Hi,
I am not an expert on this but you should need a stateful firewall to achieve this. Because when you deny vlan2 to vlan1 communication, it will also break the communications from vlan1 to vlan2 as the returning packets will be blocked.
Regards,
Rahman