Let the RDBMS or OS handle that. SAS cannot overrule those settings.
Just make sure that the user that logged in to SAS is the same user as running on the OS/RDBMS.
Using groupaccounts for those kind of access will require your sas system is the only way for accessing the OS and RDBMS. Any other way will make any auditability traceablity an useless argument with group accounts. As this kind of security compliancy is a very nasty topic for sas people you could have a big challenge.
---->-- ja karman --<-----