hello group, i have a problem and hope anybody here will be able to hep me out. i have a downloads folder in my server which contains all the files in zipped form to be downloaded by members.members are authenticated by entering username and password.and when they click to download the files ,they are forwarded to the the full file url by using header function of php.But the problem is that ,when the users click once to download a file ,they can see the whole url and so next time they can easily download the file by entering the full url in the browser ,so there is no use of authentication next time and this leads to bandwidth theft and the urls of files are circulating in the emails and users are downloading the files without becoming the user of the site and without authenticating themselves.I know there are many professionals in this group who are very experienced and have helped me earlier.this is a very serious problem and i need a solution to this.What are your views? Is there any solution for it? waiting for your replies. Thanks, Jenny