I have a customer with a Cisco 3825 functioning as a firewall and "IP inspect fragment max on 256 timeout 1" is configured on the inbound.
Can or will this command have any adverse affects on Cisco SSL Anyconnect client communications?
Don't believe that the inspection for fragments will particularly affect AnyConnect traffic. It will be inspecting for a maximum of 256 fragments before it starts to reassemble the packet for inspection. It will have affect on all traffic through the router, but not specifically to AnyConnect traffic.
Hope that helps.