This is without a doubt the #1 cause of confusion in our current web
setup...nothing "d'oh" about it. I will send you the answer privately,
to avoid getting it into the public archives.
It might still be possible to allow people to use their own passwords,
if the web server's password encryption is compatible with the one used
for logins. Hangbiao would be the one to do it, if this is the case.
PB