420 Identity troubleshooting¶
If a profile update fails, verify controller authority and active state. If a credential unexpectedly becomes invalid, check expiry, revocation, subject rejection, issuer activation and subject-profile activity.
If a .420 primary-name display is inconsistent, verify bilateral Names↔Identity binding rather than trusting one side alone.
When derived services disagree, prefer canonical Identity420 state.