The video walks you through configuration of Dynamic Access Policy (DAP) for Cisco Secure Client (AnyConnect) on Cisco Firepower 7.0. Our scenarios includes using DAP to identify VPN client type and its posture status and enforce appropriate level of remote access. We will then look at an advance use of LUA script to detect install certificate on a VPN client. DAP is a Firepower self-contain alternative to Cisco ISE posture agent.