Hacker News new | past | comments | ask | show | jobs | submit login

This is incorrect. Once data starts to flow, DTLS is used to encrypt the connection and verify each peer's identity. If the STUN server attempts to MITM, it will be detected.

Maybe I'm reading your comment wrong (if so, sorry!), but that sounds like a race condition to me.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
