Hi Saeng,
YÝe, this matches a known RDS failure mode when the deployment is using the built-in Windows Internal Database and TLS 1.0 gets disabled. Microsoft says that in this setup, an existing RDS deployment can fail, RDMS will not start, and the Connection Broker/RDS components can become unusable.
The stable fixes are the same ones Microsoft documents: re-enable TLS 1.0 on that single-broker/WID deployment, or move the Connection Broker to a high-availability setup that uses a dedicated SQL Server instead of WID. Microsoft also notes that upgrading the RDS hosts to Windows Server 2019 avoids this particular dependency.
The monthly “works again after rebuild, then breaks later” pattern makes me suspect something is re-applying a hardening baseline or GPO that disables TLS 1.0 again after the rebuild. That is an inference, but it fits the documented symptom pattern very well.