thanks I got it running. Can I ask a few follow-up questions, maybe somebody can help.

It looks like I need to add the tailscale interface to a LuCi interface so somehow create a firewall traffic rule to allow ssh in from my other tailscale devices?
I don’t want to allow ssh in except via the tailscale interface.

I usually know my way around firewalls I’ve just never “looked behind the scenes” on a gli router. (I have a 750s if it helps).

Could someone share what else they did with the taislcale interface where they have added / bridged it to and what rules/routes/forwards you have in place to properly use it?

I’d laos like to be able to access the gli and/or LuCi interface via tailscale and not expose it to the wan.