Hi! We have got an external webservice which gets user/password as parameters and returns a usergroup (or "invalid") as result. We want to use this for TYPO3-Login to get real TYPO3 users almost like they would log in with newloginbox ... how we are doing this in a secure way? Cheers Manfred