SRTP handshake dropping on Ohio BYOC failover path during compliance audit

Architect v2024.3.1 is running the show. Traffic shifts to the Ohio BYOC pool the second the primary trunk drops, and the security module immediately chokes. Console’s throwing a TLS_ERROR: CERT_VERIFY_FAILED right before the 403 Forbidden on media negotiation. Compliance flagged the whole setup because the recording block isn’t capturing the audio stream. Tried pushing a fresh cert bundle to the trunk config, but the registrar still rejects the cipher suite. Outbound routing works fine, so it’s strictly an inbound path issue. Failover logic triggers at 0830 EST daily, right when the queue spikes. Logs keep showing the handshake timing out and doing jack all for the compliance audit. The security module seems to be locking down the BYOC path before the carrier can even negotiate.