Hello! I am developing an module wich will provide a valid Session-ID for each configured location/directory. But there is a problem. If there is a sub request without valid Session-ID (because the initial request didn't need one), but the requested Location requires one, what should the module do: Deny or allow the access? - Nikolaus -- Gefährlich wird es, wenn die Dummen fleissig werden