sorted!!!
i made a stupid mistake
when i was making the vpn interface (so i can use it as a gateway for my specific vpn traffic) i ticked both boxes under "reserved networks" which blocks rfc1918 but i dont want to block them as the virtual vpn ip im assigned is 10.8.0.2 which is a rfc1918 address
i put back protonvpn interface back in the "ALLInt" so i can easily manage the rules under one tab as its long winded otherwise
also in firewall > rules > outbound i had to make it hybrid and copy the wan and make another one for the protonvpn address as it didnt work otherwise
see pic of what i did
https://s10.postimg.org/jk6oiio7t/rule.png
thanks for all your help in this Derelict much appreciated!