query_builder.ts 9.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370
  1. import * as queryDef from './query_def';
  2. export class ElasticQueryBuilder {
  3. timeField: string;
  4. esVersion: number;
  5. constructor(options) {
  6. this.timeField = options.timeField;
  7. this.esVersion = options.esVersion;
  8. }
  9. getRangeFilter() {
  10. const filter = {};
  11. filter[this.timeField] = {
  12. gte: '$timeFrom',
  13. lte: '$timeTo',
  14. format: 'epoch_millis',
  15. };
  16. return filter;
  17. }
  18. buildTermsAgg(aggDef, queryNode, target) {
  19. let metricRef, metric, y;
  20. queryNode.terms = { field: aggDef.field };
  21. if (!aggDef.settings) {
  22. return queryNode;
  23. }
  24. queryNode.terms.size = parseInt(aggDef.settings.size, 10) === 0 ? 500 : parseInt(aggDef.settings.size, 10);
  25. if (aggDef.settings.orderBy !== void 0) {
  26. queryNode.terms.order = {};
  27. if (aggDef.settings.orderBy === '_term' && this.esVersion >= 60) {
  28. queryNode.terms.order['_key'] = aggDef.settings.order;
  29. } else {
  30. queryNode.terms.order[aggDef.settings.orderBy] = aggDef.settings.order;
  31. }
  32. // if metric ref, look it up and add it to this agg level
  33. metricRef = parseInt(aggDef.settings.orderBy, 10);
  34. if (!isNaN(metricRef)) {
  35. for (y = 0; y < target.metrics.length; y++) {
  36. metric = target.metrics[y];
  37. if (metric.id === aggDef.settings.orderBy) {
  38. queryNode.aggs = {};
  39. queryNode.aggs[metric.id] = {};
  40. queryNode.aggs[metric.id][metric.type] = { field: metric.field };
  41. break;
  42. }
  43. }
  44. }
  45. }
  46. if (aggDef.settings.min_doc_count !== void 0) {
  47. queryNode.terms.min_doc_count = parseInt(aggDef.settings.min_doc_count, 10);
  48. }
  49. if (aggDef.settings.missing) {
  50. queryNode.terms.missing = aggDef.settings.missing;
  51. }
  52. return queryNode;
  53. }
  54. getDateHistogramAgg(aggDef) {
  55. const esAgg: any = {};
  56. const settings = aggDef.settings || {};
  57. esAgg.interval = settings.interval;
  58. esAgg.field = this.timeField;
  59. esAgg.min_doc_count = settings.min_doc_count || 0;
  60. esAgg.extended_bounds = { min: '$timeFrom', max: '$timeTo' };
  61. esAgg.format = 'epoch_millis';
  62. if (settings.offset !== '') {
  63. esAgg.offset = settings.offset;
  64. }
  65. if (esAgg.interval === 'auto') {
  66. esAgg.interval = '$__interval';
  67. }
  68. if (settings.missing) {
  69. esAgg.missing = settings.missing;
  70. }
  71. return esAgg;
  72. }
  73. getHistogramAgg(aggDef) {
  74. const esAgg: any = {};
  75. const settings = aggDef.settings || {};
  76. esAgg.interval = settings.interval;
  77. esAgg.field = aggDef.field;
  78. esAgg.min_doc_count = settings.min_doc_count || 0;
  79. if (settings.missing) {
  80. esAgg.missing = settings.missing;
  81. }
  82. return esAgg;
  83. }
  84. getFiltersAgg(aggDef) {
  85. const filterObj = {};
  86. for (let i = 0; i < aggDef.settings.filters.length; i++) {
  87. const query = aggDef.settings.filters[i].query;
  88. let label = aggDef.settings.filters[i].label;
  89. label = label === '' || label === undefined ? query : label;
  90. filterObj[label] = {
  91. query_string: {
  92. query: query,
  93. analyze_wildcard: true,
  94. },
  95. };
  96. }
  97. return filterObj;
  98. }
  99. documentQuery(query, size) {
  100. query.size = size;
  101. query.sort = {};
  102. query.sort[this.timeField] = { order: 'desc', unmapped_type: 'boolean' };
  103. // fields field not supported on ES 5.x
  104. if (this.esVersion < 5) {
  105. query.fields = ['*', '_source'];
  106. }
  107. query.script_fields = {};
  108. if (this.esVersion < 5) {
  109. query.fielddata_fields = [this.timeField];
  110. } else {
  111. query.docvalue_fields = [this.timeField];
  112. }
  113. return query;
  114. }
  115. addAdhocFilters(query, adhocFilters) {
  116. if (!adhocFilters) {
  117. return;
  118. }
  119. let i, filter, condition, queryCondition;
  120. for (i = 0; i < adhocFilters.length; i++) {
  121. filter = adhocFilters[i];
  122. condition = {};
  123. condition[filter.key] = filter.value;
  124. queryCondition = {};
  125. queryCondition[filter.key] = { query: filter.value };
  126. switch (filter.operator) {
  127. case '=':
  128. if (!query.query.bool.must) {
  129. query.query.bool.must = [];
  130. }
  131. query.query.bool.must.push({ match_phrase: queryCondition });
  132. break;
  133. case '!=':
  134. if (!query.query.bool.must_not) {
  135. query.query.bool.must_not = [];
  136. }
  137. query.query.bool.must_not.push({ match_phrase: queryCondition });
  138. break;
  139. case '<':
  140. condition[filter.key] = { lt: filter.value };
  141. query.query.bool.filter.push({ range: condition });
  142. break;
  143. case '>':
  144. condition[filter.key] = { gt: filter.value };
  145. query.query.bool.filter.push({ range: condition });
  146. break;
  147. case '=~':
  148. query.query.bool.filter.push({ regexp: condition });
  149. break;
  150. case '!~':
  151. query.query.bool.filter.push({
  152. bool: { must_not: { regexp: condition } },
  153. });
  154. break;
  155. }
  156. }
  157. }
  158. build(target, adhocFilters?, queryString?) {
  159. // make sure query has defaults;
  160. target.metrics = target.metrics || [queryDef.defaultMetricAgg()];
  161. target.bucketAggs = target.bucketAggs || [queryDef.defaultBucketAgg()];
  162. target.timeField = this.timeField;
  163. let i, j, pv, nestedAggs, metric;
  164. const query = {
  165. size: 0,
  166. query: {
  167. bool: {
  168. filter: [
  169. { range: this.getRangeFilter() },
  170. {
  171. query_string: {
  172. analyze_wildcard: true,
  173. query: queryString,
  174. },
  175. },
  176. ],
  177. },
  178. },
  179. };
  180. this.addAdhocFilters(query, adhocFilters);
  181. // handle document query
  182. if (target.bucketAggs.length === 0) {
  183. metric = target.metrics[0];
  184. if (!metric || metric.type !== 'raw_document') {
  185. throw { message: 'Invalid query' };
  186. }
  187. const size = (metric.settings && metric.settings.size) || 500;
  188. return this.documentQuery(query, size);
  189. }
  190. nestedAggs = query;
  191. for (i = 0; i < target.bucketAggs.length; i++) {
  192. const aggDef = target.bucketAggs[i];
  193. const esAgg = {};
  194. switch (aggDef.type) {
  195. case 'date_histogram': {
  196. esAgg['date_histogram'] = this.getDateHistogramAgg(aggDef);
  197. break;
  198. }
  199. case 'histogram': {
  200. esAgg['histogram'] = this.getHistogramAgg(aggDef);
  201. break;
  202. }
  203. case 'filters': {
  204. esAgg['filters'] = { filters: this.getFiltersAgg(aggDef) };
  205. break;
  206. }
  207. case 'terms': {
  208. this.buildTermsAgg(aggDef, esAgg, target);
  209. break;
  210. }
  211. case 'geohash_grid': {
  212. esAgg['geohash_grid'] = {
  213. field: aggDef.field,
  214. precision: aggDef.settings.precision,
  215. };
  216. break;
  217. }
  218. }
  219. nestedAggs.aggs = nestedAggs.aggs || {};
  220. nestedAggs.aggs[aggDef.id] = esAgg;
  221. nestedAggs = esAgg;
  222. }
  223. nestedAggs.aggs = {};
  224. for (i = 0; i < target.metrics.length; i++) {
  225. metric = target.metrics[i];
  226. if (metric.type === 'count') {
  227. continue;
  228. }
  229. const aggField = {};
  230. let metricAgg = null;
  231. if (queryDef.isPipelineAgg(metric.type)) {
  232. if (queryDef.isPipelineAggWithMultipleBucketPaths(metric.type)) {
  233. if (metric.pipelineVariables) {
  234. metricAgg = {
  235. buckets_path: {},
  236. };
  237. for (j = 0; j < metric.pipelineVariables.length; j++) {
  238. pv = metric.pipelineVariables[j];
  239. if (pv.name && pv.pipelineAgg && /^\d*$/.test(pv.pipelineAgg)) {
  240. const appliedAgg = queryDef.findMetricById(target.metrics, pv.pipelineAgg);
  241. if (appliedAgg) {
  242. if (appliedAgg.type === 'count') {
  243. metricAgg.buckets_path[pv.name] = '_count';
  244. } else {
  245. metricAgg.buckets_path[pv.name] = pv.pipelineAgg;
  246. }
  247. }
  248. }
  249. }
  250. } else {
  251. continue;
  252. }
  253. } else {
  254. if (metric.pipelineAgg && /^\d*$/.test(metric.pipelineAgg)) {
  255. const appliedAgg = queryDef.findMetricById(target.metrics, metric.pipelineAgg);
  256. if (appliedAgg) {
  257. if (appliedAgg.type === 'count') {
  258. metricAgg = { buckets_path: '_count' };
  259. } else {
  260. metricAgg = { buckets_path: metric.pipelineAgg };
  261. }
  262. }
  263. } else {
  264. continue;
  265. }
  266. }
  267. } else {
  268. metricAgg = { field: metric.field };
  269. }
  270. for (const prop in metric.settings) {
  271. if (metric.settings.hasOwnProperty(prop) && metric.settings[prop] !== null) {
  272. metricAgg[prop] = metric.settings[prop];
  273. }
  274. }
  275. aggField[metric.type] = metricAgg;
  276. nestedAggs.aggs[metric.id] = aggField;
  277. }
  278. return query;
  279. }
  280. getTermsQuery(queryDef) {
  281. const query: any = {
  282. size: 0,
  283. query: {
  284. bool: {
  285. filter: [{ range: this.getRangeFilter() }],
  286. },
  287. },
  288. };
  289. if (queryDef.query) {
  290. query.query.bool.filter.push({
  291. query_string: {
  292. analyze_wildcard: true,
  293. query: queryDef.query,
  294. },
  295. });
  296. }
  297. let size = 500;
  298. if (queryDef.size) {
  299. size = queryDef.size;
  300. }
  301. query.aggs = {
  302. '1': {
  303. terms: {
  304. field: queryDef.field,
  305. size: size,
  306. order: {
  307. _term: 'asc',
  308. },
  309. },
  310. },
  311. };
  312. if (this.esVersion >= 60) {
  313. query.aggs['1'].terms.order = {
  314. _key: 'asc',
  315. };
  316. }
  317. return query;
  318. }
  319. }