We're using a T2600G with a MAC based ACL. We have this configured to our satisfaction, and can access the web interface when we're connected to the switch directly no problem. When we try and route through our firewall, from one subnet to the subnet the switch is on, we can't access the web interface. I've checked the firewall logs and the traffic is being passed through, but it is being refused at the switch. I can ping the switch from the firewall, so the MAC ACL is not stopping the traffic (the ACL is not applied to the port the firewall is connected to).

Is there some option where the web interface is only available from the local subnet or something like that? I've combed the interface and tried googling, but have been unable to solve this. Any help appreciated!