@firebird TL/DR: I think I got my guest DHCP working over the wired connection through two switches.
Sunday afternoon, post walk, post lunch, thought I'd see if tweaking the VLAN settings on the switches. A bit dozy, but nothing too hard. OMG I wish I hadn't started down this road! Have just spent the last hour or so coaxing the big switch back into its previous configuration. Luckily once I finally got access I could upload a saved file.
What I thought to do was see what happened with default VLAN settings (i.e. as near to unmanaged switch setup). I vaguely thought that used to work. Well whatever I did was to nuke the home LAN.
Once it was all back and working I did see a change in VLAN 1 (default system VLAN with all ports set as untagged). I now had LAG 1 and 2 included in VLAN 1, and I'm sure they weren't listed before. LAG 1 is down to the small unmanaged switch which supports static LAG and VLANs, but here's the difference: small switch VLANs are 802.11Q assigned on just ports, not LAGs. But I now see that the managed switch allows assignment of VLANs for ports and/or LAGs.
I re-did the big switch VLAN 1733 and also added LAG 1 to the bunch of tagged ports previously included. I think this has fixed it as I've the iPhone connected to the
MR2200ac on the guest network and it has its network settings properly configured. I also see the iPhone's MAC address in the switch and its on VLAN 1733 using port 'LAG1'.
Now I'm lying down Atom Heart Mother on the turntable, a book, and something calming to drink. Not touching kit again today