Restrict access to WebGUI via BOTH ip and truenas.local

Running a Scale on dragonfish. my network is controlled by a pfSense box. I have 3 networks defined, one for users, one for management, and one for isolation for any applications. I have all three coming into network ports on the NIC on my Scale box. I have it set so that the webgui is only accessible via the IP on the management network. I also have firewall rules to deny all traffic from the users and application networks to the management network I confirmed this was the case by connecting a device to each of the networks and trying to connect to the webgui via each IP shown on truenas’s network page, and was only able to access the webgui via IP on the management lan.

However whenever I connect via truenas.local:port I am able to access the webgui no matter what network I am on. I have tried everything I could think of to disable truenas.local access, but cannot find anything that works. I even tried changing my scale box’s hostname, and I can still access it via truenas.local. Any help would be appreciated!