oh cool I figured it out. I had to set the PVID for the ports in question. I thought simply having the correct vlan untagged on that port would do the trick. Welp.
There must be some factor that I'm not aware of that makes me keep thinking that I'm stupid and a bad person and all that, because you guys always remind me that I'm not.