Creat a fw rule on And on LAN2 which is blocking to lan1
Easiest would be an allow rule on LAN2 interface, source LAN2 net, destination !LAN1 net
Ahh gotcha and that's my current LAN2: I have also two default allow rules which I believe OPNSense created - does it look fine?