Sorry for ressurecting and old post. You're comparing a Layer 2 feature with a Layer 3. a L2 port isolation make the device only talk with the Gateway. If the Gateway then have a rule to allow it to talk with other VLANs, then it will happen. But understand that before getting to the gateway, port isolation will prevent any internal VLAN communication. This is helpful to restrict access between devices or having a bogus gateway inside the network. The only thing I wished Meraki had is a Port Isolation whitelist, so if I have another server that is not an MX inside the VLAN, I could add to the whitelist and be happy with it. But yeah, if you need to resctrict inter VLAN comms you need to go to the FW tab and explicitly DENY it. The difference between Fortigate and MX is that one starts with an explicit DENY ALL and the other starts with an explicit ALLOW ALL. Which can be changed for both.
... View more