Hi!
I have a Pi-hole set up on my network and when I check it’s logs I see queries for time.nist.gov once every hour, seemingly originating from the router itself, even though the SNTP client in the router is set to a completely different NTP server. Why would this be?
Depending on particular setup on your router phi-hole may see redirected LAN requests as if they originated from router itself. But it’s impossible to tell if this is the case without you posting full configuration (as displayed by /export hide-sensitive).
Never mind. After some further investigation I’ve discovered that this was indeed coming from another device on the network. (Interestingly an AP with its settings also pointing to a completely different NTP than the above mentioned).
Thanks anyway:)