User experience with disabled cookies
When cookies are disabled, a user is currently just forwarded to the login page again without an error message.
I would not introduce cookie less sessions (http://security.stackexchange.com/questions/17719/what-risks-do-cookieless-sessions-have-what-are-the-mitigations) but at least give a hint that cookies are disabled and are necessary to log in.