Cisco ASA limits the number of concurrent remote-access VPN sessions a user can maintain. The default is three. When a user hits the limit, a new connection can fail or an existing idle session can be removed, depending on the configured limit and session state.
The CLI knob is still …