We need the ability to use both the new_rewrite and old htaccess method of authentication on the same protected folder in order allow both users with and without cookies turned on/enabled. Is there a way to modify the .htaccess file in order to allow standard htaccess authentication as well as the new cookie based new-rewrite method? If not, is there any issues with using auth_mysql inside the htaccess file? Is the password stored in the user table compatible with md5 or tripple-des? Thank you for help and support on this. /Henrik