查询完全由查询的一部分组成的字符串

时间:2015-09-15 15:24:18

标签: elasticsearch

我有一个名为" lang"其中包含值" en_US"," en_GB"," ru_RU",e.t.c。使用此映射

"lang": {
    "type": "string",
        "index": "not_analyzed",
            "fields": {
               "raw": {
                  "type": "string",
                  "index": "not_analyzed",
                  "ignore_above": 256
               }
            }

如何过滤文件,例如来自"美国"?

1 个答案:

答案 0 :(得分:0)

您可以采用的一种方法是在上级字段中更改"index": "not_analyzed",然后为该字段设置pattern analyzer。由于您已经设置了"lang.raw"字段,因此您仍然可以获得未经修改的版面以进行分面或其他任何内容。

所以,为了测试它,我设置了一个这样的索引:

PUT /test_index
{
   "settings": {
      "number_of_shards": 1,
      "analysis": {
         "analyzer": {
            "whitespace_underscore": {
               "type": "pattern",
               "pattern": "[\\s_]+",
               "lowercase": false
            }
         }
      }
   },
   "mappings": {
      "doc": {
         "properties": {
            "name": {
               "type": "string"
            },
            "lang": {
               "type": "string",
               "index_analyzer": "whitespace_underscore", 
               "search_analyzer": "standard", 
               "fields": {
                  "raw": {
                     "type": "string",
                     "index": "not_analyzed",
                     "ignore_above": 256
                  }
               }
            }
         }
      }
   }
}

并添加了一些文档:

POST /test_index/doc/_bulk
{"index":{"_id":1}}
{"name":"doc1","lang":"en_US"}
{"index":{"_id":2}}
{"name":"doc2","lang":"en_GB"}
{"index":{"_id":3}}
{"name":"doc3","lang":"ru_RU"}

现在我可以按"US"进行过滤:

POST /test_index/_search
{
   "query": {
      "filtered": {
         "filter": {
            "term": {
               "lang": "US"
            }
         }
      }
   }
}
...
{
   "took": 1,
   "timed_out": false,
   "_shards": {
      "total": 1,
      "successful": 1,
      "failed": 0
   },
   "hits": {
      "total": 1,
      "max_score": 1,
      "hits": [
         {
            "_index": "test_index",
            "_type": "doc",
            "_id": "1",
            "_score": 1,
            "_source": {
               "name": "doc1",
               "lang": "en_US"
            }
         }
      ]
   }
}

我仍然可以通过"lang.raw"上的字词汇总获取值列表:

POST /test_index/_search?search_type=count
{
   "aggs": {
      "lang_terms": {
         "terms": {
            "field": "lang.raw"
         }
      }
   }
}
...
{
   "took": 2,
   "timed_out": false,
   "_shards": {
      "total": 1,
      "successful": 1,
      "failed": 0
   },
   "hits": {
      "total": 3,
      "max_score": 0,
      "hits": []
   },
   "aggregations": {
      "lang_terms": {
         "doc_count_error_upper_bound": 0,
         "sum_other_doc_count": 0,
         "buckets": [
            {
               "key": "en_GB",
               "doc_count": 1
            },
            {
               "key": "en_US",
               "doc_count": 1
            },
            {
               "key": "ru_RU",
               "doc_count": 1
            }
         ]
      }
   }
}

以下是我用来测试它的代码:

http://sense.qbox.io/gist/ac3f3fd66ea649c0c3a8010241d1f6981a7e012c