To answer both Brad and Dan: Brad: Yes, I have dumped the session and CFID, CFTOKEN and SESSION ID are all the same in both dumps. The dump in login_exec.cfm that shows session.isAuthorized value of true, and the dump in statistics.cfm that shows session.isAuthorized false, right after the client side redirects.
Dan: I verified my cookies were on. I have been using IE 7, so I fired up firefox (pun intended) and tried it there. Same result. I even looked at the cookies in Firefox and found both the CFID and the CFTOKEN cookies with the same values that matches my dump. Do you think it has anything to do with developing on http://localhost:8300/ ? I can't imagine as I've done that for years. I'm sure it's something simple I'm missing. But I'm at least glad that no one had an answer yet! (so I don't look dumb) :) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~| Adobe® ColdFusion® 8 software 8 is the most important and dramatic release to date Get the Free Trial http://ad.doubleclick.net/clk;207172674;29440083;f Archive: http://www.houseoffusion.com/groups/cf-talk/message.cfm/messageid:315329 Subscription: http://www.houseoffusion.com/groups/cf-talk/subscribe.cfm Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=11502.10531.4

