Zum Hauptinhalt springen
Echtzeit-Radar & Feeds
Alle RSS Feeds ➔
👥 Community & Social
Sichere ProgrammierungChrome for Developers: 93: State queries in 2025(24.09.2026 um 20:02 Uhr)
•
YouTube Security Videosdotnet: .NET + Foundry, better together(24.09.2026 um 18:35 Uhr)
••
Windows Tipps & SecurityMicrosoft 365 Companion Apps Are Being Retired(24.09.2026 um 19:40 Uhr)
••••
Videos & KonferenzenPC-WELT: Endlich hat die 2. RTX 5090 Sinn - lokale KI auf HMX 6!(24.09.2026 um 17:30 Uhr)
•
Unix & Linux ServerDocker Commits to Bringing the Sandbox Kit Spec to the CNCF(24.09.2026 um 18:00 Uhr)
••
Sichere ProgrammierungChrome for Developers: 93: State queries in 2025(24.09.2026 um 20:02 Uhr)
•
YouTube Security Videosdotnet: .NET + Foundry, better together(24.09.2026 um 18:35 Uhr)
••
Windows Tipps & SecurityMicrosoft 365 Companion Apps Are Being Retired(24.09.2026 um 19:40 Uhr)
••••
Videos & KonferenzenPC-WELT: Endlich hat die 2. RTX 5090 Sinn - lokale KI auf HMX 6!(24.09.2026 um 17:30 Uhr)
•
Unix & Linux ServerDocker Commits to Bringing the Sandbox Kit Spec to the CNCF(24.09.2026 um 18:00 Uhr)
••
Intelligence View
⚡ tsecurity.de Intelligence

Setting up a SIP trunk for Voice AI: step-by-step (Twilio + Vapi)

SIP trunk configuration is the part of every Voice AI project that looks simple in the documentation and takes three times longer than expected in practice. Not because the technology is hard - it is not - but because the failure modes…

0
↗ Quelle (dev.to)
Reagiere als Erste:r — dein Feedback zählt!

SIP trunk configuration is the part of every Voice AI project that looks simple in the documentation and takes three times longer than expected in practice.



Not because the technology is hard - it is not - but because the failure modes are silent, the error messages are cryptic, and the gap between a correct-looking configuration and a working one is often a single codec setting.



This is the step-by-step guide I use on every deployment.

It covers Twilio as the SIP provider and Vapi as the Voice AI platform - the most common combination in production.





What you need before starting




  • A Twilio account with credit added

  • A Vapi account (free tier is fine to start)

  • A phone number purchased in Twilio (~$1/month)

  • Access to your firewall settings if on a corporate network





Step 1 - Create a SIP trunk in Twilio



In Twilio Console go to:

Voice → SIP Trunking → Trunks → Create new SIP Trunk



Name it something descriptive like voice-ai-production.



Settings to configure:





  • Call Recording: Record from Ringing (essential for debugging)


  • Secure Trunking: Enable if your platform supports SIP/TLS


  • Transfer Mode: Enable SIP Diversion Header (needed for call transfers)





Step 2 - Configure origination (inbound calls to your AI)



Click the Origination tab on your trunk.



Add a new Origination URI. Get the SIP URI from Vapi under:

Settings → SIP → Origination SIP URI



It will look like:




sip:[email protected];transport=tcp






Set Priority: 10, Weight: 10. Click Add.




⚠️ Most common mistake here: using transport=udp

instead of transport=tcp. With UDP, calls fail silently —

no error, the SIP INVITE just goes unanswered. Always

confirm required transport with your platform docs first.







Step 3 - Configure termination (outbound calls from your AI)



Click the Termination tab.



Your Twilio-generated termination SIP URI looks like:




your-trunk-name.pstn.twilio.com






Copy this - you will paste it into Vapi in Step 4.



Under Authentication, create a credential list with a username and strong password. This is what Vapi uses to authenticate outbound calls through Twilio.



Under IP Access Control Lists, add Vapi's server IP

addresses (listed in Vapi's SIP documentation). This allows

Vapi's inbound traffic without password auth - reducing

SIP handshake latency.






Step 4 = Connect Vapi to the SIP trunk



In Vapi go to Settings → Phone Numbers → Import → SIP Trunk



Fill in:
































Field Value
Outbound SIP URI your-trunk-name.pstn.twilio.com
Username Your Twilio credential username
Password Your Twilio credential password
Phone number E.164 format e.g. +441234567890
Codec PCMU (G.711) — matches Twilio default


Then in Twilio Console: Phone Numbers → Active Numbers → click your number → Voice → A CALL COMES IN → SIP Trunk → select your trunk → Save




💡 My approach: I explicitly set PCMU as the only codec

on both sides during initial setup - even if both platforms

support better codecs. Once the call path is confirmed

working, I then test enabling Opus. Narrowing to one codec

eliminates the most common failure mode before introducing

variables.







Step 5 - Test the call path



Run these four tests in order. Do not skip any of them.



Test 1 - Inbound from real phone

Dial your Twilio number from a mobile. The AI should answer.




  • Fast busy = origination URI wrong

  • Silence = codec mismatch

  • Twilio error recording = number not pointing to SIP trunk



Test 2 - Outbound from AI to real phone

Trigger an outbound call from Vapi to your mobile.




  • Call fails to initiate = termination URI or credential wrong

  • Connects but no audio = codec mismatch



Test 3 - Full 12-turn conversation

Run your full test script. Log per-turn latency. Test

human escalation transfer mid-conversation.



Test 4 - Concurrent load test

Place 5–10 simultaneous calls. Check for latency degradation.

Confirm Twilio account concurrency limits are adequate.






Common SIP errors and exact fixes
















































Error / Symptom Cause Fix
Fast busy on inbound Origination URI wrong Check SIP URI format
No audio either way Codec mismatch Set PCMU only on both sides
One-way audio NAT/firewall blocking RTP Open UDP 10000–20000
SIP 407 Proxy Auth Wrong credentials Recreate credential list
SIP 488 Not Acceptable No matching codec Add G.711 PCMU to platform
SIP 503 Unavailable Platform unreachable Check IP allowlist
Calls drop at 30s Missing session timer Enable session timers





Pre-go-live checklist




  • [ ] Inbound call test passed - two-way audio confirmed

  • [ ] Outbound call test passed - two-way audio confirmed

  • [ ] 12-turn conversation test completed, latency logged

  • [ ] Human escalation transfer tested and confirmed

  • [ ] Concurrent load test - 5+ calls without degradation

  • [ ] Twilio account upgraded from trial

  • [ ] Call recording enabled

  • [ ] Firewall: SIP port 5060/5061 + RTP 10000–20000 open

  • [ ] P50 and P95 latency baseline recorded

  • [ ] Rollback plan documented






The principle that saves the most time



Change one thing at a time.



When a call fails, revert to the last known working state,

change one variable, and test again.



SIP debugging done methodically takes minutes.

SIP debugging done by changing multiple settings simultaneously

is how teams spend a week on something that was always

going to work.



Full guide with architecture details and more context:

https://www.voiceaipm.com/2026/04/setting-up-sip-trunk-for-voice-ai.html



I write weekly about Voice AI and SIP telephony from real

enterprise deployments at voiceaipm.com

SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - Setting up a SIP trunk for Voice AI: step-by-step (Twilio + Vapi)
id: 9f40fb34-f730-4e31-b079-ffca59688794
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
  - https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-24
logsource:
  category: network_connection
  product: any
detection:
  selection:
      CommandLine|contains:
        - 'exploit'
  condition: selection
falsepositives:
  - Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
  - attack.initial_access
rule CTI_Threat_Indicator {
    meta:
        author = "iShareStuff CTI Automated Detection Engine"
        date = "2026-09-24"
        description = "YARA Signature for "
    strings:
        $str = "Setting up a SIP trunk for Voi" ascii wide
    condition:
        any of them
}
tsecurity.de Cognitive Threat RAG
Fokus-Vektor:

Kognitive Analyse für identifizierte Bedrohung: Erhöhte Bedrohungslage im Bereich Setting up a SIP trunk for Voice AI: ste.... Basierend auf 368k Vektor-Korrelationen werden sofortige Isolationsmaßnahmen für betroffene Endpunkte empfohlen.

🛡️ Angriffsfläche & Exposure

Netzwerk/Remote-Zugriff ohne Vorauthentifizierung möglich.

⚡ Empfohlene Sofortmaßnahmen
  • 1. Perimeter-Inspektion: Relevante Portfreigaben und exponierte Endpunkte unverzüglich scannen.
  • 2. Patch-Applikation: Hersteller-Hotfix einspielen oder betroffene Daemons in isolierte DMZ-Segmente überführen.
  • 3. Telemetrie & EDR-Alerts: Prozessaufrufe und Child-Processes auf anomale Shell-Spawns überwachen.
🔗 Semantisch verwandte Zero-Days MariaDB 11.7 VEC
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten Setting up a SIP trunk for Voice AI: step-by-step (Twilio + Vapi)

Thematisch verwandte Begriffe: Setting, trunk, Voice, stepbystep · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-57175 | Python Social Auth is a social authentication/registration mechanism. Pr…
Advisory →
tsecurity.de Icon
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen

tsecurity.de Live Threat Radar

🔴 LIVE RADAR
MONITORING
AKTIV
CVE-DATENBANK
LIVE
🔍
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel • Rechts: nächster Artikel • unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel TTP ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...
↗ Original-Quelle