I am using my CRS317 as a switch connected to a pfSense filrewall.
And when I looked in the pfSense firewall log … I could hardly believe my eyes
the CRS317 was sending NTP-querys from an impossibleIPV4-address being the reverse of its own address
So where is should send “a.b.c.d:123 => gw” it is infact sending “d.c.b.a:123 ==> gw”, of course than will never work!
The CRS317 is also complaining that it has no internet access, … if it is using the same source address … that is logical too.
A little time after writing this post, I discovered that that strange address was really in my config …
One thing is for sure … I never defined that address …
I corrected the config, which solved the problem.
Of cause I do use HW-offloading where possible. But not sure about level3 settings at that moment.
I general, I use the CRS317 as switch not as router. I ones hoped to do so, but the routing perfomance is just …
So for performance reasons and the IMHO better interface, I am using pfSense as router.