@jimgriffin if you have 2600 concurrent remote access VPN users and unrestricted usage over full tunnel, it wouldn't be hard for a small fraction of those users to fill up the Internet pipe. Imagine 100 users all streaming a HD content at 10-20 Mbps. The ASA itself doesn't really restrict that. However if you have URL filtering on Firepower service module or Umbrella DNS security or WSA proxy you can restrict users from certain content types. You can also export the current flows to a Netflow collector and analyze who might be consuming excessive bandwidth.
This is all assuming you've followed the guide I linked to earlier regarding performance optimzation.