System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) · Leçon

Langage de requête Elasticsearch (DSL)

Plongez dans le puissant DSL de requête Elasticsearch pour récupérer et agréger des données complexes. Apprenez à formuler des requêtes de recherche avancées.

Leçon 1 sur 412 étapes

Langage de requête Elasticsearch (DSL) est une leçon System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) gratuite sur CoddyKit. Ceci est la leçon 1 sur 4. Tu peux lire la leçon complète ci-dessous gratuitement — puis la pratiquer en direct dans le navigateur avec un éditeur de code intégré et un tuteur IA 24/7. Elle fait partie du parcours d'apprentissage System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry), et ta progression se synchronise sur le web et l'application CoddyKit. Le cours System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) comprend 4 leçons au total.

Certaines parties de cette leçon n'ont pas encore été traduites et s'affichent en anglais.

Unlocking Elasticsearch Query Power

Welcome to the world of Elasticsearch Query DSL! DSL stands for Domain Specific Language. It's the powerful, flexible way to search and analyze data in Elasticsearch.

Instead of simple keywords, DSL lets you build complex queries using a JSON-based structure. This gives you fine-grained control over how your data is found and processed.

Basic Text Search: Match Query

The match query is your go-to for full-text searches. It analyzes the search text and the field content, making it great for finding relevant documents even with slight variations.

Here's how to find products containing the word 'laptop':

{
  "query": {
    "match": {
      "product_name": "laptop"
    }
  }
}

Exact Phrase Search: Match Phrase

Sometimes you need to find an exact sequence of words. That's where the match_phrase query comes in handy. It ensures all words in your query appear in the field, in the specified order.

Let's search for the exact phrase 'high performance' in a product description:

{
  "query": {
    "match_phrase": {
      "description": "high performance"
    }
  }
}

Exact Value Search: Term Query

The term query is used for finding exact values in fields that are not analyzed, like keywords, numbers, or dates. It won't break down your search term into individual words.

This is perfect for filtering by specific IDs, statuses, or categories. Note the .keyword suffix, often used for exact string matching:

{
  "query": {
    "term": {
      "status.keyword": "active"
    }
  }
}

Filtering by Range: Range Query

Need to find documents within a specific numerical or date range? The range query is what you need. It supports operators like gte (greater than or equal), gt (greater than), lte (less than or equal), and lt (less than).

Find products priced between $100 and $500:

{
  "query": {
    "range": {
      "price": {
        "gte": 100,
        "lte": 500
      }
    }
  }
}

Combining Queries: Boolean Logic

The bool query is the most powerful way to combine multiple queries using boolean logic:

  • must: All queries must match.
  • should: At least one query should match (influences relevance score).
  • must_not: Queries must not match.
  • filter: Queries must match, but don't affect the relevance score (good for caching).

Boolean Query in Action

Let's find 'electronics' products priced under $1000, but specifically exclude any from the 'obsolete' brand. Notice how filter is used for the price range, as it doesn't need to contribute to the score.

{
  "query": {
    "bool": {
      "must": [
        { "match": { "category": "electronics" } }
      ],
      "filter": [
        { "range": { "price": { "lte": 1000 } } }
      ],
      "must_not": [
        { "match": { "brand": "obsolete" } }
      ]
    }
  }
}

Beyond Search: Aggregations

Elasticsearch DSL isn't just for searching; it's also for powerful analytics using aggregations. Aggregations allow you to group your data, calculate metrics, and gain insights from large datasets.

Think of them like the GROUP BY clause in SQL, but much more flexible and efficient for large-scale data.

Grouping Data: Terms Aggregation

The terms aggregation is used to group documents by the values of a specific field, similar to facets. It's great for understanding the distribution of data, like finding the most popular categories or brands.

Here's how to get the top 5 product categories:

{
  "aggs": {
    "top_categories": {
      "terms": {
        "field": "category.keyword",
        "size": 5
      }
    }
  }
}

Calculating Metrics: Avg Aggregation

Metric aggregations compute statistics over numeric fields. Common examples include avg, sum, min, max, and count.

You can combine them with terms aggregations to get statistics per group. Let's find the average price for each product category:

{
  "aggs": {
    "avg_price_by_category": {
      "terms": {
        "field": "category.keyword"
      },
      "aggs": {
        "average_price": {
          "avg": {
            "field": "price"
          }
        }
      }
    }
  }
}

Quick Check on Queries

You want to find all documents where the status field is exactly 'pending' AND the priority is 'high'. Which combination of queries would you primarily use?

Recap: DSL's Power Unleashed

Congratulations! You've dived into the powerful world of Elasticsearch Query DSL.

  • You learned how to use match and match_phrase for text searching.
  • You explored term for exact value lookups and range for filtering.
  • You mastered combining queries with the flexible bool query.
  • And you got an introduction to aggregations like terms and avg for deep data analysis.

Keep exploring the DSL to unlock even more insights from your data!

Gratuit pour commencer

Apprends System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) avec un tuteur IA — gratuit

Écris et exécute du vrai code dans ton navigateur, obtiens de l'aide instantanée d'un tuteur IA disponible 24h/24, et reprends là où tu t'es arrêté sur le web ou dans l'app.

Cours
12
Leçons
48

Questions Fréquemment Posées

La leçon « Langage de requête Elasticsearch (DSL) » est-elle gratuite ?

Oui — le texte complet de « Langage de requête Elasticsearch (DSL) » est gratuit à lire ici sur le web. Pour la pratiquer de manière interactive (un éditeur de code intégré et un tuteur IA 24/7) et déverrouiller le reste du cours System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry), passe à CoddyKit PRO. Le cours System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) comprend 4 leçons au total.

Qu'est-ce que j'apprendrai dans « Langage de requête Elasticsearch (DSL) » ?

Plongez dans le puissant DSL de requête Elasticsearch pour récupérer et agréger des données complexes. Apprenez à formuler des requêtes de recherche avancées. Tu pratiques System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) avec du code pratique que tu exécutes directement dans le navigateur, et un tuteur IA 24/7 répond à tes questions au fur et à mesure que tu avances dans la leçon.

Dois-je avoir de l'expérience pour commencer System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) ?

Aucune expérience préalable n'est requise. System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) sur CoddyKit est structuré pour les débutants jusqu'aux apprenants avancés, donc tu peux commencer ici ou depuis le début et avancer à ton rythme. Ceci est la leçon 1 sur 4.

Combien de temps prend la leçon « Langage de requête Elasticsearch (DSL) » ?

La plupart des leçons CoddyKit prennent environ 5–10 minutes. Chacune est courte et interactive, tu progresses régulièrement et tu repiques exactement où tu t'es arrêté sur le web et l'app.

Peux-tu écrire et exécuter du code dans cette leçon System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) ?

Oui. Chaque leçon System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry) inclut un éditeur de code intégré, tu écris et exécutes du vrai code directement dans ton navigateur et tu reçois des retours IA instantanés — aucune configuration locale requise.

Toutes les leçons de ce cours

  1. Langage de requête Elasticsearch (DSL)
  2. Filtres et chaînes de traitement Logstash
  3. Discover et Lens dans Kibana
  4. Gestion du cycle de vie des index (ILM)
← Retour à System Observability: Logging, Metrics & Tracing (ELK + OpenTelemetry)