From the documentation below, APIC tacacs or RADIUS Key (I assumed it's called Shared Secret on the 2.x ISE server) "needs to match the configuration on the TACACS server which we will go over later in the ACS and ISE configuration. I see the key is configured on the ISE, under TACACS section, but I see a blank on the APIC GUI (Admin->AAA->TACACS+ Management->TACACS+ Provider).
I have no issue connecting to the APIC, via CLI and browser. Why is that? I thought key needs to be matched on both ISE and APIC, basing on Cisco documentaton.
Another question is, can I set APIC Key and Confirm Key on the APIC (under TACACS+ Provider section) via REST API, or CLI, as opposed to the APIC GUI? If so, please point me to Cisco documentations for both API and CLI.
Thanks.
Peter
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/kb/b_KB_ACI-TACACS-config.html