From Hypertext Transfer Protocol (HTTP/1.1): Semantics and Content:
An origin server MUST NOT send a validator header field (Section 7.2), such as an
ETag
orLast-Modified
field, in a successful response toPUT
unless the request's representation data was saved without any transformation applied to the body (i.e., the resource's new representation data is identical to the representation data received in the PUT request) and the validator field value reflects the new representation. This requirement allows a user agent to know when the representation body it has in memory remains current as a result of thePUT
, thus not in need of being retrieved again from the origin server, and that the new validator(s) received in the response can be used for future conditional requests in order to prevent accidental overwrites (Section 5.2).
I can't fully understand this section... Bolded sentences seem to contradict themselves, don't they?
Note that PUT
is the only verb having a section concerning validator headers (see GET
/POST
/DELETE
/PATCH
).
The key point is that the server may, or may not, alter the representation before storing it. From the section you linked to:
A successful
PUT
of a given representation would suggest that a subsequentGET
on that same target resource will result in an equivalent representation being sent in a200 (OK)
response. However, there is no guarantee that such a state change will be observable, since the target... might be subject to dynamic processing by the origin server.
Therefore, the standard uses the presence or absence of the validator header to indicate to the user agent whether or not the representation has been altered.
If the representation hasn't been altered, then the server can return the validator header field, and the user agent can use that to conditionally validate the representation it just sent.
If the representation has been altered, then the user agent's representation is, by definition, invalid. Therefore no validator header is returned, and the user agent will have to do an unconditional GET
.
来源:https://stackoverflow.com/questions/42246577/why-responses-to-put-requests-must-not-provide-an-etag