Management Portal
To enable diagnostic logging for Management Portal
- On a computer where Management Portal is installed, go to the WWW folder in the Management Portal installation directory.
Normally, the path to the folder is %ProgramFiles%\One Identity\Defender\Management Portal\WWW. 
- Make the following changes to the Web.config text file held in the WWW folder:
- In the <log4net debug="false"> entry, set the value to "true": <log4net debug="true"> 
- In the <level value="ERROR" /> entry, set the value to "DEBUG": <level value="DEBUG" />
 
You can find the log file DefenderWeb.txt in the Logs folder in the Management Portal installation directory. Normally, the path to the log file is %ProgramFiles%\One Identity\Defender\Management Portal\Logs\DefenderWeb.txt.
To disable diagnostic logging for Management Portal, set the following values in the Web.config file:
- <log4net debug="false"> 
- <level value="ERROR" /> 
 
    Management Portal (reports)
To enable diagnostic logging for Management Portal (reports)
- On a computer where Management Portal is installed, go to the WWW\Areas\Reports\Generators folder in the Management Portal installation directory.
Normally, the path to the folder is %ProgramFiles%\One Identity\Defender\Management Portal\WWW\Areas\Reports\Generators. 
- Add the following lines to the mappath.ini text file held in the Generators folder:
The path to the log file is %ProgramData%\One Identity\Defender\Diagnostics\DefenderReports.txt.
To disable diagnostic logging for Management Portal (reports), remove these lines from the mappath.ini file:
 
    Management Shell
To enable diagnostic logging for Management Shell
- On a computer where Management Shell is installed, use Registry Editor to create the following value in the HKLM\SOFTWARE\PassGo Technologies\Defender registry key:
Value type: REG_DWORD Value name: PSDiagnostics Value data: 1 
 
The path to the log file is %ProgramData%\One Identity\Defender\Diagnostics\MgmtShell.txt.
To disable diagnostic logging for Management Shell, delete the PSDiagnostics value from the Defender registry key, or set the value data to 0.
 
    Service Connection Point
To troubleshoot issues that may occur with the Log Receiver component of the Management Portal, you need to enable diagnostic logging for the Service Connection Point component.
To enable diagnostic logging for the Service Connection Point component
- The Management Portal is installed or on the corresponding Defender Security Server computers, use Registry Editor to create the following value in the HKLM\SOFTWARE\PassGo Technologies\Defender registry key:
Value type: REG_DWORD Value name: SCP Diagnostics Value data: 1 
 
The path to the log file is %ProgramData%\One Identity\Defender\Diagnostics\scp.txt.
To disable diagnostic logging for the Service Connection Point component, delete the SCP Diagnostics value from the Defender registry key, or set the value data to 0.