query_builder.ts 8.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334
  1. import * as queryDef from './query_def';
  2. export class ElasticQueryBuilder {
  3. timeField: string;
  4. esVersion: number;
  5. constructor(options) {
  6. this.timeField = options.timeField;
  7. this.esVersion = options.esVersion;
  8. }
  9. getRangeFilter() {
  10. const filter = {};
  11. filter[this.timeField] = {
  12. gte: '$timeFrom',
  13. lte: '$timeTo',
  14. format: 'epoch_millis',
  15. };
  16. return filter;
  17. }
  18. buildTermsAgg(aggDef, queryNode, target) {
  19. let metricRef, metric, y;
  20. queryNode.terms = { field: aggDef.field };
  21. if (!aggDef.settings) {
  22. return queryNode;
  23. }
  24. queryNode.terms.size = parseInt(aggDef.settings.size, 10) === 0 ? 500 : parseInt(aggDef.settings.size, 10);
  25. if (aggDef.settings.orderBy !== void 0) {
  26. queryNode.terms.order = {};
  27. if (aggDef.settings.orderBy === '_term' && this.esVersion >= 60) {
  28. queryNode.terms.order['_key'] = aggDef.settings.order;
  29. } else {
  30. queryNode.terms.order[aggDef.settings.orderBy] = aggDef.settings.order;
  31. }
  32. // if metric ref, look it up and add it to this agg level
  33. metricRef = parseInt(aggDef.settings.orderBy, 10);
  34. if (!isNaN(metricRef)) {
  35. for (y = 0; y < target.metrics.length; y++) {
  36. metric = target.metrics[y];
  37. if (metric.id === aggDef.settings.orderBy) {
  38. queryNode.aggs = {};
  39. queryNode.aggs[metric.id] = {};
  40. queryNode.aggs[metric.id][metric.type] = { field: metric.field };
  41. break;
  42. }
  43. }
  44. }
  45. }
  46. if (aggDef.settings.min_doc_count !== void 0) {
  47. queryNode.terms.min_doc_count = parseInt(aggDef.settings.min_doc_count, 10);
  48. }
  49. if (aggDef.settings.missing) {
  50. queryNode.terms.missing = aggDef.settings.missing;
  51. }
  52. return queryNode;
  53. }
  54. getDateHistogramAgg(aggDef) {
  55. const esAgg: any = {};
  56. const settings = aggDef.settings || {};
  57. esAgg.interval = settings.interval;
  58. esAgg.field = this.timeField;
  59. esAgg.min_doc_count = settings.min_doc_count || 0;
  60. esAgg.extended_bounds = { min: '$timeFrom', max: '$timeTo' };
  61. esAgg.format = 'epoch_millis';
  62. if (esAgg.interval === 'auto') {
  63. esAgg.interval = '$__interval';
  64. }
  65. if (settings.missing) {
  66. esAgg.missing = settings.missing;
  67. }
  68. return esAgg;
  69. }
  70. getHistogramAgg(aggDef) {
  71. const esAgg: any = {};
  72. const settings = aggDef.settings || {};
  73. esAgg.interval = settings.interval;
  74. esAgg.field = aggDef.field;
  75. esAgg.min_doc_count = settings.min_doc_count || 0;
  76. if (settings.missing) {
  77. esAgg.missing = settings.missing;
  78. }
  79. return esAgg;
  80. }
  81. getFiltersAgg(aggDef) {
  82. const filterObj = {};
  83. for (let i = 0; i < aggDef.settings.filters.length; i++) {
  84. const query = aggDef.settings.filters[i].query;
  85. let label = aggDef.settings.filters[i].label;
  86. label = label === '' || label === undefined ? query : label;
  87. filterObj[label] = {
  88. query_string: {
  89. query: query,
  90. analyze_wildcard: true,
  91. },
  92. };
  93. }
  94. return filterObj;
  95. }
  96. documentQuery(query, size) {
  97. query.size = size;
  98. query.sort = {};
  99. query.sort[this.timeField] = { order: 'desc', unmapped_type: 'boolean' };
  100. // fields field not supported on ES 5.x
  101. if (this.esVersion < 5) {
  102. query.fields = ['*', '_source'];
  103. }
  104. query.script_fields = {};
  105. if (this.esVersion < 5) {
  106. query.fielddata_fields = [this.timeField];
  107. } else {
  108. query.docvalue_fields = [this.timeField];
  109. }
  110. return query;
  111. }
  112. addAdhocFilters(query, adhocFilters) {
  113. if (!adhocFilters) {
  114. return;
  115. }
  116. let i, filter, condition, queryCondition;
  117. for (i = 0; i < adhocFilters.length; i++) {
  118. filter = adhocFilters[i];
  119. condition = {};
  120. condition[filter.key] = filter.value;
  121. queryCondition = {};
  122. queryCondition[filter.key] = { query: filter.value };
  123. switch (filter.operator) {
  124. case '=':
  125. if (!query.query.bool.must) {
  126. query.query.bool.must = [];
  127. }
  128. query.query.bool.must.push({ match_phrase: queryCondition });
  129. break;
  130. case '!=':
  131. if (!query.query.bool.must_not) {
  132. query.query.bool.must_not = [];
  133. }
  134. query.query.bool.must_not.push({ match_phrase: queryCondition });
  135. break;
  136. case '<':
  137. condition[filter.key] = { lt: filter.value };
  138. query.query.bool.filter.push({ range: condition });
  139. break;
  140. case '>':
  141. condition[filter.key] = { gt: filter.value };
  142. query.query.bool.filter.push({ range: condition });
  143. break;
  144. case '=~':
  145. query.query.bool.filter.push({ regexp: condition });
  146. break;
  147. case '!~':
  148. query.query.bool.filter.push({
  149. bool: { must_not: { regexp: condition } },
  150. });
  151. break;
  152. }
  153. }
  154. }
  155. build(target, adhocFilters?, queryString?) {
  156. // make sure query has defaults;
  157. target.metrics = target.metrics || [{ type: 'count', id: '1' }];
  158. target.bucketAggs = target.bucketAggs || [{ type: 'date_histogram', id: '2', settings: { interval: 'auto' } }];
  159. target.timeField = this.timeField;
  160. let i, nestedAggs, metric;
  161. const query = {
  162. size: 0,
  163. query: {
  164. bool: {
  165. filter: [
  166. { range: this.getRangeFilter() },
  167. {
  168. query_string: {
  169. analyze_wildcard: true,
  170. query: queryString,
  171. },
  172. },
  173. ],
  174. },
  175. },
  176. };
  177. this.addAdhocFilters(query, adhocFilters);
  178. // handle document query
  179. if (target.bucketAggs.length === 0) {
  180. metric = target.metrics[0];
  181. if (!metric || metric.type !== 'raw_document') {
  182. throw { message: 'Invalid query' };
  183. }
  184. const size = (metric.settings && metric.settings.size) || 500;
  185. return this.documentQuery(query, size);
  186. }
  187. nestedAggs = query;
  188. for (i = 0; i < target.bucketAggs.length; i++) {
  189. const aggDef = target.bucketAggs[i];
  190. const esAgg = {};
  191. switch (aggDef.type) {
  192. case 'date_histogram': {
  193. esAgg['date_histogram'] = this.getDateHistogramAgg(aggDef);
  194. break;
  195. }
  196. case 'histogram': {
  197. esAgg['histogram'] = this.getHistogramAgg(aggDef);
  198. break;
  199. }
  200. case 'filters': {
  201. esAgg['filters'] = { filters: this.getFiltersAgg(aggDef) };
  202. break;
  203. }
  204. case 'terms': {
  205. this.buildTermsAgg(aggDef, esAgg, target);
  206. break;
  207. }
  208. case 'geohash_grid': {
  209. esAgg['geohash_grid'] = {
  210. field: aggDef.field,
  211. precision: aggDef.settings.precision,
  212. };
  213. break;
  214. }
  215. }
  216. nestedAggs.aggs = nestedAggs.aggs || {};
  217. nestedAggs.aggs[aggDef.id] = esAgg;
  218. nestedAggs = esAgg;
  219. }
  220. nestedAggs.aggs = {};
  221. for (i = 0; i < target.metrics.length; i++) {
  222. metric = target.metrics[i];
  223. if (metric.type === 'count') {
  224. continue;
  225. }
  226. const aggField = {};
  227. let metricAgg = null;
  228. if (queryDef.isPipelineAgg(metric.type)) {
  229. if (metric.pipelineAgg && /^\d*$/.test(metric.pipelineAgg)) {
  230. metricAgg = { buckets_path: metric.pipelineAgg };
  231. } else {
  232. continue;
  233. }
  234. } else {
  235. metricAgg = { field: metric.field };
  236. }
  237. for (const prop in metric.settings) {
  238. if (metric.settings.hasOwnProperty(prop) && metric.settings[prop] !== null) {
  239. metricAgg[prop] = metric.settings[prop];
  240. }
  241. }
  242. aggField[metric.type] = metricAgg;
  243. nestedAggs.aggs[metric.id] = aggField;
  244. }
  245. return query;
  246. }
  247. getTermsQuery(queryDef) {
  248. const query: any = {
  249. size: 0,
  250. query: {
  251. bool: {
  252. filter: [{ range: this.getRangeFilter() }],
  253. },
  254. },
  255. };
  256. if (queryDef.query) {
  257. query.query.bool.filter.push({
  258. query_string: {
  259. analyze_wildcard: true,
  260. query: queryDef.query,
  261. },
  262. });
  263. }
  264. let size = 500;
  265. if (queryDef.size) {
  266. size = queryDef.size;
  267. }
  268. query.aggs = {
  269. '1': {
  270. terms: {
  271. field: queryDef.field,
  272. size: size,
  273. order: {
  274. _term: 'asc',
  275. },
  276. },
  277. },
  278. };
  279. if (this.esVersion >= 60) {
  280. query.aggs['1'].terms.order = {
  281. _key: 'asc',
  282. };
  283. }
  284. return query;
  285. }
  286. }