DD-WRT + Kong + vlan communication issue... need some help.

Hardware - Nighthawk R7000
Firmware: DD-WRT v3.0-r28000M kongac (10/24/15)

I'm having a problem connecting to machines that are on my VLAN that I created. I believe the VLAN is setup correctly as I am able to ping the ip address of from

However, I can't ping any other machine on the VLAN subnet for example from

My ultimate goal is that I don't want the VLAN subnet to be able to see anything on my subnet but I do want my subnet to be able to reach any machine on the subnet. I want to run my webserver on the subnet as well as a media server for the subnet.

vlan1 =
vlan3 = > GOOD > BAD

I also have a thread poste on dd-wrt with some additional information and some info(https://www.dd-wrt.com/phpBB2/viewtopic.php?t=288589&sid=95226e2c76c94549c2fef4b9a46033a5).

I've had some limited success (meaning atleast I'm getting some log information) using the following firewall entry:

iptables -I FORWARD -i br0 -o vlan3 -m state --state NEW -j logaccept
iptables -I FORWARD -i vlan3 -o br0 -m state --state NEW -j logdrop

Any information or guiadance would greatly be appreciated.