I have bind9 and the web interfacing all up and working properly from the console.

Additionally I have added UDP and TCP port 53 to the firewall rules for the virtual server AND I have added port 53 UDP and TCP to the Linux firewall rules.

However it will not resolve queries from the external address. I simply get "query refused".

Queries from work and from the lan ip 10.x.x.x work fine.

Am I missing some other rule?

If so, then you'll also need to adjust the AWS firewall (IIRC it's called the 'Security Profile' or similar... - should be able to be adjusted from the Hub.

