diff --git a/configs/sip.conf.sample b/configs/sip.conf.sample
index c416bd23943c45770c3797b2711762db989259c7..3282afda4420262390bd547e9789058d24de953c 100644
--- a/configs/sip.conf.sample
+++ b/configs/sip.conf.sample
@@ -447,7 +447,7 @@ srvlookup=yes                   ; Enable DNS SRV lookups on outbound calls
 ;        you should have their certificate installed here so the code can
 ;        verify the authenticity of their certificate.
 
-;tlscadir=</path/to/ca/dir>
+;tlscapath=</path/to/ca/dir>
 ;        A directory full of CA certificates.  The files must be named with
 ;        the CA subject name hash value.
 ;        (see man SSL_CTX_load_verify_locations for more info)
diff --git a/main/tcptls.c b/main/tcptls.c
index b505f2a019bba340f65c438d7fb889d4d3d60e20..d0ee3b2aa76370e0e4516b643037cea249abef5a 100644
--- a/main/tcptls.c
+++ b/main/tcptls.c
@@ -550,7 +550,7 @@ int ast_tls_read_conf(struct ast_tls_config *tls_cfg, struct ast_tcptls_session_
 	} else if (!strcasecmp(varname, "tlscafile")) {
 		ast_free(tls_cfg->cafile);
 		tls_cfg->cafile = ast_strdup(value);
-	} else if (!strcasecmp(varname, "tlscapath")) {
+	} else if (!strcasecmp(varname, "tlscapath") || !strcasecmp(varname, "tlscadir")) {
 		ast_free(tls_cfg->capath);
 		tls_cfg->capath = ast_strdup(value);
 	} else if (!strcasecmp(varname, "tlsverifyclient")) {