OpenVPN Requirements after Recent Patch Tuesday DHCP Crash

We are still having a hella time getting one client in particular to get access and visibility (LOS) into our internal network so they can use their desktop app. I suspect it is an SMB issue; we don’t block this but their ISP (Spectrum) has already had to allow RDP so we could give them at least some access to our inner sanctum.

Their NTFS mapped drives (pushed by on-prem AD GPO) do mount (are green) but the backend connection to a SQL database doesn’t allow the app to load. Removing the profile (connection string to the SQL DB in app config) allows the user to load the app, but is missing some critical access and basically cannot work without the DB content.

Is there any wisdom in this forum about wrangling the ISP blocking policies?