SIP-over-TLS has been supported since FRITZ!OS 7.2x only. It was not present before. Therefore, can you elaborate on why you mentioned older FRITZ!OS versions like FRITZ!OS 7.1x. As your provider pointed out, the SIP client of AVM supports only TLS 1.1 upwards (whyever, I filed a bug report for that).
Furthermore, certificate verification cannot be disabled either. At least, I found no way to do so. Therefore, I filed another bug report because you cannot edit/add TLS trust anchors yourself as of today.
voip provider support only TLS1.0
Whom exactly? Doesn’t he offer UDP besides TLS?
He should upgrade to the TLS cipher suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 and therefore offer TLS 1.2 – that was specified more than 14 years ago in RFC 5289. 14 years. Usually, that is just a configuration change today. Sometimes it is a minor source patch.
If you provide the server address (publicly or via a private message), I could double-check whether this is required. Again, it costs no 15 €/year to get a valid working TLS certificate. Actually, with Let’s Encrypt, it would cost nothing (but the one-time setup
might be a bit more complex).
Is that possible from 7590?
Not directly. You could go for a
SIP-B2BUA, for example, Digium Asterisk or SignalWire FreeSWITCH. I tested that, and this works. Not tested, but you even might be able to use a TLS tunnel, for example,
stunnel. If you need help with that, just say so, then I double-check whether this works.
I am curious: Why do you want to use a FRITZ!Box exactly?
You could use other DECT-SIP adapters as IP client behind your DSL router, which offer TLS 1.0 and allow any TLS certificate.