Hi -- Interesting... I have now read the section in Effective Java about defaultWriteObject(). He states persuasively that its use enhances being able to read in objects changed from version to version, say one with an added field. If this is a benefit to Shiro (which I'm not sure about...), then defaultWriteObject should be included. Otherwise, leaving it off and fully controlling the serialization seems entirely reasonable. (I've done this in the past a number of times without regret).
I'm glad to see good minds coming together! Take care, Dan -- View this message in context: http://shiro-user.582556.n2.nabble.com/SimpleSession-serialization-tp6826037p6836555.html Sent from the Shiro User mailing list archive at Nabble.com.
