Well, I think I have laid out almost everything I want to set up in BIND. Still trying to figure out a few things:
1) Use a separate zone (or zones) subdomains that gets dynamically updated. I also want to CNAME my root domain to one of them (assuming I can? Basically I'm trying to use a dynamic IP for my root domain without letting BIND reformat my whole zone file).
2) Set up my secondary server with zone transfer over TLS. I worked on this earlier, but I ran into difficulty in getting the certificate. I'm not even sure what domain to fetch the cert for. Does it even need to be issued by a CA? There's so little documentation on XoT in BIND, let alone examples.