Joester80 if the certificate on the Netscaler is different to the one which is used by Exchange, this won't work, and you will experience connection issues if Extended Protection is turned on. I've not heard anything regarding Extended Protection and Teams Room devices. Remember: If you experience any issues with Extended Protection, you can disable it by running the script or doing it manually via inetmgr.exe.
A-CAST Yes, if it runs an Exchange Server role, you should patch it. Based on the information you've provided I'd not expect that turning on Extended Protection on this single server would have any impact on your clients. I'd recommend carefully reading the Extended Protection documentation (https://microsoft.github.io/CSS-Exchange/Security/Extended-Protection/) and then (if you don't have any unsupported or known issue scenarios listed there) turn it on. If you experience any issues, you can turn it back to the off state.
TomasCinko this is still under investigation.