Topology is many remote sites, each with 1-2 APs in their own RF domain, all connected to an Active/Standby VX cluster.  The active VX is located at HQ and the Standby VX in AWS.  
Connectivity from remote locations is  VPN to HQ and to AWS.
Controller host is not used in the AP profile (there don't appear to be preference settings anyway), and each site's DHCP servers specifies option 191 as:  pool1=172.a.b.c,172.d.e.f;level=2
To be clear, there is no issue adopting the APs, the problem is that, from time-to-time, APs re-adopt over to the Standby AWS VX  (my working theory is that it might be due to intermittent connectivity loss), but don't come back to the Active HQ VX which is where they are expected to be.