our CRS-106-1C-5S has configured VLAN with a different IP range on some ports.
How can I make it reachable with a fixed address over the VLAN?
I added an IP adress from the VLAN range to the port, which is member of the VLAN, but that seems not to be enough.
Unless you configured firewall to block access, your CRS is available for connections on every IP address it’s got. For clients in different IP subnet (and/or VLAN) a router is necessary.
So answer to your question depends very much on both network topology you have and configuration of CRS. Without knowing both we can’t help you much.
The switch has a bridge over all interfaces.
SFP1 and SFP2 are members of a VLAN, SFP1 untagged, SFP2 tagged. SFP1 sets a ingress tag for that VLAN, SFP2 tagges egress.
I have to make it available via VLAN over SFP2, which has a different network range than the untagged traffic.
I added an IP address of the VLAN range to SFP2, but this doesn’t work.
Sorry. One picture (can be hand drawn and photographed with a phone) of topology and export of current configuration would make the (mental) picture much more clear.