{ config, ...}: { services.tailscale.enable = true; networking.firewall.checkReversePath = "loose"; networking.firewall.trustedInterfaces = [ "tailscale0" ]; networking.firewall.allowedUDPPorts = [ config.services.tailscale.port ]; # remote-set X # tailscale up --login-server 'https://head.pbsds.net' # ssh noximilien.pbsds.net headscale --namespace nodes register --key }