Hello. I have a problem with Cisco ASA and i kindly asking for your advice..
I use Cisco ASA 5585-X (ver. 9.12(4)10) with ASDM (ver. 7.12.1) in single context mode.
ASA connected to Cisco ISE using TACACS+ protocol for users authentication and authorization.
If I set privilege level 5 for TACACS+ users (in ISE), in this case, I cant see the OK button in
ASDM -> Configuration -> Firewall -> Find -> Filter -> Difine Query
I can't use filters for ACLs..
But, if I set in Cisco ISE privilege level 15 for TACACS+ users, i can see this button:

But at the same time, I can change ACL and other settings, that are not authorized by my ISE rules!
Can anybody give me advice, please, how to limit user's access to read-only mode and to be able to see this OK button?