Hi. Is it possible that we secure all or most of our services/web pages where one has to provide a login/password? I believe that mod_jk is used for the Java web pages deployed on Tomcat? It would be enough to put the mod_jk config to the secure virtual host setting as well. Cheers, Manfred