Diagnostic Agent

Root Cause Analysis for One Identity

Fault analysis in minutes instead of hours

The Diagnostic Agent helps teams troubleshoot One Identity issues by automatically analyzing technical relationships and evaluating them in a structured manner. Instead of manually reviewing logs, process chains, and configurations, you receive a transparent root cause analysis that includes evidence, a confidence score, and specific recommendations for action.

This turns an error message into a reliable assessment of where the problem lies and what steps make sense to take next.

When a job freezes up, the search usually begins.

A process gets stuck, and the analysis begins.
The more complex the environment, the longer it takes to identify the cause.

Often, the relevant information is already available; it is simply scattered across various tables, processes, and configurations.

The Diagnostic Agent works just like an experienced One Identity consultant.

The agent analyzes multiple sources simultaneously.

He examines processes, configurations, and dependencies simultaneously, evaluates possible causes, and actively rules out unlikely scenarios.

The result is not a list of log entries, but a well-founded assessment of the most likely cause.

Troubleshooting in minutes instead of hours.

The Diagnostic Agent provides a clear assessment of the problem and possible solutions.

 

✓ Clear summary of the cause in plain language

✓ Prioritized recommendations: Priority 1, 2, 3

✓ Severity level: Low / Medium / High

✓ Confidence Score: How reliable is the diagnosis?

✓ Complete evidence: Which data sources were analyzed, and what do they show?

✓ Documented exclusion criteria: Why have other causes been ruled out?

 

Instead of a "job frozen" message, you'll receive a clear explanation along with specific next steps.

A real-world example

The initial situation

An automatic request for AD administrator rights got stuck in the IT Shop.

The process was not completed, but the cause was not immediately apparent. At first glance, there was no indication of a technical error.

 

The results of the analysis

The Diagnostic Agent analyzed the relevant processes, permissions, and configuration objects.

The problem wasn't caused by the script or the job processing:

The affected identity was not associated with the required customer node in the target store. As a result, One Identity's standard validation blocked the order in accordance with the rules.

 

Recommended action

Map the identity to the correct customer node in the target store before running the process again.

One Identity Troubleshooting Use Case

Find the cause instead of troubleshooting

The Diagnostic Agent supports One Identity teams in troubleshooting and helps them identify root causes more quickly. Technical relationships are automatically analyzed and presented as a structured diagnosis that includes evidence and recommendations for action.

We'd be happy to walk you through the Diagnostic Agent in a live demo—using real-world use cases, of course.