repository or location that Amazon Q Enterprise connects to with a view to retrieve your electronic mail information. After you arrange the connector, you’ll be able to create one or a number of information sources inside Amazon Q Enterprise and configure them to start out indexing emails out of your Gmail account.
Forms of paperwork
Gmail messages might be sorted and saved inside your electronic mail inbox utilizing folders and labels.
Let’s seems at what are thought of as paperwork within the context of the Gmail connector for Amazon Q Enterprise. The connector helps the crawling of the next entities in Gmail:
- E mail – Every electronic mail is taken into account a single doc
- Attachment – Every electronic mail attachment is taken into account a single doc
Moreover, supported customized metadata and customized objects are additionally crawled throughout the sync course of.
The Gmail connector for Amazon Q Enterprise additionally helps the indexing of a wealthy set of metadata from the assorted entities in Gmail. It additional offers the power to map these supply metadata fields to Amazon Q index fields for indexing. These discipline mappings assist you to map Gmail discipline names to Amazon Q index discipline names. There are three varieties of metadata fields that Amazon Q connectors assist:
- Default fields – These are required with every doc, such because the title, creation date, or creator
- Elective fields – These are offered by the information supply, and the administrator can optionally select a number of of those fields in the event that they comprise vital and related data to provide correct solutions
- Customized metadata fields – These are fields created within the information supply along with what the information supply already offers
Check with Gmail information supply connector discipline mappings for extra data.
Authentication
Earlier than we index the content material from Gmail, we have to first set up a safe connection between the Gmail connector for Amazon Q Enterprise along with your Google service account. To ascertain a safe connection, we have to authenticate with the information supply.
The connector helps authentication utilizing a Google service account. We describe the method of making an account later on this publish. For extra details about authentication, see Gmail connector overview.
Safe querying with ACL crawling and id crawling
Safe querying is when a person runs a question and is returned solutions solely from paperwork that the person has entry to. To allow customers to do safe querying, Amazon Q Enterprise honors the entry management lists (ACLs) of the paperwork. Amazon Q Enterprise does this by first supporting the indexing of ACLs. Indexing paperwork with ACLs is essential for sustaining information safety, as a result of paperwork with out ACLs are thought of public. Moreover, the person’s credentials (electronic mail handle) are handed together with the question in order that solutions from paperwork which might be related and which person is permitted to entry are displayed.
When connecting a Gmail information supply, Amazon Q Enterprise crawls the ACL data connected to a doc (person and group data) out of your Gmail occasion. In Gmail, person IDs are mapped to _user_id. Consumer IDs exist in Gmail on information with set entry permissions. They’re mapped from the person emails because the IDs in Gmail.
When a person logs in to an online utility to conduct a search, the person’s credentials, reminiscent of an electronic mail handle, must match what’s within the ACL of the doc to return outcomes from that doc. The online utility that the person makes use of to retrieve solutions is linked to an id supplier (IdP) or AWS IAM Id Heart. The person’s credentials from the IdP or IAM Id Heart are referred to right here because the federated person credentials. The federated person credentials are handed together with the question in order that Amazon Q can return the solutions from the paperwork that this person has entry to.
Check with How Amazon Q Enterprise connector crawls Gmail ACLs for extra data.
Resolution overview
Within the following sections, we reveal how you can arrange the Gmail connector for Amazon Q Enterprise. Then we offer examples of how you can use the AI-powered chat interface to realize insights from the linked information supply.
In our resolution, we index emails from Gmail by configuring the Gmail information supply connector. This connector means that you can question your Gmail information utilizing Amazon Q Enterprise as your question engine.
After the configuration is full, you’ll be able to configure how usually Amazon Q Enterprise ought to synchronize along with your Gmail account to maintain updated with the e-mail content material. This course of makes positive that your electronic mail interactions are systematically up to date inside Amazon Q Enterprise, enabling you to question and uncover useful insights out of your Gmail information.
The next diagram illustrates the answer structure. Google Workspace is the information supply. Emails and attachments together with the ACL data are handed to Amazon Q Enterprise from the Google workspace. The person submits a question to the Amazon Q Enterprise utility. Amazon Q Enterprise retrieves the ACL of the person and offers solutions primarily based on the emails and attachments that the person has entry to.
Stipulations
It is best to have the next:
Configure the Gmail connector for an Amazon Q Enterprise utility
To allow Amazon Q Enterprise to entry and index emails from Gmail accounts inside the group, it’s important to configure the group’s Google workspace. Within the steps that comply with, we create a service account that will probably be utilized by the Gmail connector for Amazon Q Enterprise to index emails.
We offer the service account with authorization scopes to permit entry to the required Gmail APIs. The authorization scopes categorical the permissions you request customers to authorize in your utility and are relevant to emails inside your group’s Google workspace.
Full the next steps:
- Log in to your group’s Google Cloud account.
- Create a brand new mission with an acceptable title and assign it to your group. In our instance, we title the mission
GmailConnector. - Select Create.
- After you create the mission, on the navigation menu, select APIs and Companies and Library to view the API Library.
- On the API Library web page, seek for and select Admin SDK API.
The Admin SDK API permits managing the Google workspace account sources and audit utilization.
- Select Allow.
- Equally, seek for the Gmail API on the API Library
The Gmail API may help in viewing and managing the Gmail mailbox information like threads, messages, and labels.
- Select Allow to allow this API.
We now create a service account. The service account will probably be utilized by the Amazon Q Enterprise Gmail information supply connector to entry the group’s emails primarily based on the allowed API scope.
- On the navigation menu, select IAM and Admin and Service accounts.
- Select Create service account.
- Title the service account
Amazon-q-integration-gmail, enter an outline, and select Create and proceed. - Skip the optionally available sections Grant this service account entry to mission and Grant customers entry to this service account.
- Select Carried out.
- Select the service account you created to navigate to the service account particulars web page.
- Word the distinctive ID for the service account—the distinctive ID is also referred to as the shopper ID, and will probably be utilized in later steps.
Subsequent, we create the keys for the service account, which can permit it for use by the Gmail connector for Amazon Q Enterprise.
- On the Keys tab, select Add key and Create new key.
- When prompted for the important thing sort, choose the advisable possibility JSON and select Create.
It will obtain the non-public key to your pc, which have to be saved protected to permit configuration inside the Amazon Q console. The next screenshot reveals an instance of the credentials JSON file.
- On the Particulars tab, develop the Superior settings part and select View Google Workspace Admin console within the Area-wide Delegation
Granting entry to the service account utilizing a domain-wide delegation to your group’s information have to be handled as a privileged operation and achieved with warning. You possibly can reverse the entry grant by disabling or deleting the service account or eradicating entry by means of the Google Workspace Admin console.
- Use the Google Workspace Admin credentials to log in to the Google Workspace Admin console.
- Below Safety on the navigation menu, beneath Entry and information management, select API controls.
- Within the Area-wide delegation part, select Handle domain-wide delegation.
- Select Add new.
- Within the Add a brand new shopper ID dialog, enter the distinctive ID for the service account you created.
- Enter the next scopes to permit the service account to entry the emails from Gmail:
- https://www.googleapis.com/auth/gmail.readonly – This scope permits to you to view your electronic mail messages and settings.
- https://www.googleapis.com/auth/admin.listing.person.readonly – This scope permits to see and obtain your group’s Google Workspace listing.
For extra particulars about all of the scopes out there, confer with OAuth 2.0 Scopes for Google APIs.
- Select Authorize.
This concludes the configuration inside the Google Cloud console and Google Workspace Admin console.
Create the Gmail connector for an Amazon Q Enterprise utility
This publish assumes that an Amazon Q Enterprise utility has already been created beforehand. When you haven’t created one but, confer with Construct non-public and safe enterprise generative AI apps with Amazon Q Enterprise and AWS IAM Id Heart for directions.
Full the next steps to configure the connector:
- On the Amazon Q Enterprise console, select Functions within the navigation pane.
- Choose the applying that you just wish to add the Gmail connector to.
- On the Actions menu, select Edit.
- On the Replace utility web page, depart all values unchanged and select Replace.
- On the Replace retriever web page, depart all values as default and select Subsequent.
- On the Join information sources web page, on the All tab, seek for Gmail within the search discipline.
- Select the plus signal subsequent to Gmail, which can open up a web page to arrange the information supply.
- Within the Title and outline part, enter a reputation and outline.
- Within the Authentication part, select Create and add new secret.
- Within the Create an AWS Secrets and techniques Supervisor secret pop-up, present the next data:
- Enter a reputation in your Secrets and techniques Supervisor secret.
- For Shopper electronic mail and Non-public key, confer with the JSON file that you just downloaded to your native machine earlier.
- For Admin account electronic mail, enter the admin account in your Google
- For Non-public key, enter the non-public key particulars.
- Select Save.
- Within the IAM function part, for IAM function, select Create a brand new service function (advisable).
- Within the Sync scope part, choose Message attachments and enter a worth for Most file dimension.
- Optionally, configure the next beneath Further configuration (we depart the whole lot as default for this publish):
- For Date vary, enter the beginning and finish dates for emails to be crawled. Emails acquired on or after the beginning date and earlier than the tip date are included within the sync scope.
- For E mail domains, enter the e-mail from domains, electronic mail to domains, topic, CC emails, and BCC emails you wish to embrace or exclude in your index.
- For Key phrases in topics, embrace or exclude any paperwork with a minimum of one key phrase talked about of their topics
- For Labels, add common expression patterns to incorporate or exclude sure labels or attachment sorts. You possibly can add as much as 100 patterns.
- For Attachments, add common expression patterns to incorporate or exclude sure attachments. You possibly can add as much as 100 patterns.
- Within the Sync mode part, choose New, modified, or deleted content material sync.
- Within the Sync run schedule part, select the frequency that works greatest in your use case. For this publish, we select Run on demand.
- Select Add information supply and look forward to the retriever to be created.
After the information supply is created, you’re redirected to the Join information sources web page so as to add extra information sources as wanted.
- Confirm your information supply is added and select Subsequent.
- On the Replace teams and customers web page, select Add teams and customers.
The customers and teams that you just add on this part are from the IAM Id Heart customers and teams arrange by your administrator.
- Within the Add or assign customers and teams pop-up window, choose Assign present customers and teams so as to add present customers configured in your linked IAM Id Heart, then select Subsequent.
Optionally, when you have permissions so as to add customers to linked IAM Id Heart, you’ll be able to choose Add new customers.
- Select Get began.
- Seek for customers by person show title or teams by group title.
- Select the customers or teams you need you add and select Assign.
The teams and customers that you just added ought to now be out there on the Teams or Customers tabs.
- Select Assign.
For every group or person entry, an Amazon Q Enterprise subscription tier must be assigned.
- To allow a subscription for a bunch, on the Replace teams and customers web page, select the Teams tab (if particular person customers must be assigned a subscription, select the Customers tab).
- Below the Subscription column, choose Select subscription and select a subscription (Q Enterprise Lite or Q Enterprise Professional).
- Select Replace utility to finish including and establishing the Gmail connector for Amazon Q Enterprise.
Configure Gmail discipline mappings
That can assist you construction information for retrieval and chat filtering, Amazon Q Enterprise crawls information supply doc attributes or metadata and maps them to fields in your Amazon Q index. Amazon Q has reserved fields that it makes use of when querying your utility. When doable, Amazon Q routinely maps these built-in fields to attributes in your information supply.
If a built-in discipline doesn’t have a default mapping, or if you wish to map extra index fields, use the customized discipline mappings to specify how a knowledge supply attribute maps to your Amazon Q utility.
- On the Amazon Q Enterprise console, select your utility.
- Below Knowledge sources, choose your information supply.
- On the Actions menu, select Edit.
- Within the Subject mappings part, choose the required fields to crawl beneath Messages and Message attachments and any sorts which might be out there.
The Gmail connector setup for Amazon Q Enterprise is now full.
To check the connectivity to Gmail and provoke the information synchronization, select Sync now. The preliminary sync course of could take a number of minutes to finish.
When the sync is full, within the Sync run historical past part, you’ll be able to see the sync standing together with a abstract of how could whole gadgets had been added, deleted, modified, and failed throughout the sync course of.
Question Gmail information utilizing the Amazon Q internet expertise
Now that the information synchronization is full, you can begin exploring insights from Amazon Q. Within the newly created Amazon Q utility, select Customise internet expertise to open a brand new tab with a preview of the UI and choices to customise as per your wants.
You possibly can customise the Title, Subtitle, and Welcome message fields based on your wants, which will probably be mirrored within the UI.
For this walkthrough, we use the defaults and select View internet expertise to be redirected to the login web page for the Amazon Q utility.
Log in to the applying utilizing the credentials for the person that had been added to the Amazon Q utility. After the login is profitable, you’re redirected to the Amazon Q assistant UI, the place you’ll be able to ask questions utilizing pure language and get insights out of your Gmail index.
The Gmail information supply linked to this Amazon Q Enterprise utility has electronic mail and Gmail attachments. We reveal how the Amazon Q utility enables you to ask questions in your electronic mail utilizing pure language and obtain responses and insights for these queries.
Let’s start by asking Amazon Q to summarize key factors from Matt Garma’s (CEO of AWS) electronic mail. The next screenshot shows the response and it additionally consists of the e-mail supply from the place it’s producing the response.
For our subsequent instance, let’s ask Amazon Q to offer particulars about return difficulty buyer is going through for a bicycle order they positioned with Amazon. Following screenshot reveals the small print concerning the difficulty being confronted by the client and consists of the e-mail supply from the place Amazon Q is producing the response.
Troubleshooting
Troubleshooting your Amazon Q Enterprise Gmail connector offers details about error codes you may see for the Gmail connector and recommended troubleshooting actions. When you encounter an HTTP standing code 403 (Forbidden) error while you open your Amazon Q Enterprise utility, it implies that the person is unable to entry the applying. . See Troubleshooting Amazon Q Enterprise and id supplier integration for widespread causes and how you can handle them.
Often requested questions
On this part, we offer steering to often requested questions.
Amazon Q Enterprise is unable to reply your questions
This might occur attributable to a a number of causes:
- No permissions – ACLs utilized to your account doesn’t assist you to question sure information sources. If so, attain out to your utility administrator to ensure your ACLs are configured to entry the information sources.
- Knowledge connector sync failed – The information connector may need did not sync data from the supply to the Amazon Q Enterprise utility. Confirm the information connector’s sync run schedule and sync historical past to substantiate the sync is profitable.
If neither of those causes are true in your case, open a assist case to get this resolved.
The way to generate responses from authoritative information sources
You possibly can configure these choices utilizing Amazon Q Enterprise utility international controls beneath Admin controls and guardrails.
- Log in as an Amazon Q Enterprise utility administrator.
- Navigate to the applying and select Admin controls and guardrails within the navigation pane.
- Select Edit within the World controls part to regulate these choices.
For extra data, confer with Admin controls and guardrails in Amazon Q Enterprise.
Amazon Q Enterprise responds utilizing outdated (stale) information despite the fact that your information supply is up to date
Every Amazon Q Enterprise information connector might be configured with distinctive sync run schedule frequency. Confirm the sync standing and sync schedule frequency in your information connector to see when the final sync ran efficiently. Your information connector’s sync run schedule may very well be set to sync at a scheduled time of day, week, or month. If it’s set to run on demand, the sync must be run manually. When the sync run is full, confirm the sync historical past to ensure the run has efficiently synced all new points. Check with Sync run schedule for extra data on every possibility.
The way to arrange Amazon Q Enterprise utilizing a special IdP
You possibly can arrange Amazon Q Enterprise with one other SAML 2.0-compliant IdP, reminiscent of Okta, Entra ID, or Ping Id. For extra data, see Creating an Amazon Q Enterprise utility utilizing Id Federation by means of IAM.
Broaden the answer
You possibly can discover different options in Amazon Q Enterprise. For instance, the Amazon Q Enterprise doc enrichment characteristic helps you management each which paperwork and doc attributes are ingested into your index and the way they’re ingested. With doc enrichment, you’ll be able to create, modify, or delete doc attributes and doc content material while you ingest them into your Amazon Q Enterprise index. For instance, you’ll be able to scrub personally identifiable data (PII) by selecting to delete any doc attributes associated to PII.
Amazon Q Enterprise additionally gives the next options:
- Filtering utilizing metadata – Use doc attributes to customise and management customers’ chat expertise. That is presently supported provided that you utilize the Amazon Q Enterprise API.
- Supply attribution with citations – Confirm responses utilizing Amazon Q Enterprise supply attributions.
- Add information and chat – Let customers add information instantly into chat and use uploaded file information to carry out internet expertise duties.
- Fast prompts – Function pattern prompts to tell customers of the capabilities of their Amazon Q Enterprise internet expertise.
To enhance retrieved outcomes and customise the person chat expertise, you’ll be able to map doc attributes out of your information sources to fields in your Amazon Q index. To study extra, see Gmail information supply connector discipline mappings.
Clear up
To keep away from incurring future prices, clear up any sources you created as a part of this resolution, together with the Amazon Q utility:
- On the Amazon Q console, select Functions within the navigation pane.
- Choose the dashboard you created.
- On the Actions menu, select Delete.
- Delete the IAM roles created for the applying and information retriever.
- When you used IAM Id Heart for this walkthrough, delete your IAM Id Heart occasion.
Conclusion
On this publish, we mentioned how you can configure the Gmail connector for Amazon Q Enterprise and use the AI-powered chat interface to realize insights from the linked information supply.
To study extra concerning the Gmail connector for Amazon Q Enterprise, confer with Connecting Gmail to Amazon Q Enterprise, the Amazon Q Consumer Information, and the Amazon Q Developer Information.
In regards to the Authors
Divyajeet (DJ) Singh is a Sr. Options Architect at AWS Canada. He loves working with prospects to assist them remedy their distinctive enterprise challenges utilizing the cloud. In his free time, he enjoys spending time with household and mates, and exploring new locations.
Temi Aremu is a Options Architect at AWS Canada. She is enthusiastic about serving to prospects remedy their enterprise issues with the ability of the AWS Cloud. Temi’s areas of curiosity are analytics, machine studying, and empowering the following technology of ladies in STEM.
Vineet Kachhawaha is a Sr. Options Architect at AWS specializing in AI/ML and generative AI. He co-leads the AWS for Authorized Tech group inside AWS. He’s enthusiastic about working with enterprise prospects and companions to design, deploy, and scale AI/ML functions to derive enterprise worth.
Vijai Gandikota is a Principal Product Supervisor within the Amazon Q and Amazon Kendra group of Amazon Net Companies. He’s answerable for the Amazon Q and Amazon Kendra connectors, ingestion, safety, and different points of the Amazon Q and Amazon Kendra providers.
Dipti Kulkarni is a Software program Growth Supervisor on the Amazon Q and Amazon Kendra engineering group of Amazon Net Companies, the place she manages the connector improvement and integration groups.














































