i am in the process of trying to plan out a Content Management System and it really bugs me that after logging out, you can just hit the back button and you are back into the 'restricted' area!
The solution that i was considering was to have a processing page that handles both the login and the logout- redirecting according to the query string. Still, that doesn't seem secure... any ideas?
Also any tips (from experience) on the best procedure for planning such an application would also be appreciated.
Thanks!