> Are there any best practices for cross domain deployments or any > documentation that you can point me to? Has nothiing to do with cross-domain anything. SSL should be enabled on any web site that uses cookies for anything security-related. -- Scott