Sorry about the late, late, late response here. This completely fell off my radar for a bit.
So, if I wanted to deny wireless users access to the SSH port I would run the following?
<config>
<wlan access-rule denySSH>
<rule any any match tcp 22 22 deny>
<end>
<commit apply>
How would I go about actually assigning the access rule to the WLAN?