You're close. "sho ver" is a level 1 command, not a level 15 (enable) command, so add the following:
aaa authorization commands 1 default tacacs
You have to do TACACS authentication cause there's no such thing as Radius command authorization.
Also, you don't reference your Command Set in the "aaa author" command on the device, it doesn't care what that name is cause it's ACS specific.
Also, what I've shown you above will enable command authorization for all users, so for users that you want to be able to do everything, add another Shell Command Authorisation Set onto the ACS server that permits everything, and apply it to the users with no restrictions.