Internal Server DNS-01 Failing

But that's the wrong place. Letsencrypt can't check your internal Windows DNS.

You have to use the public name server, so Letsencrypt is able to check your TXT entry.

Read

And your internal nslookup result isn't relevant.