As far as I can tell, there's no way to prevent users from using any RTMP stream key they want to stream to WCS, is this correct?
If so, then is it possible to protect against unauthorized streams using an authorization hook as described here?  
If yes, where do we configure which hook to call...