I'm posting this in hopes that it may help someone in the future. I tried changing everything, all reviews of local and domain policies resulted in no success. I created entirely new GPO and moved the resulting systems to that, I even tried unjoining and rejoining the domain with the client systems, still no success.
It became evident that a new server upgrade was in order, not from this issue, but something that was due. Instead of upgrading the new server from the old, we opted to completely create a fresh forest/domain and removed all clients from the old domain and joined them to the new one. Funny thing was, it would be suspected that this would resolve any old conflicts but it did not. In fact when a W11 client was unjoined from the domain we were still unable to enable RDP on the client. Joining to the new domain did not resolve this. What ended up being the resolution was completely resetting the Windows Firewall settings and this with the client joined to the domain, and having the proper domain policy in place for remote access. Without resetting the firewall nothing worked. Upon resetting the firewall the systems are now able to have RDP. I find it kind of funny that nothing any of the MS engineers and tons of other IT people consulted on the problem from various sites never even mentioned this as an option, but in the end I think it was something Gemini suggested that resulted in the solution. Maybe there is something to the assistance of Ai.