Contact Authorization Belongs to Backend Policy, Not Dialing Logic
SIP addresses endpoints; the product still needs an explicit policy for who is allowed to contact whom.
SIP addresses endpoints; the product still needs an explicit policy for who is allowed to contact whom.
Identity and parental policy should not be embedded inside SIP routing rules.
Contact approval has to be enforced by backend identity and call routing, not only hidden buttons.
Telephony credentials are runtime configuration, not compiled product identity.
Scanning a code is useful only if the backend can prove which unit and account the ceremony joins.
Per-device PBX credentials should be provisioned after identity is established, not cloned into every unit.
Asterisk should route calls, not become the only database of parent-approved relationships.
By the end of the year the interesting problem was no longer a codec or PBX; it was the boundary between device identity, firmware, SIP and backend control.
A backend revocation is ineffective if the device keeps registering and calling because local state still says active.