cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
433
Views
0
Helpful
1
Replies

ISE 2.0 TACACS Integration with AD

Steven Williams
Level 4
Level 4

I am following this article to get TACACS working with ISE 2.0.

http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/200208-Configure-ISE-2-0-IOS-TACACS-Authentic.html

I am struggling to understand the last piece where it talks about the authorization policy. The conditions they are referencing are not available to me? I have an identity group, but I have to manually add users in that identity group and see no way to pull a group in via AD.

My AD is synced, I have tested users, I have pulled in the group of users that need access, now I just figure out of have ISE look at this group.

1 Reply 1

jan.nielsen
Level 7
Level 7

So under the menu WorkCenters/Device Admin/Policy Sets, and then under ex. the default authorization policy, when you add a new attribute to the condition, you don't see your ad store name listed like screenshot i attached ? Are you maybe trying to add it under the identity group setting instead ?