why do you even use HTTP for root login, this is highly insecure and you should use HTTPS over your hostname.
Also, this is http to https redirect so it has no anything with the sessions, it can be related to only that you have multiple windows in the same browser open with the different sessions id.