SmartZon: User Traffic Profile vs. Firewall Profile

Can someone explain the difference between the User Traffic Profile & Firewall Profile and why there are overlapping ACLs and Rate Limiting? 

I have been troubleshooting an issue for my WLAN where a user-role-mapping was causing clients to be dropped into a traffic policy but because they also were being dropped into a firewall policy it was incredibly difficult to troubleshoot due to disparate ACLs. It seems like the two policies are mostly redundant as they work in the same manner but are both required to be selected when configuring a user role policy.