Is there a possibility to set the access control lists per category and not only per stream?
We use the category for a simple multitenancy system.So every tenant stream is prefixed with a tenant identifier. The name for a customer aggregate then looks like this:
So the ACL should allow tenant A only to access all streams starting with “tenanta-" and tenant B the streams with "tenantb-”.
Is there any way to achieve this with the current ACL system? (I saw there was a discussion back in 2016, but without any result).
The alternative would be to use a reverse proxy in front of the eventstore that does the authentication/authorization.