I am well aware as how to create policies in the ASA for specific hosts or IPs but what I want to do is create a generalized policy that gets applied to all users on an interface but at a per-user level.
For example, I want to have all users on interface "inside" subjected to a 10meg policer per-user. Not 10meg policer applied to the whole inside interface. Same thing for connection limits. I want to limit at the granular level of per user so that each user can have only 100 connections coming from their individual IP.
The problem is that I can accomplish this with policy maps if I create one for each IP address but I need to do this for large subsets at a time (/24 blocks) and create a policy for each IP on that /24 is not practical.
Any thoughts or recommendations? I'm testing this on my ASA 5505 with 9.2 code.