QEMU/VDE/DNSMASQ/FIREWALL problem

I have 11.4 installed and want to enable my firewall on the host. However, as soon as I start a session with QEMU with underneath it VDE2/DNSMASQ - the later with DNS enabled - I can’t get any data in the guest process.

By enabling the DNS server in DNSMASQ I get the proper IP address, but after that, no other data is transferred. When I disable the firewall on the host, everything works as normal.
What custom rules must I add to make things work with an active firewall on the host??

Regards, Frans.