I use DNAT in my nftables firewall to redirect internal NTP clients to
my NTP server. In contrast to the DNS solution, this allows me to ping
and/or to access other ports on external NTP servers (if they allow it),
doesn't require me to hunt down all...