Is the default gateway for each of these networks an MX, so the MX controls the access between the VLANs? If so create a group policy and configure it to override the firewall rules. Create rules to allow the users the specific access. You could also consider simply using the built in "whitelist' group policy which gives a user access to everything. Then apply this group policy to those machines that are alow access. Otherwise you'll need to let us know what provides the security between the different VLANs.
... View more