I have configured RA VPN Tunnel, everything is working fine, but now i want to allow only http/www port because vpn client should have access to only my application server, rest of the port needs to be blocked How do I do this?
Your ACL line 2 is totally incorrect.
1) HTTP is a TCP protocol, not UDP
2) You cannot have a source port of www - as this is in the restrcited ports range, your source port will ALWAYS be 1024 to 65535.
re-configure the line to:-
access-list RA-tunnel line 2 extended permit tcp 192.168.1.0 255.255.255.0 10.0.0.0 255.255.255.0 eq www