Understanding VPN Access Policies
DfltAccess Policy—Always the last entry in the DAP summary table, always with a priority of 0.
•
You can configure Access Policy attributes for the default access policy, but it does not contain—and
you cannot configure—AAA or endpoint attributes. You cannot delete the DfltAccessPolicy, and it
must be the last entry in the summary table.
Refer to the Dynamic Access Deployment Guide
(http://supportwiki.cisco.com/ViewWiki/index.php/ASA_8.x_Dynamic_Access_Policies_%28DAP%2
9_Deployment_Guide) for additional information.
For more information about Dynamic Access Policies, see the following sections.
DAP Support for Remote Access Connection Types
•
DAP and AAA
•
DAP and Endpoint Security
•
DAP Connection Sequence
•
Test Dynamic Access Policies
•
DAP Examples
•
Cisco ASA 5500 Series Configuration Guide using ASDM
65-2
Chapter 65
Configuring Dynamic Access Policies
OL-20339-01