I am concerned that ISA Ent 2006 doesn't present packet inspection capability for servers published where the connection to be NAT'd ( as a component of the Server Publishing action ) involves a non-web protocol.
The requirement I have is to receive/forward a proprietory tcp-based connection. But because the point of having ISA. in our case, was to provide a level of scrutiny of packets passing through I am keen to ensure whether the only option that seems to be available to us - "Server Publishing" - can look more closely at the packet content. Are there any options in this regards for ISA?
If this is not available with ISA - is there anything else within the Microsoft Security toolset that would satisfy this requirement?
Stateful packet inspection is always applied to all connections to and through the firewall.
If you have a protocol that doesn't have an application filter for it, you can write an application filter or see if you can get someone like Collective Software to do it for you.
If it's a proprietary protocol used only by that application, it's unlikely that any other firewall vendor will have a filter for that protocol either.