Please see the configuration help for setting the secure server, the secure server must have access to the same cgi-bin and the cgi-bin must be on the same webserevr not a shared ssl, so make sure this what happens.
Yes these are left for you, if you feal these links will not hurt or overload your ssl server, then you need to hard link these links in your template instead of using the classes.