----------------
- add csrf token to delete urls for resources
[vangheem]
- Properly handle redirections from login view; resources used to be erased
on authentication redirect for POST action
[mihneasim]
- Replace troublesome HTTP_REFERER redirects, they can lead to infinite
redirects on expired session re-login
[mihneasim]
- Don't try to traverse to remote objects starting with '//', triggered
from plone.css
[eleddy]