Block RADIUS authentication
This feature works only when authenticating through FreeRADIUS agent since RADIUS attributes defined for users and groups are returned to FreeRADIUS agents only.
You can block and reject RADIUS authentication if no RADIUS return attribute is defined for the user or group.
When authenticating with a RADIUS token, SAS also passes RADIUS attributes to the RADIUS client that were received from an external RADIUS server. This is beneficial for authentication requests that may go to a third-party authentication service and then return through SAS. If this feature is applied, authentication request to SAS will check the combined list of attributes (RADIUS token attributes and SAS-defined attributes) to block authentication requests.
To block RADIUS authentication:
- 
On the SAS console, select Comms > Authentication Processing > Block RADIUS Authentication Without Attributes. 
- 
Select Block RADIUS authentication without return attribute.  
- 
Click Apply.