the domain of the cookie is automatically set at the moment, by reading either 
HTTP_POST var or the SERVER_NAME. It shouldn't be too hard to add another option
in the __init__ of  AuthTktCookiePlugin that would optionally store the cookie

messages: 408
nosy: nedosa
priority: feature
status: unread
title: repoze.who should support manual setting of cookie domain
topic: repoze.who

