SBC TLS 1.2 Handshake Failures on APAC BYOC Trunks

Just noticed that SIP registrations are dropping with TLS 1.2 handshake failures on three specific trunks in the Singapore region after the latest carrier cert rotation.

  1. Updated SBC to enforce TLS 1.2 only.
  2. Verified cert chain is complete on the Genesys BYOC endpoint.
  3. Captured Wireshark traces showing ServerHello rejection.

Logs indicate a cipher suite mismatch despite standard configs. Need to know if Genesys supports the specific ECDHE-RSA-AES256-GCM-SHA384 suite required by the new carrier certs.