I have a couple issues with the current setup involving the virtual router.
1. I'm not using the VR for port forwarding / VPN / routing or anything traffic related so it would seem to me to be relatively trivial to have a secondary virtual router that just provides DNS, userdata & metadata. This would be sufficient for all my failover requirements. 2. It would also be useful to be able to set DNS options in a basic zone. Timeout, attempts etc. Timeout on linux is set to 5 seconds which is an eternity in case of failure. Are people comfortable with a single VR in a basic zone, and what mitigations can be put in place to avoid any fallout from failures?