I noticed that when opensips-cli creates a database it creates with opensips@%. I thinks this is a major security flaw, anyone leaving the default password for opensips will be in trouble. The least privileged configuration would be opensips@localhost instead and would allow opensips-cli and opensips-cp to work. A user in need of more than one server can change to % later if necessary.