I am used to Ubiquiti more, and on there I had LAN_LOCAL rules that prevented VLAN20 from talking to VLAN100, but the opposite worked.
This is useful to me as I need VLAN100 to be able to manage all VLANs and ssh them across.
Is it possible on Mikrotik? I tried some basic drop rules for VLAN20 to VLAN100 but it blocks traffic both ways, I only want it blocked one way.
Even tried with L3 blocking 10.10.10.0/24 from 10.1.1.0/24 but it blocks both directions.
TLDR - Can we block intervlan one direction but not the other?