Hi there,
The authentication source sequence is typically configured on the RADIUS server. tacacs+ is probably the same.
The IOS aaa new-model authentication sequence will only itterate to the next source if the previous one is unreachable.
cheers,
Seb.