On ASA you can configure the Authentication, Authorization, and Accounting (AAA) server for dynamic authorization in order to accept CoA like this:
aaa-server ISE protocol radius
authorize-only
interim-accounting-update periodic 1
dynamic-authorization
aaa-server ISE (inside) host 10.48.66.74
key cisco
Regards - Jatin
~Jatin