After a short vacation i’ve had time to try out some things, but i can’t seem to get it functioning as i want it to.
What i’m trying to do is something like this:

However, i can’t seem to get the vlans isolated. See config outputs below.
A short test, when having a client in port 1-12 or 19-24, it can’t be seen from port 13-18. However, all traffic from eg. port 13-17 can be seen from port 18 as untagged traffic.The idea is, that traffic going out through port 18 is only tagged.
What i figured out was, that it is not possible to do the vlan configs i want to, if i change the master etherport. Only in my isolated area (port 20-22) is this possible, as i won’t be using vlan’s here.
Can anybody help me out with how i can seperate all the vlans?
And how can i stop the default traffic from being send out through any other ports than 1-12?
Let me know if you need any information.
rough table of pseudo settings

interface ethernet print
Flags: X - disabled, R - running, S - slave
# NAME MTU MAC-ADDRESS ARP MASTER-PORT SWITCH
0 R ;;; Trusted - Default vlan
ether1-master 1500 E4:8D:8C:A7:C8:B7 enabled none switch1
1 S ether2 1500 E4:8D:8C:A7:C8:B8 enabled ether1-master switch1
2 S ether3 1500 E4:8D:8C:A7:C8:B9 enabled ether1-master switch1
3 S ether4 1500 E4:8D:8C:A7:C8:BA enabled ether1-master switch1
4 S ether5 1500 E4:8D:8C:A7:C8:BB enabled ether1-master switch1
5 S ether6 1500 E4:8D:8C:A7:C8:BC enabled ether1-master switch1
6 S ether7 1500 E4:8D:8C:A7:C8:BD enabled ether1-master switch1
7 S ether8 1500 E4:8D:8C:A7:C8:BE enabled ether1-master switch1
8 S ether9 1500 E4:8D:8C:A7:C8:BF enabled ether1-master switch1
9 S ether10 1500 E4:8D:8C:A7:C8:C0 enabled ether1-master switch1
10 S ether11 1500 E4:8D:8C:A7:C8:C1 enabled ether1-master switch1
11 S ether12 1500 E4:8D:8C:A7:C8:C2 enabled ether1-master switch1
12 S ;;; Untrusted - clients
ether13 1500 E4:8D:8C:A7:C8:C3 enabled ether1-master switch1
13 S ether14 1500 E4:8D:8C:A7:C8:C4 enabled ether1-master switch1
14 RS ;;; Untrusted - wifi
ether15 1500 E4:8D:8C:A7:C8:C5 enabled ether1-master switch1
15 S ether16 1500 E4:8D:8C:A7:C8:C6 enabled ether1-master switch1
16 S ;;; Untrusted - vmware dmz
ether17 1500 E4:8D:8C:A7:C8:C7 enabled ether1-master switch1
17 RS ;;; Untrusted - ubnt
ether18 1500 E4:8D:8C:A7:C8:C8 enabled ether1-master switch1
18 S ;;; Trusted - ubnt
ether19 1500 E4:8D:8C:A7:C8:C9 enabled ether1-master switch1
19 ;;; Isolated - ISP
ether20 1500 E4:8D:8C:A7:C8:CA enabled none switch1
20 S ether21 1500 E4:8D:8C:A7:C8:CB enabled ether20 switch1
21 S ether22 1500 E4:8D:8C:A7:C8:CC enabled ether20 switch1
22 R ;;; Mirror0
ether23 1500 E4:8D:8C:A7:C8:CD enabled none switch1
23 ;;; Mirror1
ether24 1500 E4:8D:8C:A7:C8:CE enabled none switch1
24 S ;;; N/A
sfp1 1500 E4:8D:8C:A7:C8:CF enabled ether1-master switch
interface ethernet switch vlan print
Flags: X - disabled, I - invalid, D - dynamic
# VLAN-ID PORTS SVL LEARN FLOOD INGRESS-MIRROR QOS-GROUP
0 40 ether13 no yes no no none
ether14
ether18
1 60 ether15 no yes no no none
ether16
ether18
2 100 ether17 no yes no no none
ether18
3 110 ether17 no yes no no none
ether18
4 D 4091 ether20 no yes no no none
ether21
ether22
switch1-cpu
5 D 4095 ether23 no no no no none
ether24
switch1-cpu
interface ethernet switch ingress-vlan-translation print
Flags: X - disabled, I - invalid, D - dynamic
0 ports=ether13,ether14 service-vlan-format=any customer-vlan-format=untagged-or-tagged new-service-vid=0 new-customer-vid=40 pcp-propagation=no sa-learning=yes
1 ports=ether15,ether16 service-vlan-format=any customer-vlan-format=untagged-or-tagged new-service-vid=0 new-customer-vid=60 pcp-propagation=no sa-learning=yes
2 D ports=ether20,ether21,ether22 service-vlan-format=any customer-vlan-format=any new-customer-vid=4091 pcp-propagation=no sa-learning=yes
3 D ports=ether23,ether24 service-vlan-format=any customer-vlan-format=any new-customer-vid=4095 pcp-propagation=no sa-learning=no
interface ethernet switch egress-vlan-translation print
Flags: X - disabled, I - invalid, D - dynamic
0 ports=ether13,ether14 service-vlan-format=untagged-or-tagged customer-vlan-format=tagged customer-vid=40 pcp-propagation=no
1 ports=ether15,ether16 service-vlan-format=untagged-or-tagged customer-vlan-format=tagged customer-vid=60 pcp-propagation=no
interface ethernet switch egress-vlan-tag print
Flags: X - disabled, I - invalid, D - dynamic
# VLAN-ID TAGGED-PORTS
0 D 4095
1 D 4091
2 60 ether18
3 100 ether17
ether18
4 110 ether17
ether18
5 40 ether18