Java Servlet (1) —— Filter过滤请求与响应

版本: Java EE 6


Oracle:The Java EE 6 Tutorial: Filtering Requests and Responses




oracle javaee 6的官方文档中短短的一段话,分别从定义、内容、应用、实现这四个方面对Filter这个东西做了详细的说明


A filter is an object that can transform the header and content (or both) of a request or response. Filters differ from web components in that filters usually do not themselves create a response. Instead, a filter provides functionality that can be “attached” to any kind of web resource. Consequently, a filter should not have any dependencies on a web resource for which it is acting as a filter; this way, it can be composed with more than one type of web resource.


  1. Filter是一个对象

    (A filter is an object)

  2. Filter对象的功能是可以变换请求或相应的头和内容

    (can transform the header and content (or both) of a request or response)

  3. Filter与web components不同,不自己创建相应

    (Filters differ from web components in that filters usually do not themselves create a response)

    Web Components是什么?(Wiki:Web Components

    Wiki上的定义比较抽象,但是它也给出了Web Components所表现的几个具象形式:

    • 自定义元素(Custom Elements)

    • 隐藏DOM(Shadow DOM)

    • HTML引入(HTML Imports)

    • HTML模板(HTML Templates)

    总而言之,Web Components可以认为是一些资源(resource)的组件。

    为什么我将它看成资源的组件?下面这点可以看出(Instead...web resource)

  4. Filter可以“附在”(attached)任何web资源上

    (Instead, a filter provides functionality that can be “attached” to any kind of web resource)

  5. Filter不应依赖与它“依附”的web资源

    (Consequently, a filter should not have any dependencies on a web resource for which it is acting as a filter)


  6. Filter可以与多个web资源组合在一起使用

    (this way, it can be composed with more than one type of web resource)




The main tasks that a filter can perform are as follows:

  • Query the request and act accordingly.
  • Block the request-and-response pair from passing any further.
  • Modify the request headers and data. You do this by providing a customized version of the request.
  • Modify the response headers and data. You do this by providing a customized version of the response.
  • Interact with external resources.


  • 查询请求然后做相应动作

    (Query the request and act accordingly)


  • 拦截请求与响应对(在向下传递时)

    (Block the request-and-response pair from passing any further)


  • 修改请求的头与数据

    (Modify the request headers and data. You do this by providing a customized version of the request)

  • 修改响应的头与数据

    (Modify the response headers and data. You do this by providing a customized version of the response)

  • 与外部资源交互

    (Interact with external resources)




  • 验证(Authentication)


  • 日志(Logging)


  • 图像转换(Image Conversion)


  • 数据压缩(Data Compression)


  • 加密(Encryption)


  • 标记流(Tokenizing Streams)


  • XML变换(XML transformations)





You can configure a web resource to be filtered by a chain of zero, one, or more filters in a specific order.


  • 目标——配置web资源(web resource)
  • 方式——链式(chain)
  • 数量——0、1或多(zero, one, or more filters)
  • 顺序——特定的顺序(in a specific order)

This chain is specified when the web application containing the component is deployed and is instantiated when a web container loads the component.


  • 编译时(静态)——在编译部署的时候,这个链就已经定义好了。
  • 运行时(动态)——在加载组件的时候,这个链被实例化。



