Modern communication systems rely on a canonical time source to coordinate the rotation of certificates. A host that cannot determine the time will be denied service, and an attacker who can control the time source can trick hosts into trusting expired certificates.
Since good timekeeping keeps everything else on the rails, having an on-prem stratum 1 server keeps more of your own critical infrastructure under your control.