RFC 5922 forbids SIP implementations from matching any form of wildcard in a domain certificate.

Checked 2026-09-25

Implementations MUST NOT match any form of wildcard, such as a leading '.' or '*.' with any other DNS label or sequence of labels.
Vendor
IETF
Product
SIP
Subsystem
server identity validation
Deployment
any
Region
not restricted
Release range
RFC 5922 (June 2010)
Checked
2026-09-25

Sources

Cite this note

APA

WarmTransfer. (2026, September 25). SIP TLS handshake failures on trunks: source note sip-tls-handshake-failures-rfc5922-no-wildcard. WarmTransfer. https://warmtransfer.net/knowledge/claims/sip-tls-handshake-failures-rfc5922-no-wildcard

BibTeX

@misc{warmtransfer-claim-sip-tls-handshake-failures-rfc5922-no-wildcard,
  title  = {SIP TLS handshake failures on trunks: source note sip-tls-handshake-failures-rfc5922-no-wildcard},
  author = {{WarmTransfer}},
  year   = {2026},
  url    = {https://warmtransfer.net/knowledge/claims/sip-tls-handshake-failures-rfc5922-no-wildcard},
  note   = {Source note sip-tls-handshake-failures-rfc5922-no-wildcard, checked 2026-09-25}
}

Read in context