2013-08-28 19:24:34 -04:00
[[search-percolate]]
2013-10-16 08:12:19 -04:00
== Percolator
2013-08-28 19:24:34 -04:00
2015-05-06 14:33:58 -04:00
Traditionally you design documents based on your data, store them into an index, and then define queries via the search API
in order to retrieve these documents. The percolator works in the opposite direction. First you store queries into an
index and then, via the percolate API, you define documents in order to retrieve these queries.
2013-08-28 19:24:34 -04:00
2013-10-16 08:12:19 -04:00
The reason that queries can be stored comes from the fact that in Elasticsearch both documents and queries are defined in
2015-05-06 14:33:58 -04:00
JSON. This allows you to embed queries into documents via the index API. Elasticsearch can extract the query from a
document and make it available to the percolate API. Since documents are also defined as JSON, you can define a document
in a request to the percolate API.
2013-08-28 19:24:34 -04:00
2013-10-16 08:12:19 -04:00
The percolator and most of its features work in realtime, so once a percolate query is indexed it can immediately be used
2015-05-06 14:33:58 -04:00
in the percolate API.
2013-08-28 19:24:34 -04:00
2014-07-18 16:50:07 -04:00
[IMPORTANT]
=====================================
2015-05-06 14:33:58 -04:00
Fields referred to in a percolator query must *already* exist in the mapping
2014-12-11 12:20:20 -05:00
associated with the index used for percolation.
2014-07-18 16:50:07 -04:00
There are two ways to make sure that a field mapping exist:
* Add or update a mapping via the <<indices-create-index,create index>> or
2015-05-06 14:33:58 -04:00
<<indices-put-mapping,put mapping>> APIs.
2014-07-18 16:50:07 -04:00
* Percolate a document before registering a query. Percolating a document can
add field mappings dynamically, in the same way as happens when indexing a
document.
=====================================
2013-10-16 08:12:19 -04:00
[float]
2015-05-06 14:33:58 -04:00
=== Sample Usage
2013-08-28 19:24:34 -04:00
2014-07-18 16:50:07 -04:00
Create an index with a mapping for the field `message`:
[source,js]
--------------------------------------------------
curl -XPUT 'localhost:9200/my-index' -d '{
"mappings": {
"my-type": {
"properties": {
"message": {
"type": "string"
}
}
}
}
2014-11-20 05:57:47 -05:00
}'
2014-07-18 16:50:07 -04:00
--------------------------------------------------
Register a query in the percolator:
2013-08-28 19:24:34 -04:00
[source,js]
--------------------------------------------------
2013-11-05 14:02:59 -05:00
curl -XPUT 'localhost:9200/my-index/.percolator/1' -d '{
2013-08-28 19:24:34 -04:00
"query" : {
2013-10-16 08:12:19 -04:00
"match" : {
"message" : "bonsai tree"
2013-08-28 19:24:34 -04:00
}
}
}'
--------------------------------------------------
2014-07-18 16:50:07 -04:00
Match a document to the registered percolator queries:
2013-08-28 19:24:34 -04:00
[source,js]
--------------------------------------------------
2014-12-13 04:36:54 -05:00
curl -XGET 'localhost:9200/my-index/my-type/_percolate' -d '{
2013-08-28 19:24:34 -04:00
"doc" : {
2013-10-16 08:12:19 -04:00
"message" : "A new bonsai tree in the office"
2013-08-28 19:24:34 -04:00
}
}'
--------------------------------------------------
2013-10-16 08:12:19 -04:00
The above request will yield the following response:
[source,js]
--------------------------------------------------
{
"took" : 19,
"_shards" : {
"total" : 5,
"successful" : 5,
"failed" : 0
},
2014-01-20 11:27:51 -05:00
"total" : 1,
2014-07-18 16:50:07 -04:00
"matches" : [ <1>
2013-10-16 08:12:19 -04:00
{
2014-07-18 16:50:07 -04:00
"_index" : "my-index",
"_id" : "1"
2013-10-16 08:12:19 -04:00
}
]
}
--------------------------------------------------
2014-07-18 16:50:07 -04:00
<1> The percolate query with id `1` matches our document.
2013-10-16 08:12:19 -04:00
[float]
2015-05-06 14:33:58 -04:00
=== Indexing Percolator Queries
2013-10-16 08:12:19 -04:00
2013-11-01 06:44:07 -04:00
Percolate queries are stored as documents in a specific format and in an arbitrary index under a reserved type with the
2015-05-06 14:33:58 -04:00
name `.percolator`. The query itself is placed as is in a JSON object under the top level field `query`.
2013-10-16 08:12:19 -04:00
[source,js]
--------------------------------------------------
{
"query" : {
"match" : {
"field" : "value"
}
}
}
--------------------------------------------------
Since this is just an ordinary document, any field can be added to this document. This can be useful later on to only
percolate documents by specific queries.
2013-08-28 19:24:34 -04:00
[source,js]
--------------------------------------------------
2013-10-16 08:12:19 -04:00
{
"query" : {
"match" : {
"field" : "value"
}
},
"priority" : "high"
}
2013-08-28 19:24:34 -04:00
--------------------------------------------------
2015-05-06 14:33:58 -04:00
On top of this, also a mapping type can be associated with this query. This allows to control how certain queries
like range queries, shape filters, and other query & filters that rely on mapping settings get constructed. This is
2013-11-05 14:02:59 -05:00
important since the percolate queries are indexed into the `.percolator` type, and the queries / filters that rely on
2015-05-06 14:33:58 -04:00
mapping settings would yield unexpected behaviour. Note: By default, field names do get resolved in a smart manner,
but in certain cases with multiple types this can lead to unexpected behavior, so being explicit about it will help.
2013-08-28 19:24:34 -04:00
[source,js]
--------------------------------------------------
2013-10-16 08:12:19 -04:00
{
"query" : {
"range" : {
"created_at" : {
"gte" : "2010-01-01T00:00:00",
"lte" : "2011-01-01T00:00:00"
}
}
},
"type" : "tweet",
"priority" : "high"
}
--------------------------------------------------
2015-05-06 14:33:58 -04:00
In the above example the range query really gets parsed into a Lucene numeric range query, based on the settings for
2013-10-16 08:12:19 -04:00
the field `created_at` in the type `tweet`.
2015-05-06 14:33:58 -04:00
Just as with any other type, the `.percolator` type has a mapping, which you can configure via the mappings APIs.
The default percolate mapping doesn't index the query field, only stores it.
2013-10-16 08:12:19 -04:00
2013-11-05 14:02:59 -05:00
Because `.percolate` is a type it also has a mapping. By default the following mapping is active:
2013-10-16 08:12:19 -04:00
[source,js]
--------------------------------------------------
{
2013-11-05 14:02:59 -05:00
".percolator" : {
2013-10-16 08:12:19 -04:00
"properties" : {
"query" : {
"type" : "object",
"enabled" : false
}
}
}
}
--------------------------------------------------
2015-05-06 14:33:58 -04:00
If needed, this mapping can be modified with the update mapping API.
2013-10-16 08:12:19 -04:00
2015-05-06 14:33:58 -04:00
In order to un-register a percolate query the delete API can be used. So if the previous added query needs to be deleted
2013-10-16 08:12:19 -04:00
the following delete requests needs to be executed:
[source,js]
--------------------------------------------------
2013-11-05 14:02:59 -05:00
curl -XDELETE localhost:9200/my-index/.percolator/1
2013-08-28 19:24:34 -04:00
--------------------------------------------------
[float]
2015-05-06 14:33:58 -04:00
=== Percolate API
2013-10-16 08:12:19 -04:00
2015-05-06 14:33:58 -04:00
The percolate API executes in a distributed manner, meaning it executes on all shards an index points to.
2013-08-28 19:24:34 -04:00
2013-10-16 08:12:19 -04:00
.Required options
2013-11-05 14:02:59 -05:00
* `index` - The index that contains the `.percolator` type. This can also be an alias.
2013-10-16 08:12:19 -04:00
* `type` - The type of the document to be percolated. The mapping of that type is used to parse document.
2015-05-06 14:33:58 -04:00
* `doc` - The actual document to percolate. Unlike the other two options this needs to be specified in the request body. Note: This isn't required when percolating an existing document.
2013-08-28 19:24:34 -04:00
[source,js]
--------------------------------------------------
2013-10-16 08:12:19 -04:00
curl -XGET 'localhost:9200/twitter/tweet/_percolate' -d '{
"doc" : {
"created_at" : "2010-10-10T00:00:00",
"message" : "some text"
}
2013-08-28 19:24:34 -04:00
}'
--------------------------------------------------
2013-10-16 08:12:19 -04:00
.Additional supported query string options
2015-02-20 15:26:42 -05:00
* `routing` - In case the percolate queries are partitioned by a custom routing value, that routing option makes sure
2013-11-01 06:44:07 -04:00
that the percolate request only gets executed on the shard where the routing value is partitioned to. This means that
2013-10-16 08:12:19 -04:00
the percolate request only gets executed on one shard instead of all shards. Multiple values can be specified as a
2013-11-01 06:44:07 -04:00
comma separated string, in that case the request can be be executed on more than one shard.
2015-05-06 14:33:58 -04:00
* `preference` - Controls which shard replicas are preferred to execute the request on. Works the same as in the search API.
* `ignore_unavailable` - Controls if missing concrete indices should silently be ignored. Same as is in the search API.
2013-10-16 08:12:19 -04:00
* `percolate_format` - If `ids` is specified then the matches array in the percolate response will contain a string
2014-04-10 09:35:05 -04:00
array of the matching ids instead of an array of objects. This can be useful to reduce the amount of data being send
2015-05-18 20:53:29 -04:00
back to the client. Obviously if there are two percolator queries with same id from different indices there is no way
to find out which percolator query belongs to what index. Any other value to `percolate_format` will be ignored.
2013-10-16 08:12:19 -04:00
.Additional request body options
* `filter` - Reduces the number queries to execute during percolating. Only the percolator queries that match with the
filter will be included in the percolate execution. The filter option works in near realtime, so a refresh needs to have
occurred for the filter to included the latest percolate queries.
* `query` - Same as the `filter` option, but also the score is computed. The computed scores can then be used by the
2014-01-06 07:53:15 -05:00
`track_scores` and `sort` option.
2013-10-16 08:12:19 -04:00
* `size` - Defines to maximum number of matches (percolate queries) to be returned. Defaults to unlimited.
2014-10-16 12:46:24 -04:00
* `track_scores` - Whether the `_score` is included for each match. The `_score` is based on the query and represents
how the query matched the *percolate query's metadata*, *not* how the document (that is being percolated) matched
the query. The `query` option is required for this option. Defaults to `false`.
2015-05-06 14:33:58 -04:00
* `sort` - Define a sort specification like in the search API. Currently only sorting `_score` reverse (default relevancy)
2014-01-06 08:54:44 -05:00
is supported. Other sort fields will throw an exception. The `size` and `query` option are required for this setting. Like
`track_score` the score is based on the query and represents how the query matched to the percolate query's metadata
and *not* how the document being percolated matched to the query.
2013-12-10 08:09:37 -05:00
* `aggs` - Allows aggregation definitions to be included. The aggregations are based on the matching percolator queries,
look at the aggregation documentation on how to define aggregations.
2013-10-16 08:12:19 -04:00
* `highlight` - Allows highlight definitions to be included. The document being percolated is being highlight for each
matching query. This allows you to see how each match is highlighting the document being percolated. See highlight
2013-12-07 16:40:49 -05:00
documentation on how to define highlights. The `size` option is required for highlighting, the performance of highlighting
2015-05-06 14:33:58 -04:00
in the percolate API depends of how many matches are being highlighted.
2013-10-16 08:12:19 -04:00
[float]
2015-05-06 14:33:58 -04:00
=== Dedicated Percolator Index
2013-10-16 08:12:19 -04:00
Percolate queries can be added to any index. Instead of adding percolate queries to the index the data resides in,
2015-02-20 15:26:42 -05:00
these queries can also be added to a dedicated index. The advantage of this is that this dedicated percolator index
2015-05-06 14:33:58 -04:00
can have its own index settings (For example the number of primary and replica shards). If you choose to have a dedicated
2013-10-16 08:12:19 -04:00
percolate index, you need to make sure that the mappings from the normal index are also available on the percolate index.
Otherwise percolate queries can be parsed incorrectly.
[float]
=== Filtering Executed Queries
2015-05-06 14:33:58 -04:00
Filtering allows to reduce the number of queries, any filter that the search API supports, (except the ones mentioned in important notes)
can also be used in the percolate API. The filter only works on the metadata fields. The `query` field isn't indexed by
default. Based on the query we indexed before, the following filter can be defined:
2013-08-28 19:24:34 -04:00
[source,js]
--------------------------------------------------
curl -XGET localhost:9200/test/type1/_percolate -d '{
"doc" : {
2013-10-16 08:12:19 -04:00
"field" : "value"
2013-08-28 19:24:34 -04:00
},
2013-10-16 08:12:19 -04:00
"filter" : {
2013-08-28 19:24:34 -04:00
"term" : {
2013-10-16 08:12:19 -04:00
"priority" : "high"
2013-08-28 19:24:34 -04:00
}
}
}'
--------------------------------------------------
[float]
2015-05-06 14:33:58 -04:00
=== Percolator Count API
2013-10-16 08:12:19 -04:00
2015-05-06 14:33:58 -04:00
The count percolate API, only keeps track of the number of matches and doesn't keep track of the actual matches
2013-10-16 08:12:19 -04:00
Example:
[source,js]
--------------------------------------------------
curl -XGET 'localhost:9200/my-index/my-type/_percolate/count' -d '{
"doc" : {
"message" : "some message"
}
}'
--------------------------------------------------
Response:
[source,js]
--------------------------------------------------
{
... // header
"total" : 3
}
--------------------------------------------------
[float]
2015-05-06 14:33:58 -04:00
=== Percolating an Existing Document
2013-10-16 08:12:19 -04:00
2015-05-06 14:33:58 -04:00
In order to percolate a newly indexed document, the percolate existing document can be used. Based on the response
from an index request, the `_id` and other meta information can be used to immediately percolate the newly added
2013-10-16 08:12:19 -04:00
document.
.Supported options for percolating an existing document on top of existing percolator options:
* `id` - The id of the document to retrieve the source for.
* `percolate_index` - The index containing the percolate queries. Defaults to the `index` defined in the url.
* `percolate_type` - The percolate type (used for parsing the document). Default to `type` defined in the url.
* `routing` - The routing value to use when retrieving the document to percolate.
* `preference` - Which shard to prefer when retrieving the existing document.
* `percolate_routing` - The routing value to use when percolating the existing document.
* `percolate_preference` - Which shard to prefer when executing the percolate request.
* `version` - Enables a version check. If the fetched document's version isn't equal to the specified version then the request fails with a version conflict and the percolation request is aborted.
2015-05-06 14:33:58 -04:00
Internally the percolate API will issue a GET request for fetching the `_source` of the document to percolate.
For this feature to work, the `_source` for documents to be percolated needs to be stored.
2013-10-16 08:12:19 -04:00
[float]
==== Example
Index response:
[source,js]
--------------------------------------------------
{
"_index" : "my-index",
"_type" : "message",
"_id" : "1",
2014-01-16 06:01:39 -05:00
"_version" : 1,
"created" : true
2013-10-16 08:12:19 -04:00
}
--------------------------------------------------
2015-05-06 14:33:58 -04:00
Percolating an Existing Document:
2013-10-16 08:12:19 -04:00
[source,js]
--------------------------------------------------
curl -XGET 'localhost:9200/my-index1/message/1/_percolate'
--------------------------------------------------
2015-05-06 14:33:58 -04:00
The response is the same as with the regular percolate API.
2013-10-16 08:12:19 -04:00
[float]
2015-05-06 14:33:58 -04:00
=== Multi Percolate API
2013-10-16 08:12:19 -04:00
2015-05-06 14:33:58 -04:00
The multi percolate API allows to bundle multiple percolate requests into a single request, similar to what the multi
search API does to search requests. The request body format is line based. Each percolate request item takes two lines,
2013-10-16 08:12:19 -04:00
the first line is the header and the second line is the body.
2014-10-16 13:02:03 -04:00
The header can contain any parameter that normally would be set via the request path or query string parameters.
There are several percolate actions, because there are multiple types of percolate requests.
2013-10-16 08:12:19 -04:00
.Supported actions:
* `percolate` - Action for defining a regular percolate request.
* `count` - Action for defining a count percolate request.
Depending on the percolate action different parameters can be specified. For example the percolate and percolate existing
document actions support different parameters.
.The following endpoints are supported
2014-05-30 05:55:20 -04:00
* `GET|POST /[index]/[type]/_mpercolate`
* `GET|POST /[index]/_mpercolate`
* `GET|POST /_mpercolate`
2013-10-16 08:12:19 -04:00
The `index` and `type` defined in the url path are the default index and type.
[float]
==== Example
Request:
[source,js]
--------------------------------------------------
curl -XGET 'localhost:9200/twitter/tweet/_mpercolate' --data-binary @requests.txt; echo
--------------------------------------------------
2015-05-06 14:33:58 -04:00
The index `twitter` is the default index, and the type `tweet` is the default type and will be used in the case a header
2013-10-16 08:12:19 -04:00
doesn't specify an index or type.
requests.txt:
[source,js]
--------------------------------------------------
2014-10-21 05:33:07 -04:00
{"percolate" : {"index" : "twitter", "type" : "tweet"}}
2013-10-16 08:12:19 -04:00
{"doc" : {"message" : "some text"}}
2014-10-21 05:33:07 -04:00
{"percolate" : {"index" : "twitter", "type" : "tweet", "id" : "1"}}
2013-10-16 08:12:19 -04:00
{}
2014-10-21 05:33:07 -04:00
{"percolate" : {"index" : "users", "type" : "user", "id" : "3", "percolate_index" : "users_2012" }}
2013-10-16 08:12:19 -04:00
{"size" : 10}
2014-10-21 05:33:07 -04:00
{"count" : {"index" : "twitter", "type" : "tweet"}}
2013-10-16 08:12:19 -04:00
{"doc" : {"message" : "some other text"}}
2014-10-21 05:33:07 -04:00
{"count" : {"index" : "twitter", "type" : "tweet", "id" : "1"}}
2013-10-16 08:12:19 -04:00
{}
--------------------------------------------------
2015-05-06 14:33:58 -04:00
For a percolate existing document item (headers with the `id` field), the response can be an empty JSON object.
2013-10-16 08:12:19 -04:00
All the required options are set in the header.
Response:
[source,js]
--------------------------------------------------
{
2015-03-29 11:02:04 -04:00
"responses" : [
2013-10-16 08:12:19 -04:00
{
"took" : 24,
"_shards" : {
"total" : 5,
"successful" : 5,
"failed" : 0,
},
"total" : 3,
2015-03-29 11:02:04 -04:00
"matches" : [
{
"_index": "twitter",
"_id": "1"
},
{
"_index": "twitter",
"_id": "2"
},
{
"_index": "twitter",
"_id": "3"
}
]
2013-10-16 08:12:19 -04:00
},
{
"took" : 12,
"_shards" : {
"total" : 5,
"successful" : 5,
"failed" : 0,
},
"total" : 3,
2015-03-29 11:02:04 -04:00
"matches" : [
{
"_index": "twitter",
"_id": "4"
},
{
"_index": "twitter",
"_id": "5"
},
{
"_index": "twitter",
"_id": "6"
}
]
2013-10-16 08:12:19 -04:00
},
{
2015-03-29 11:02:04 -04:00
"error" : "DocumentMissingException[[_na][_na] [user][3]: document missing]"
2013-10-16 08:12:19 -04:00
},
{
"took" : 12,
"_shards" : {
"total" : 5,
"successful" : 5,
"failed" : 0,
},
"total" : 3
},
{
"took" : 14,
"_shards" : {
"total" : 5,
"successful" : 5,
"failed" : 0,
},
"total" : 3
}
]
}
2015-03-29 11:02:04 -04:00
2013-10-16 08:12:19 -04:00
--------------------------------------------------
2014-10-16 13:02:03 -04:00
Each item represents a percolate response, the order of the items maps to the order in which the percolate requests
2013-10-16 08:12:19 -04:00
were specified. In case a percolate request failed, the item response is substituted with an error message.
[float]
2015-05-06 14:33:58 -04:00
=== How it Works Under the Hood
2013-10-16 08:12:19 -04:00
2015-05-06 14:33:58 -04:00
When indexing a document that contains a query in an index and the `.percolator` type, the query part of the documents gets
2013-10-16 08:12:19 -04:00
parsed into a Lucene query and is kept in memory until that percolator document is removed or the index containing the
2015-05-06 14:33:58 -04:00
`.percolator` type gets removed. So, all the active percolator queries are kept in memory.
2013-10-16 08:12:19 -04:00
2015-05-06 14:33:58 -04:00
At percolate time, the document specified in the request gets parsed into a Lucene document and is stored in a in-memory
2013-10-16 08:12:19 -04:00
Lucene index. This in-memory index can just hold this one document and it is optimized for that. Then all the queries
2015-05-06 14:33:58 -04:00
that are registered to the index that the percolate request is targeted for, are going to be executed on this single document
2015-02-20 15:26:42 -05:00
in-memory index. This happens on each shard the percolate request needs to execute.
2013-10-16 08:12:19 -04:00
By using `routing`, `filter` or `query` features the amount of queries that need to be executed can be reduced and thus
2015-05-06 14:33:58 -04:00
the time the percolate API needs to run can be decreased.
2013-10-16 08:12:19 -04:00
[float]
2015-05-06 14:33:58 -04:00
=== Important Notes
2013-10-16 08:12:19 -04:00
Because the percolator API is processing one document at a time, it doesn't support queries and filters that run
2015-05-07 03:59:12 -04:00
against child documents such as `has_child` and `has_parent`.
2013-10-16 08:12:19 -04:00
The `wildcard` and `regexp` query natively use a lot of memory and because the percolator keeps the queries into memory
this can easily take up the available memory in the heap space. If possible try to use a `prefix` query or ngramming to
achieve the same result (with way less memory being used).
2015-05-06 14:33:58 -04:00
The delete-by-query API doesn't work to unregister a query, it only deletes the percolate documents from disk. In order
2013-10-30 08:59:03 -04:00
to update the registered queries in memory the index needs be closed and opened.
2014-12-23 23:31:42 -05:00
[float]
2015-05-06 14:33:58 -04:00
=== Forcing Unmapped Fields to be Handled as Strings
2014-12-23 23:31:42 -05:00
2015-05-06 14:33:58 -04:00
In certain cases it is unknown what kind of percolator queries do get registered, and if no field mapping exists for fields
2014-12-23 23:31:42 -05:00
that are referred by percolator queries then adding a percolator query fails. This means the mapping needs to be updated
2015-05-06 14:33:58 -04:00
to have the field with the appropriate settings, and then the percolator query can be added. But sometimes it is sufficient
2014-12-23 23:31:42 -05:00
if all unmapped fields are handled as if these were default string fields. In those cases one can configure the
`index.percolator.map_unmapped_fields_as_string` setting to `true` (default to `false`) and then if a field referred in
2015-05-06 14:33:58 -04:00
a percolator query does not exist, it will be handled as a default string field so that adding the percolator query doesn't
2015-02-20 15:26:42 -05:00
fail.