X-Git-Url: https://git.martlubbers.net/?a=blobdiff_plain;f=report%2Fv9_data.tex;h=23542430db5fc08d69e64f8340514986662ce054;hb=HEAD;hp=1ea1f877baf1f8310fcf99d1eb68de2bdc253086;hpb=332cc6edfadaa06cae8f790b8a0627bef705995e;p=ssproject1617.git diff --git a/report/v9_data.tex b/report/v9_data.tex index 1ea1f87..2354243 100644 --- a/report/v9_data.tex +++ b/report/v9_data.tex @@ -4,7 +4,7 @@ features. \begin{result} - The login and page/post editing/creation forms post back to the same page, thereby incentivising the browser to cache the form inputs as well. This is as opposed to the common post/redirect/get model (see \url{http://en.wikipedia.org/wiki/Post/Redirect/Get}). Also, the \code{Cache-Control} isn't explicitly used anywhere in the \CMS{} to aid the situation. In our test setup, the response does send \code{Cache-Control:no-store, no-cache, must-revalidate, post-check=0, pre-check=0}, but expect that this depends on the platform. + The login and page/post editing/creation forms post back to the same page, thereby incentivising the browser to cache the form inputs as well. This is as opposed to the common post/redirect/get model (see \url{http://en.wikipedia.org/wiki/Post/Redirect/Get}). Also, the \code{Cache-Control} is not explicitly used anywhere in the \CMS{} to aid the situation. In our test setup, the response does send \code{Cache-Control:no-store, no-cache, must-revalidate, post-check=0, pre-check=0}, but expect that this depends on the platform. \end{result} \notapplicable{\item Verify that the list of sensitive data processed by the