Pfsense/xcp etc / tailscale and syslog

I want to setup a Graylog server for ingesting clients device logs, pfsense/xcp/xoa for example. Syslog appears to only want to send via listed interfaces so im having difficulty sending from one Tailscale IP to another with syslog. tailscale ping works fine between devices.

Is there a working config for pfsense 2.8 and/or xcp that will allow the firewall/host to send syslog from itself to the tailscale graylog IP address? (Is this a reasonable way to configure remote devices?)

Thanks

Sending over Tailscale or really any VPN is fine as long as you have the bandwidth to do so, especially if you have a lot of activity. Not sure how to solve the issue of sending via Talscale as it’s not something that I have ever tested.