1{ config, ... }: 2{ 3 services.tailscale = { 4 enable = true; 5 permitCertUid = "962"; 6 }; 7 networking.firewall = { 8 trustedInterfaces = [ "tailscale0" ]; 9 allowedUDPPorts = [ config.services.tailscale.port ]; 10 checkReversePath = "loose"; 11 }; 12}