Hello I m trying to implement an OpenSER with TLS, and I think the idea is very good and very well explained in the manual ( http://openser.org/docs/tls.html#AEN50 ).
But can the OpenSER servers negotiate the certificates in real time? Can this trusting scheme be dynamic? or every server needs to have a list of domains?
The list of domains is supposed to be centralized, like a rootCA? Then all our SIP servers must use the same rootCA?
Thanks Joao Pereira