Configure your trunk with 3CX v20
Import the Wiretap provider template, or build a generic SIP trunk by hand against our SRV record.
Last updated April 22, 2026
3CX v20 refined SIP trunk configuration and provisioning over earlier versions. This guide covers both ways to connect it to Wiretap: our provider template, and a hand-built generic trunk.
Before you start
- Download and install 3CX v20, and configure its basic settings.
- Create a SIP trunk in the Wiretap Portal and assign DIDs to it before you start here.
Configure network settings
- 1Click the admin cog at the bottom left of the console and select Advanced.
- 2Open the IP Blacklist tab and allow the Wiretap IPs. You will find them in the portal under Manage Trunks → Trunks → Whitelist Management.
- 3Open the Network tab, choose your default internet-facing IP address, and set External IP Configuration to either a static or dynamic address.
Import the Wiretap template
This is the quickest and least error-prone route. The template fills in the endpoints and unlocks fields that 3CX otherwise keeps locked.
- 1Download the Wiretap Telecom 3CX v20 template from the source article.
- 2In 3CX, go to Advanced → Templates.
- 3Select Provider Templates.
- 4Click Import Provider.
Or build a generic SIP trunk
- 1Select the admin cog at the bottom left and choose Voice & Chat.
- 2Click Add Trunk.
- 3Choose your Country, then for Provider pick Generic SIP Trunk (IP Based) for an IP trunk, or Generic VOIP Provider (Registration) for a registration trunk.
- 4Give the trunk a name and default route, and tick Create an outbound rule for this SIP Trunk.
- 5Under Account Details, enter your Main Trunk Number.
- 6Fill in the authentication fields for your trunk type, as described below.
- 7Under Server Details, put the SRV record in the Registrar/Server field.
- 8Set Port to
0and tick Auto discovery.
Authentication fields
- Registration trunk
- Put the User ID from the portal in Authentication ID, the generated password in Authentication password, and set Type of authentication to Register/Account based.
- IP trunk
- Leave Authentication ID and Authentication password blank, and set Type of authentication to Do not require - IP based.
Which SRV record
| Trunk version | Registrar / Server |
|---|---|
| v1 trunks | srv.global.core-trunk.com |
| v2.2 trunks | srv.globalsbc.core-trunk.com |
Still on v1? See migrating from v1 to v2 trunking — there is firewall work to do before you switch the record.
Apply the changes
- 1Select Save.
- 2Add your outbound rules, users, departments, and ring groups.
Still stuck?
Our help desk answers on 816 WIRETAP, or open a ticket. Including the right details gets you a real answer on the first reply — see submitting support tickets.
Contact support