13     dnsovertls = lib.mkDefault "false";
 
  14     # Deprecated in favor of MulticastDNS
 
  16     extraConfig = lib.mkDefault ''
 
  20   networking.nftables.ruleset = ''
 
  23         #udp dport mdns counter accept comment "systemd-resolved: MulticastDNS"
 
  26         #skuid ${config.users.users.systemd-resolve.name} udp sport mdns udp dport mdns counter accept comment "MulticastDNS"
 
  27         #meta l4proto { udp, tcp } th dport domain skuid ${config.users.users.systemd-resolve.name} counter accept comment "systemd-resolved: DNS"
 
  30         #meta l4proto { udp, tcp } th dport domain skuid ${config.users.users.systemd-resolve.name} counter accept comment "systemd-resolved: DNS"