diff -r b7a195d54fd4 -r 3ed48646f354 etwist/server.py --- a/etwist/server.py Tue Jan 03 17:00:43 2012 +0100 +++ b/etwist/server.py Tue Jan 03 17:59:31 2012 +0100 @@ -340,7 +340,7 @@ self.appli.connect(req) except Redirect, ex: return self.redirect(request=req, location=ex.location) - if https and req.session.anonymous_session: + if https and req.session.anonymous_session and self.config['https-deny-anonymous']: # don't allow anonymous on https connection return self.request_auth(request=req) if self.url_rewriter is not None: