Thank you Julien for the reply. Yes, I have tried that. The AD FS server replies that the endpoint identifier does not exist, so we are passed that with the correct identifier. We do not have/use the spn: prefix in the name/endpoint identifier. The logs also only reflect the correctly configured identifier as expected.
I no longer believe that the Application ID is our issue. I have posted my update on another entry.