The invention is directed to a method for providing a switch user functionality in a server-agent environment in an information technological (IT) network in which at least one agent runs on a node of the IT network, comprising: generating a switch user (SU) certificate using public-key cryptography upon receiving a request to switch from a user account presently used on the node to another user account; sending the SU certificate to the agent; checking the correctness of the SU certificate; performing the requested switch to the other user account provided that the SU certificate is correct. The invention is also directed to a corresponding computer program product and a computer system.


