Are there any limitations regarding Dynamic Access Policies (DAP), i.e. CPU, Memory, walk through times?
ASA5520, 3000 IPSEC Users, LDAP Connection to AD
There are 200 Groups in the AD that will be referenced in the DAP.
So there are 200 DAP Entries, all with "Continue" at the end of the DAP.
A user can be a member of many AD groups.
Every DAP entry has it's own ACL of about 5 ACE's