If you use an external firewall, you could have it set so that you allow 21 connections (30 connections total - 8 outgoing connections - 1 for your wallet) on the default port from external sources, and then have another firewall rule on a different port which forwards traffic to the Bitcoin node port (8333) internally (so as to bypass the earlier firewall rule). You then connect to that other port with your SPV wallet.
Nice idea! Am def. going to try that and will report back. Hopefully Unifi USG router will support number of concurrent connections by port as I don't recall having seen that as an option in the GUI...