This is likely caused by the firewall.
If you look at the Traffic log on an affected client, what does it show? and what is the rule being blocked?
Can you attach the traffic log of an affected client?
Check this:
https://www.symantec.com/business/support/index?page=content&id=TECH165942