Principle

  1. Do not accept the default serialized form without first considering whether it is appropriate.  

    The default serialized form is likely to be appropriate if an object's physical representation is identical to its logical content.

    @serial tag tells the Javadoc utility to place this documentation on a special page that documents serialized forms.

    // Good candidate for default serialized form

    public class Name implements Serializable {

    /**

    * Last name. Must be non-null.

    * @serial

    */

    private final String lastName;

    /**

    * First name. Must be non-null.

    * @serial

    */

    private final String firstName;

    /**

    * Middle name, or null if there is none.

    * @serial

    */

    private final String middleName;

    ... // Remainder omitted

    }

  2. Even if you decide that the default serialized form is appropriate, you often must provide a readObject method to ensure invariants and security.  

    Using the default serialized form when an object's physical representation differs substantially from its logical data content has four disadvantages:

    1. It permanently ties the exported API to the current internal representation.
    2. It can consume excessive space.
    3. It can consume excessive time. (Topology graph traversal)
    4. it can cause stack overflow. (Depends on JVM implementation)

    Inconsistent demo for logic data and physical representation

    // Awful candidate for default serialized form

    public final class StringList implements Serializable {

    private int size = 0;

    private Entry head = null;

    private static class Entry implements Serializable {

    String data;

    Entry next;

    Entry previous;

    }

    ... // Remainder omitted

    }

    Revised version of StringList containing writeObject and readObject methods implementing this serialized form.

    public class StringList implements Serializable {

    /**

    * The serial version UID of the object.

    */

    private static final long serialVersionUID = 7533856777949584383L;

    private transient int size = 0;

    private transient Entry head = null;

    private transient Entry tail = null;

    // No longer Serializable!

    private static class Entry {

    String data;

    Entry next;

    @SuppressWarnings("unused")

    Entry previous;

    }

    // Appends the specified string to the list

    public final void add(String s) {

    Entry e = new Entry();

    e.data = s;

    if (null == head) {

    tail = head = e;

    } else {

    tail.next = e;

    tail.next.previous = tail;

    tail = tail.next;

    }

    size++;

    }

    /**

    * Serialize this {@code StringList} instance.

    *

    * @serialData The size of the list (the number of strings it contains) is

    * emitted ({@code int}), followed by all of its elements (each

    * a {@code String}), in the proper sequence.

    */

    private void writeObject(ObjectOutputStream s) throws IOException {

    s.defaultWriteObject();

    s.writeInt(size);

    // Write out all elements in the proper order.

    for (Entry e = head; e != null; e = e.next)

    s.writeObject(e.data);

    }

    private void readObject(ObjectInputStream s) throws IOException,

    ClassNotFoundException {

    s.defaultReadObject();

    int numElements = s.readInt();

    // Read in all elements and insert them in list

    for (int i = 0; i < numElements; i++)

    add((String) s.readObject());

    }

    /*

    * (non-Javadoc)

    *

    * @see java.lang.Object#toString()

    */

    @Override

    public String toString() {

    StringBuilder sb = new StringBuilder();

    for (Entry it = head; it != null; it = it.next)

    sb.append(it.data);

    return sb.toString();

    }

    /**

    * @param args

    */

    public static void main(String[] args) {

    StringList sl = new StringList();

    for (int i = 0; i < 5; i++) {

    sl.add(String.valueOf(i));

    }

    System.out.println(sl);

    try {

    FileOutputStream fos = new FileOutputStream("t.tmp");

    ObjectOutputStream oos = new ObjectOutputStream(fos);

    oos.writeObject(sl);

    oos.close();

    FileInputStream fis = new FileInputStream("t.tmp");

    ObjectInputStream ois = new ObjectInputStream(fis);

    StringList sl2 = (StringList) ois.readObject();

    System.out.println("Desialized obj = " + sl2);

    } catch (FileNotFoundException e) {

    e.printStackTrace();

    } catch (IOException e) {

    e.printStackTrace();

    } catch (ClassNotFoundException e) {

    e.printStackTrace();

    }

    }

    // Remainder omitted

    }

  3. Before deciding to make a field nontransient, convince yourself that its value is part of the logical state of the object.  

    Note

    If all instance fields are transient, it is technically permissible to dispense with invoking defaultWriteObject and defaultReadObject, but it is not recommended. If there are nontransient fields to be added in the class due to failed to invoke defaultReadObject, the deserialization would fail with a StreamCorruptedException.

    Every instance field that can be made transient should be made so since not labeled transient will be serialized when the defaultWriteObject method is invoked.

  4. if you are using the default serialized form.
    1. Transient field will be initialized as their default value (e.g. null, 0, false).
    2. If the default value cannot be acceptable you should provide readObject method and invoke defaultReadObject method and then restores transient fields to acceptable values (Item 76).
    3. Transient field can be lazily initialized the first time they are used (Item 71) .
  5. You must impose any synchronization on object serialization that you would impose on any other method that reads the entire state of the object. You must ensure that it adheres to the same lock-ordering constraints as other activity,  

    // writeObject for synchronized class with default serialized form

    private synchronized void writeObject(ObjectOutputStream s)

    throws IOException {

    s.defaultWriteObject();

    }

  6. Regardless of what serialized form you choose, declare an explicit serial version UID in every serializable class you write.

    private static final long serialVersionUID = randomLongValue ;

    If you modify an existing class that lacks a serial version UID, and you want the new version to accept existing serialized instances, you must use the value that was automatically generated for the old version. Or InvalidClassException will be invoked when there is a serialized object to be deserialized by the new modified the class.

Summary

when you have decided that a class should be serializable (Item 74), think hard about what the serialized form should be. Use the default serialized form only if it is a reasonable description of the logical state of the object; otherwise design a custom serialized form that aptly describes the object. You should allocate as much time to designing the serialized form of a class as you allocate to designing its exported methods (Item 40). Just as you cannot eliminate exported methods from future versions, you cannot eliminate fields from the serialized form; they must be preserved forever to ensure serialization compatibility. Choosing the wrong serialized form can have a permanent, negative impact on the complexity and performance of a class.

Effective Java 75 Consider using a custom serialized form的更多相关文章

  1. Effective Java Index

    Hi guys, I am happy to tell you that I am moving to the open source world. And Java is the 1st langu ...

  2. 《Effective Java》读书笔记 - 11.序列化

    Chapter 11 Serialization Item 74: Implement Serializable judiciously 让一个类的实例可以被序列化不仅仅是在类的声明中加上" ...

  3. Effective Java 目录

    <Effective Java>目录摘抄. 我知道这看起来很糟糕.当下,自己缺少实际操作,只能暂时摘抄下目录.随着,实践的增多,慢慢填充更多的示例. Chapter 2 Creating ...

  4. 【Effective Java】阅读

    Java写了很多年,很惭愧,直到最近才读了这本经典之作<Effective Java>,按自己的理解总结下,有些可能还不够深刻 一.Creating and Destroying Obje ...

  5. Effective Java 第三版—— 87. 考虑使用自定义序列化形式

    Tips 书中的源代码地址:https://github.com/jbloch/effective-java-3e-source-code 注意,书中的有些代码里方法是基于Java 9 API中的,所 ...

  6. Effective Java 第三版—— 86. 非常谨慎地实现SERIALIZABLE接口

    Tips 书中的源代码地址:https://github.com/jbloch/effective-java-3e-source-code 注意,书中的有些代码里方法是基于Java 9 API中的,所 ...

  7. Effective java笔记8--序列化

    对象的序列化(object serialization)API,它提供了一个框架,用来将对象编码成一个字节流,以及从字节流编码中重新构建对象. 一.谨慎地实现Serializable     要想使一 ...

  8. Effective Java 44 Write doc comments for all exposed API elements

    Principle You must precede every exported class, interface, constructor, method, and field declarati ...

  9. EFFECTIVE JAVA 第十一章 系列化

    EFFECTIVE  JAVA  第十一章  系列化(将一个对象编码成一个字节流) 74.谨慎地实现Serializable接口 *实现Serializable接口付出的代价就是大大降低了“改变这个类 ...

随机推荐

  1. python——第一天

    两种循环: for x in …… while range(n) 生成整数序列,并且是从0开始一直到n-1的整数 raw_input() 读取的内容永远以字符串的形式,必须先用 int() 把字符串转 ...

  2. Android 学习笔记之AndBase框架学习(二) 使用封装好的进度框,Toast框,弹出框,确认框...

    PS:渐渐明白,在实验室呆三年都不如在企业呆一年... 学习内容: 1.使用AbActivity内部封装的方法实现进度框,Toast框,弹出框,确认框...   AndBase中AbActivity封 ...

  3. UWP开发入门(十九)——10分钟学会在VS2015中使用Git

    写程序必然需要版本控制,哪怕是个人项目也是必须的.我们在开发UWP APP的时候,VS2015默认提供了对微软TFS和Git的支持.考虑到现在Git很火,作为微软系的程序员也不得不学一点防身,以免被开 ...

  4. Dir /U /c 输出Unicode字符的特性

    比如某个目录列表如下: D:\Spec\a.txtD:\Spec\Dir・C.txtD:\Spec\else.txtD:\Spec\קתקווה.dataD:\Spec\中・文.txt 直接dir / ...

  5. thread_fork/join并发框架2

    转自  http://blog.csdn.net/mr_zhuqiang/article/details/48300229 三.使用异步方式 invokeAll(task1,task2); 是同步方式 ...

  6. Winform开发框架之字典管理模块的更新,附上最新2013年全国最新县及县以上行政区划代码sql脚本

    在很多项目里面,字典管理是必备的项目模块,而这个又是比较通用的功能,因此可以单独做成一个通用字典管理,例如这个模块,可以通过集成的方式,使用在我的<Winform开发框架>.<WCF ...

  7. easyui-简单用法寄一些属性

    Easyui 总结 优点: A.简单易用 继承 jQuery 简易使用特性,提供高度抽象接口,短期改善网站易用性. B.开源免费 采用 MIT & GPL 双协议授权,轻松满足自由产品至企业产 ...

  8. 发现自己喜欢了移动端开发--Android

    喜欢.net一直到现在了,但是自己做过的项目都不是让我自己很满意,不知道为什么,可能是自己的要求比较高吧! 下面自己记录自己的学习 src专门存放我们java源代码的包 Android 4.2.2存放 ...

  9. jxl导出Excel文件

    一.java项目实现读取Excel文件和导出Excel文件 实现读取和导出Excel文件的代码: package servlet; import java.io.FileInputStream; im ...

  10. Window下生成OpenSSL自签证书

    :OPenSSL下载地址:https://www.openssl.org/source/ 编译好的OpenSSL下载地址: http://slproweb.com/products/Win32Open ...