public AntiforgeryTokenSet GetAndStoreTokens(HttpContext httpContext) { var result = _defaultAntiforgery.GetAndStoreTokens(httpContext); httpContext.DisableBrowserCache(); return(result); }
public AntiforgeryTokenSet GetAndStoreTokens(HttpContext httpContext) { var result = _defaultAntiforgery.GetAndStoreTokens(httpContext); httpContext.Response.Headers[HeaderNames.CacheControl] = new StringValues(new[] { "no-cache", "max-age=0", "must-revalidate", "no-store" }); httpContext.Response.Headers[HeaderNames.Expires] = "-1"; httpContext.Response.Headers[HeaderNames.Pragma] = "no-cache"; return(result); }