Make sure that clients can do login to the API by doing nothing more than pointing to the filename of the api-cookie.