Class CompatibleObjectEncoder

  • All Implemented Interfaces:
    ChannelHandler, ChannelOutboundHandler

    @Deprecated
    public class CompatibleObjectEncoder
    extends MessageToByteEncoder<Serializable>
    Deprecated.
    This class has been deprecated with no replacement, because serialization can be a security liability
    An encoder which serializes a Java object into a ByteBuf (interoperability version).

    This encoder is interoperable with the standard Java object streams such as ObjectInputStream and ObjectOutputStream.

    Security: serialization can be a security liability, and should not be used without defining a list of classes that are allowed to be desirialized. Such a list can be specified with the jdk.serialFilter system property, for instance. See the serialization filtering article for more information.