In my application I'm seeing it's setting two session cookies:
- .AspNet.ApplicationCookie
- ASP.NET_SessionId
I can understand the requirement for a session cookie but why have two? What are the specific purposes of each?
I'm using asp.net identity in case that has something to do with it.