Currently we are using a number of SRX550s running 12.1X47-D40.1 and use the vlan interface in a security zone:
set interfaces ge-0/0/1 unit 0 family ethernet-switching vlan members VLAN1
set interfaces vlan unit 1 family inet address 192.168.0.1/24
set security zones security-zone VLAN1 interfaces vlan.1
This works fine and we can use the security zone in policies, routing traffic from the vlan to L3 interfaces.
However when we try the same configuration on an SRX4100 running 15.1X49-D190 we are forced to use irb interfaces in place of vlan, and these cannot be added to a security zone, when we try the same configuration using irb in place of vlan we get a message similar to:
'irb interfaces cannot be addded to security zone in mixed mode'
How do we mimic the previous functionality of the vlan interface in security zones?