This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC!
We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.
Dears in Community
I have configured AAA in ISE 2.2. but I am receiving error of 13036 error message (selected shell profile is deny access) when it is authenticated in live logs.
Regards
You would need to post a screen shot of your policy set and the details of the authentication hitting the Deny Access. It sounds like your rules aren't configured correctly and you aren't hitting the rule you expect.
Hi,
Along with the policy, I think you need to share your debug radius authen from NAD to match the sent attributes against the policy set.
Hello , go to Device administration -> policy elements >results >Tacacs command sets > create new command set like
permit all commands
Adding to the other comments, please check out the guides @ Device Administration (TACACS+)