do you have any custom .htaccess redirect rules in place? have you tried setting your secure root to a non www. version of the domain?
If you believe that settings are correct you can just disable url checking. The problem can be in cUrl library, or firewall. So aMember check does not work correctly.