Guys, I am working on AngularJS SPA and WebApi and i am implementing CSRF in my POST/PUT/DELETE request, Again all my views are html templates not MVC views at all, for CSRF i am generating cookie almost the way this example http://www.cmsmatrix.org/matrix/cms-matrix/sitefinity is, My question is this approach is perfect or i need to generate 2 cookies one is Token cookie and other is form cookie as here http://ericpanorel.net/2013/07/28/spa-authentication-and-csrf-mvc4-antiforgery-implementation/ but this link is with MVC , webapi and angular and its layout page is chtml and in my case my shell page is index.html
Please explain? Thanks -- You received this message because you are subscribed to the Google Groups "AngularJS" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To post to this group, send email to [email protected]. Visit this group at http://groups.google.com/group/angular. For more options, visit https://groups.google.com/d/optout.
