Hello,
DNAC newest version 2.2.2.3 (if I recall correctly) + ISE 2.6 patch 4.
ISE is integrated with DNAC as a non-ISE/AAA sever (because we don't have Plus licenses so pxgrid is not possible) - both radius and tacacs+ is checked.
Now I want to log into DNAC as an external user. I am basically following
https://www.hospitableit.com/howto/cisco-dna-center-external-authentication-using-ise-tacacs-part-1/
The first problem:
1) I am not able to switch into tacacs+. While I am putting the cursor over the button it is greyed out. Why?
There is no option to change into tacacs when ISE is integrated as non-ISE/AAA?
2) When I prepare the right AuthZ Profile with cisco-av-pair = Role=NETWORK-ADMIN-ROLE, then I build the right policy which is matched while I am trying to log in (all is green on ISE live radius logs), I am still getting Invalid credentials on the initial login screen of DNAC.
I have also tried to reboot DNAC but still no luck.
Anyone can help?