我的 flex 搜寻资料看起来像

{
  "took": 12,
  "timed_out": false,
  "_shards": {
    "total": 5,
    "successful": 5,
    "failed": 0
  },
  "hits": {
    "total": 2,
    "max_score": 1,
    "hits": [
      {
        "_index": "eswar",
        "_type": "azure",
        "_id": "AV6y005oafdLlkt7Fe-R",
        "_score": 1,
        "_source": {
          "costs": [
            {
              "cost": 3.6,
              "endDate": "2017-02-15T00:00:00+00:00",
              "startDate": "2017-02-14T00:00:00+00:00"
            },
            {
              "cost": 2,
              "endDate": "2017-02-14T00:00:00+00:00",
              "startDate": "2017-02-13T00:00:00+00:00"
            }
          ],
          "externalUUID": "/subscriptions/9ee6993f-a036-4118-9eab-c66d9fda1ef3/resourceGroups/VISTARAGATEWAYIMAGE/providers/Microsoft.Compute/disks/VistaraGateway01_disk1_ec7798e17f934e6483ed5d2490e80d98",
          "clientId": 154,
          "region": "useast",
          "cloudProviderId": 57063
        }
      },
      {
        "_index": "eswar",
        "_type": "azure",
        "_id": "AV6y00rmafdLlkt7Fe-Q",
        "_score": 1,
        "_source": {
          "costs": [
            {
              "cost": 0,
              "endDate": "2017-02-14T00:00:00+00:00",
              "startDate": "2017-02-13T00:00:00+00:00"
            },
            {
              "cost": 3,
              "endDate": "2017-02-17T00:00:00+00:00",
              "startDate": "2017-02-16T00:00:00+00:00"
            }
          ],
          "externalUUID": "/subscriptions/9ee6993f-a036-4118-9eab-c66d9fda1ef3/resourceGroups/vistaragatewayimage/providers/Microsoft.Compute/virtualMachines/VistaraGateway",
          "clientId": 154,
          "region": "eastus",
          "cloudProviderId": 57063
        }
      }
    ]
  }
}

我想获得costs.cost:3.6作为聚合结果,但是我得到的结果是5
我怎样才能过滤数组中的数据?
 RangeQueryBuilder startDateRQB = QueryBuilders.rangeQuery("costs.startDate").gte("2017-02-14T00:00:00+00:00");
        RangeQueryBuilder endDateRQB = QueryBuilders.rangeQuery("costs.endDate").lte("2017-02-15T00:00:00+00:00");
        RegexpQueryBuilder deviceNameREQB= QueryBuilders.regexpQuery("region", "useast.*");
        BoolQueryBuilder bQB=QueryBuilders.boolQuery().must(deviceNameREQB).must(startDateRQB).must(endDateRQB);
        BoolQueryBuilder sQB=QueryBuilders.boolQuery().must(startDateRQB).must(endDateRQB);
        SearchResponse response = client.prepareSearch(index).setQuery(bQB).addAggregation(AggregationBuilders.sum("Totalcost").field("costs.cost")).execute().actionGet();
        Sum sum=response.getAggregations().get("Totalcost");
        double cost=sum.getValue();
        System.out.println(cost);

最佳答案

我建议您将costs定义为嵌套对象。
然后,您将可以在内部数据(嵌套文档)上添加条件。

这种方法可以为您的查询提供广泛的可能性。

看一下以下解决方案:

{
  "size": 0,
  "aggregations": {
    "costs_agg": {
      "nested": {
        "path": "costs"
      },
      "aggregations": {
        "bool_agg": {
          "must": [
            {
              "range": {
                "costs.startDate": {
                  "gte": "2017-02-14T00:00:00+00:00"
                }
              }
            },
            {
              "range": {
                "costs.endDate": {
                  "lte": "2017-02-15T00:00:00+00:00"
                }
              }
            },
            {
              "wildcard": {
                "costs.region": "useast.*"
              }
            }
          ]
        },
        "aggregations": {
          "cost_sum_agg": {
            "sum": {
              "field": "costs.cost"
            }
          }
        }
      }
    }
  }
}

让我解释一下每个聚合(按其名称):
  • costs_agg:嵌套聚合以深入成本范围
  • bool_agg:在嵌套对象上进行聚合的东西就是这样,聚合之上的查询不会被嵌套对象过滤。此处的解决方案是在聚合本身
  • 内过滤所需的嵌套文档
  • cost_sum_agg:最终总和

  • 希望能帮助到你。

    08-04 04:18