Using the Azure Point-to-Site VPN client we could establish a connection to servers using the FQDN only anything else would fail with a Username could not be found error which the main issue was the fact it broke GPO processing as the GPO looks at the \\domain.local DFS location rather than DC by FQDN.
Following website has pointed me in the right direction
When I run the command cmdkey.exe /delete /ras everything works correctly again
I did try to edit the pbk and change the UseRaSCredentials=0 but it didn’t seem to work for me. Still have to manually run the command above once established but I can easily fire this from a custom scheduled task