I believe there are solutions.

Using firewall

You can drop data if the source IP is from 192.168.9.x and to 192.168.10.x, but not 192.168.10.1
You need to put the iptables rules in the router’s firewall. (sorry to ask you to write the iptable rules by yourself)

In Luci UI you can try the following (not verified)
Pls note you may need more detailed rules. You cannot drop all data to 192.168.10.1 because you will have no DNS

Using VPN

Another solution is to set up vpn on the mini router. Once vpn is connected it shield your main router totally.

2 Likes