We should improve documentation of SecurityMockMvcRequestPostProcessors.csrf() to clarify usage and suggestions when customizing CsrfTokenRequestHandler. Areas to address:

Issue gh-12774