Bind Webfig and ssh to a vlan

  • vlan90 is not a member of interface list LAN, so chain input of /ip firewall filter drops incoming traffic from it
  • on the row of /interface bridge vlan for vlan-ids=90, bridge is not on the tagged list, so frames tagged with VID 90 are not allowed to egress through the virtual port of the virtual switch (have a look here for details).