The VPN concentrator has numerous locations to apply ACLS: Interface, group, users, and WebVPN. I have a simple question that I could not resolve on CCO. If I have an ACL applied to a user does this override the ACL applied to the group the user resides in or is it nested with the user ACL most significant?