ISA is sitting behind another firewall that performs NAT. As far as supporting multiple PPTP tunnels... I have found nothing that suggests it doesn't. Essentially I have a rule in the firewall to NAT all the traffic from the VPN public address to a private address on ISA. Based on this I don't see how the initial firewall would diferentiate between multiple PPTP connections.