Duo auth Proxy + ISE + Tacacs+

Hi Everyone,

I am implementing Duo for network devices management via Tacacs, the scenario is as follows:

Network computer → ISE 3.0 → Duo Proxy

How can I do to be able to use local ISE users and users that I have in Azure AD…

Is there any way for DUO Auth Proxy to validate users directly to Azure AD?


Hello Patricio,

This is something you have to configure in ISE and not in Duo Auth Proxy. Either by setting up AuthC rules in your policy sets, either with Identity source sequences.