I'm trying to setup our wireless network so that no Local LAN traffic is allowed except for our printer.
I thought that setting Local LAN to Deny and adding a rule with the printer IP would do the trick ... but it doesn't allow traffic to the printer this way at all 😕
Is there some way of achieving what I want?
If you put the printer on a different VLAN/subnet you could deny traffic to the existing subnet and allow the new one. That would stop clients on the wireless talking to each other so not sure if that is acceptable for you?
Your config seems correct. Unless some group policy is overriding that policy it should work.
As others had said, the config is correct. Perhaps whatever you are using is not using IP unicast to talk to the printer. Perhaps it is trying to do a multicast discovery or something.