The invention is directed to a method for providing a switch user
functionality in a server-agent environment in an information
technological (IT) network in which at least one agent runs on a node of
the IT network, comprising: generating a switch user (SU) certificate
using public-key cryptography upon receiving a request to switch from a
user account presently used on the node to another user account; sending
the SU certificate to the agent; checking the correctness of the SU
certificate; performing the requested switch to the other user account
provided that the SU certificate is correct. The invention is also
directed to a corresponding computer program product and a computer
system.