to recap - you say that your VPN clients connect to the ISA, but the remote-sites connect to some other device.
But there should not be any problem if your ISA can reach the remote-sites networks itself. So make sure, your ISA has its own static routes (use RRAS routes ideally) to the other networks and create appropriate network-rules and access-rules and your
VPN clients should get there.
o.