Managed Sentinel – Alert 237

Alert IDMS-A237
Alert NameRadius authentications from the same user from multiple IP addresses
DescriptionThis alerts is triggered the same user attempting to authenticate via Radius from multiple IP addresses.
Severity LevelLow
Threat Indicator
MITRE ATT&CK TacticsCredentialAccess
Log sourcesRadius Events
False Positives
Recommendations