Hello,
I am still learning and experiencing with VLAN and here is the issue I am having now, I got a Baystack 5520-24-PWR which supports PoE, plan is to move my Unifi Access Point to the switch and create VLAN.
Let's say my Network is:My LAN is in:
192.168.1.X/24My Trusted WIFI is in:
192.168.55.X/24My hotspot is in:
192.168.99.X/24All my Networks connect to my Check Point Firewall 600 which is also acting as a Router supporting tagged VLAN.... My Unifi Access Point IP is 192.168.55.5 and needs to talk to the controller in 192.168.1.100
What I did is isolate Ports 23-24 of the Switch in one Strict VLAN (the other VLAN is the default management where ports 1-22 are included. my LAN 192.168.1.X devices are connected). I connected the Access Point in port 23 and link back to the Firewall the port 24. I have 2 SSIDs on my Unifi, one is the trusted one in the 192.168.55.X (untagged) the other one is the Hotspot in a VLAN in the 192.168.99.X. (tagged 99).
Basically I want to let all 192.168.55.X traffic go through and also let 192.168.99.X (VLAN 99) go, the Firewall assigned the IPs.
How can I get this to work...?

It's a pretty simple configuration.....
It seems that only the 192.168.55.X go through or 192.168.99.X depending how I configure my switch, in between untag PVID and TagPVID playing with the PVID and I am in strict mode...
Not sure if this is clear enough.... Help would be appreciated, and let me know if you need more details, I attached a little drawing just in case, sometimes it's easier to see than read!
Thanks so much!!!
Dom