Guest_imported
New member
- Jan 1, 1970
- 0
I cannot find a way of preventing non authorized users accessing CF pages that are stored in a browser's history before any session variables have timed out.<br><br>This is most likely to do with the cookie set by CFServer when session variables are defined, this cookie contains "tokens", one of which is the CFID, or session ID and the other is CFTOKEN which carries other info.<br><br>Does anyone know if it is possible to prevent the browser from storing the token cookie even if cookies are turned on in the client?