Recommended profile
Create a Sinch static endpoint that targets the platform SIP FQDN and assign the DID. The official LiveKit quickstart uses TCP 5060; secure trunking uses TLS 5061. In the platform, use the exact+E.164 DID and Provider source IPs. Sinch ACL/digest choices documented for calls into Sinch belong to outbound authentication, not the Sinch-to-platform inbound path.
Allow all eight Sinch SIP-signaling CIDRs: