Thanks again Abed.
I'm working through the configuration now - I notice these CLI commands don't create an entry in the vlans section. Is this necessary?
Would I also need to add each VLAN interface into it's own distinct security zone in order to enable services like DHCP, or if I don't add them to the zone are they automatically granted all access?
Currently the SRX300 is in transparent mode, should I change this to switching?
Finally, the static route - does one need to be configured for the gateway of each vlan?
Thanks!
Alex