Firewall Zone Problem

maybe you can help me with an openWRT problem.

My structure

my goal
I want ONLY "LAN" to go through Wireguard.
Parents and Iris should each be different networks and go directly over WAN ...

My problem.
The networks can reach each other - so far so good.
LAN has internet via Wireguard
BUT! Iris & parents have no internet connection. Everything that should be on the Internet is blocked at some point.

Maybe someone has a tip what I'm doing wrong?


VPN client(Wireguard) as WAN for guest network - #2 by vgaetera

Thx, it work.

