> There have been efforts to augment NTP with authentication, but they still assume a world where each client trusts one or more time servers absolutely.
OpenNTPD has "constraints" where it makes HTTP requests (using TLS) to webservers and checks that the time provided by the NTP server is within a certain threshold of the time returned in the HTTP Date header.
Much simpler and doesn't require dedicated servers.