# _all field
該?**_all?**字段是一個特殊的全能字段,它將所有其他字段的值連接成一個大字符串,使用空格作為分隔符,然后對其進行分詞和索引,但不存儲。 這意味著它可以被檢索,但不能取回。
該?**_all?**字段允許您在文檔中搜索,并不需要知道哪個字段包含該值。 這使得它成為開始使用新數據集時的有用選項。 例如 :?
|
`curl -XPUT?``'localhost:9200/my_index/user/1?pretty'`?`-H?``'Content-Type: application/json'`?`-d'?``# 1`
`{`
`"first_name"``:????``"John"``,`
`"last_name"``:?????``"Smith"``,`
`"date_of_birth"``:?``"1970-10-24"`
`}`
`'`
`curl -XGET?``'localhost:9200/my_index/_search?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"query"``: {`
`"match"``: {`
`"_all"``:?``"john smith 1970"`
`}`
`}`
`}`
`'`
|
|
1
|
該?_all 字段包含項: [?"john",?"smith",?"1970",?"10",?"24"?]
|
注意 :
所有值被視為字符串
上述示例中的?**date_of_birth**?字段被視為?**date?**字段,因此將索引表示**1970-10-24 00:00:00 UTC?**的單個項。 然而,**_all?**字段將所有值視為字符串,因此日期值被索引成三個字符串項 : “**1970**”,“**24**”,“**10**”。
注意,**_all**?字段將每個字段的原始值作為字符串組合。 它不會組合來自每個字段的項。
該?**_all**?字段是一個文本字段,并接受與其他字符串字段相同的參數,包括**analyzer**,**term_vectors**,**index_options?**和?**store**。
該?**_all**?字段是有用的,特別是當使用簡單的過濾來探索新的數據時。 但是,通過將字段值連接成一個大字符串,**_all**?字段將丟失短字段(更相關)和長字段(較不相關)之間的區別。 對于搜索相關性很重要的用例,最好專門查詢各個字段。
該?**_all**?字段并不輕量 : 它需要額外的?**CPU?**并使用更多的磁盤空間。 如果不需要,它可以完全禁用或個別字段定制。
### 在查詢中使用 _all 字段
**query_string**?和?**simple_query_string**?查詢默認查詢?**_all**?字段,除非指定了另一個字段 :?
|
`curl -XGET?``'localhost:9200/_search?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"query"``: {`
`"query_string"``: {`
`"query"``:?``"john smith 1970"`
`}`
`}`
`}`
`'`
|
同樣的在[URI搜索請求](https://www.elastic.co/guide/en/elasticsearch/reference/current/search-uri-request.html)中??q= parameter(內部改寫為query_string):?
|
`GET _search?q=john+smith+1970`
|
其他查詢(如?[match](https://www.elastic.co/guide/en/elasticsearch/reference/current/query-dsl-match-query.html)?和?[term](https://www.elastic.co/guide/en/elasticsearch/reference/current/query-dsl-term-query.html)?查詢)要求您按照?[第一個示例](https://www.elastic.co/guide/en/elasticsearch/reference/current/mapping-all-field.html)?顯式指定?**_all?**字段。
### 禁用 _all 字段
通過將?**enabled?**設置為?**false**,可以對?**_all?**字段完全禁用:
|
`curl -XPUT?``'localhost:9200/my_index?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"mappings"``: {`
`"type_1"``: {?``# 1`
`"properties"``: {...}`
`},`
`"type_2"``: {?``# 2`
`"_all"``: {`
`"enabled"``:?``false`
`},`
`"properties"``: {...}`
`}`
`}`
`}`
`'`
|
|
1
|
type_1 中的 _all 字段已啟用。
|
|
2
|
type_2 中的 _all 字段已完全禁用.
|
如果?**_all**?字段被禁用,則?**URI?**搜索請求和?**query_string?**和**simple_query_string?**查詢將無法將其用于查詢(請參閱在查詢中使用?**_all?**字段)。 您可以將它們配置為使用與?**index.query.default_field?**設置不同的字段 :?
|
`curl -XPUT?``'localhost:9200/my_index?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"mappings"``: {`
`"my_type"``: {`
`"_all"``: {`
`"enabled"``:?``false`?`# 1`
`},`
`"properties"``: {`
`"content"``: {`
`"type"``:?``"text"`
`}`
`}`
`}`
`},`
`"settings"``: {`
`"index.query.default_field"``:?``"content"`?`# 2`
`}`
`}`
`'`
|
|
1
|
_all字段對于my_type類型是禁用的。
|
|
2
|
query_string查詢將默認查詢此索引中的content字段。
|
### 排除 _all 的字段
可以使用?[include_in_all](https://www.elastic.co/guide/en/elasticsearch/reference/current/include-in-all.html)?設置從?**_all**?字段中包含或排除各個字段。
### 索引提升和 _all 字段
使用?[boost](https://www.elastic.co/guide/en/elasticsearch/reference/current/mapping-boost.html)?參數,索引時可以提升個別字段。?**_all**?字段考慮到這些提升 :?
|
`curl -XPUT?``'localhost:9200/myindex?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"mappings"``: {`
`"mytype"``: {`
`"properties"``: {`
`"title"``: {?``# 1`
`"type"``:?``"text"``,`
`"boost"``: 2`
`},`
`"content"``: {?``# 2`
`"type"``:?``"text"`
`}`
`}`
`}`
`}`
`}`
`'`
|
|
1 2
|
當查詢?**_all?**字段時,源于?**title?**字段的字符是源于?**content?**字段的字符的兩倍相關。
|
警告 :
使用?**_all?**字段的在索引時?**boost?**對查詢性能有顯著的影響。 通常更好的解決方案是單獨查詢字段,可在查詢時?**boost**。
### 自定義 _all 字段
雖然每個索引只有一個?**_all**?字段,但?**copy_to?**參數允許創建多個自定義?**_all?**字段。 例如,**first_name?**和?**last_name?**字段可以組合到?**full_name?**字段中 :?
|
`curl -XPUT?``'localhost:9200/myindex?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"mappings"``: {`
`"mytype"``: {`
`"properties"``: {`
`"first_name"``: {`
`"type"``:????``"text"``,`
`"copy_to"``:?``"full_name"`?`# 1`
`},`
`"last_name"``: {`
`"type"``:????``"text"``,`
`"copy_to"``:?``"full_name"`?`# 2`
`},`
`"full_name"``: {`
`"type"``:????``"text"`
`}`
`}`
`}`
`}`
`}`
`'`
`curl -XPUT?``'localhost:9200/myindex/mytype/1?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"first_name"``:?``"John"``,`
`"last_name"``:?``"Smith"`
`}`
`'`
`curl -XGET?``'localhost:9200/myindex/_search?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"query"``: {`
`"match"``: {`
`"full_name"``:?``"John Smith"`
`}`
`}`
`}`
`'`
|
|
1 2
|
**first_name?**和?**last_name?**值將復制到?**full_name?**字段。
|
### 高亮顯示和 _all 字段
如果原始字符串值可用,則字段只能用于?[高亮](https://www.elastic.co/guide/en/elasticsearch/reference/current/search-request-highlighting.html)?顯示,從?[_source](https://www.elastic.co/guide/en/elasticsearch/reference/current/mapping-source-field.html)?字段或作為存儲字段。
**_all**?字段不在?**_source?**字段中,默認情況下不存儲,因此無法高亮顯示。 有兩個選項。存儲[?_all?](https://www.elastic.co/guide/en/elasticsearch/reference/current/mapping-all-field.html#all-field-store)字段或高亮顯示?[原始字段?](https://www.elastic.co/guide/en/elasticsearch/reference/current/mapping-all-field.html#all-highlight-fields)。
### 存儲 _all 字段
如果存儲設置為?**true**,則可以檢索原始字段值,并且可以高亮顯示 :?
|
`curl -XPUT?``'localhost:9200/myindex?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"mappings"``: {`
`"mytype"``: {`
`"_all"``: {`
`"store"``:?``true`
`}`
`}`
`}`
`}`
`'`
`curl -XPUT?``'localhost:9200/myindex/mytype/1?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"first_name"``:?``"John"``,`
`"last_name"``:?``"Smith"`
`}`
`'`
`curl -XGET?``'localhost:9200/_search?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"query"``: {`
`"match"``: {`
`"_all"``:?``"John Smith"`
`}`
`},`
`"highlight"``: {`
`"fields"``: {`
`"_all"``: {}`
`}`
`}`
`}`
`'`
|
當然,存儲?**_all?**字段將使用更多的磁盤空間,因為由于它是其他字段的組合,所以可能會導致奇怪的高亮顯示結果。
**_all**?字段也接受?**term_vector?**和?**index_options?**參數,允許使用快速的矢量熒光筆和貼片熒光筆。
### 高亮顯示原始字段
您可以查詢?**_all**?字段,但使用原始字段進行高亮顯示,如下所示 :?
|
`curl -XPUT?``'localhost:9200/myindex?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"mappings"``: {`
`"mytype"``: {`
`"_all"``: {}`
`}`
`}`
`}`
`'`
`curl -XPUT?``'localhost:9200/myindex/mytype/1?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"first_name"``:?``"John"``,`
`"last_name"``:?``"Smith"`
`}`
`'`
`curl -XGET?``'localhost:9200/_search?pretty'`?`-H?``'Content-Type: application/json'`?`-d'`
`{`
`"query"``: {`
`"match"``: {`
`"_all"``:?``"John Smith"`?`# 1`
`}`
`},`
`"highlight"``: {`
`"fields"``: {`
`"*_name"``: {?``# 2`
`"require_field_match"``:?``false`?`# 3`
`}`
`}`
`}`
`}`
`'`
|
|
1
|
查詢檢查?**_all?**字段以查找匹配的文檔。
|
|
2
|
在?**_source?**可以使用的兩個名稱字段上執行高亮顯示。
|
|
3
|
該查詢未針對?**name?**字段運行,因此將?**require_field_match?**設置為**false**。
|
- 入門
- 基本概念
- 安裝
- 探索你的集群
- 集群健康
- 列出所有索引庫
- 創建一個索引庫
- 索引文檔創建與查詢
- 刪除一個索引庫
- 修改你的數據
- 更新文檔
- 刪除文檔
- 批量處理
- 探索你的數據
- 搜索API
- 查詢語言介紹
- 執行搜索
- 執行過濾
- 執行聚合
- 總結
- Elasticsearch設置
- 安裝Elasticsearch
- .zip或.tar.gz文件的安裝方式
- Install Elasticsearch with .zip on Windows
- Debian軟件包安裝方式
- RPM安裝方式
- Install Elasticsearch with Windows MSI Installer
- Docker安裝方式
- 配置Elasticsearch
- 安全配置
- 日志配置
- 重要的Elasticsearch配置
- 重要的系統配置
- 系統設置
- 在jvm.options中設置JVM堆大小
- 禁用swapping
- 文件描述符
- 虛擬內存
- 線程數
- DNS cache settings
- 啟動前檢查
- 堆大小檢查
- 文件描述符檢查
- 內存鎖定檢查
- 最大線程數檢查
- 最大虛擬內存檢查
- Max file size check
- 最大map數檢查
- JVM Client模式檢查
- 串行收集使用檢查
- 系統調用過濾檢查
- OnError與OnOutOfMemoryError檢查
- Early-access check
- G1GC檢查
- Elasticsearch停機
- Elasticsearch升級
- 滾動升級
- 全集群重啟升級
- 索引重建升級
- Set up X-Pack
- Installing X-Pack
- X-Pack Settings
- Watcher Settings
- Configuring Security
- Breaking changes in 6.0
- X-Pack Breaking Changes
- 重大變化
- 6.0的重大變化
- 聚合變化
- Cat API變化
- 客戶端變化
- 集群變化
- 文檔API變化
- 索引變化
- 預處理變化
- 映射變化
- Packaging變化
- Percolator變化
- 插件變化
- 索引重建變化
- 信息統計變化
- DSL查詢變化
- 設置變化
- 腳本變化
- API約定
- 多索引語法
- 索引庫名稱的日期運算
- 常用選項
- URL-based訪問控制
- 文檔APIs
- 讀寫文檔
- 索引接口
- Get接口
- Delete API
- Delete By Query API
- Update API
- Update By Query API
- Multi Get API
- Bulk API
- Reindex API
- Term Vectors
- Multi termvectors API
- ?refresh
- 搜索APIs
- Search
- URI Search
- Request Body Search
- Query
- From / Size
- Sort
- Source filtering
- Fields
- Script Fields
- Doc value Fields
- Post filter
- Highlighting
- Rescoring
- Search Type
- Scroll
- Preference
- Explain
- Version
- Index Boost
- min_score
- Named Queries
- Inner hits
- Field Collapsing
- Search After
- Search Template
- Multi Search Template
- Search Shards API
- Suggesters
- Term suggester
- Phrase Suggester
- Completion Suggester
- Context Suggester
- Returning the type of the suggester
- Multi Search API
- Count API
- Validate API
- Explain API
- Profile API
- Profiling Queries
- Profiling Aggregations
- Profiling Considerations
- Field Capabilities API
- Aggregations
- Metrics Aggregations
- 平均值聚合
- 值計數聚合(Value Count Aggregation)
- Cardinality Aggregation
- Extended Stats Aggregation
- 地理邊界聚合
- 地理重心聚合
- Max Aggregation
- Min Aggregation
- Percentiles Aggregation
- Percentile Ranks Aggregation
- Scripted Metric Aggregation
- Stats Aggregation
- Sum Aggregation
- Top hits Aggregation
- Value Count Aggregation
- Bucket Aggregations
- 鄰接矩陣聚合
- Children Aggregation
- Date Histogram Aggregation
- Date Range Aggregation
- Significant Terms Aggregation
- Filter Aggregation(過濾器聚合)
- Filters Aggregation
- Geo Distance Aggregation(地理距離聚合) 轉至元數據結尾
- GeoHash grid Aggregation(GeoHash網格聚合)
- Global Aggregation(全局聚合) 轉至元數據結尾
- Histogram Aggregation
- IP Range Aggregation(IP范圍聚合)
- Missing Aggregation
- Nested Aggregation(嵌套聚合)
- Range Aggregation(范圍聚合)
- Reverse nested Aggregation
- Sampler Aggregation
- Significant Terms Aggregation
- Significant Text Aggregation
- Terms Aggregation
- Pipeline Aggregations
- Avg Bucket Aggregation
- Derivative Aggregation(導數聚合)
- Max Bucket Aggregation
- Min Bucket Aggregation
- Sum Bucket Aggregation
- Stats Bucket Aggregation
- Extended Stats Bucket Aggregation(擴展信息桶聚合)
- Percentiles Bucket Aggregation(百分數桶聚合)
- Moving Average Aggregation
- Cumulative Sum Aggregation(累積匯總聚合)
- Bucket Script Aggregation(桶腳本聚合)
- Bucket Selector Aggregation(桶選擇器聚合)
- Serial Differencing Aggregation(串行差異聚合)
- Matrix Aggregations
- Matrix Stats
- Caching heavy aggregations
- Returning only aggregation results
- Aggregation Metadata
- Returning the type of the aggregation
- Indices APIs
- Create Index /創建索引
- Delete Index /刪除索引
- Get Index /獲取索引
- Indices Exists /索引存在
- Open / Close Index API /啟動關閉索引
- Shrink Index /縮小索引
- Rollover Index/滾動索引
- Put Mapping /提交映射
- Get Mapping /獲取映射
- Get Field Mapping /獲取字段映射
- Types Exists
- Index Aliases
- Update Indices Settings
- Get Settings
- Analyze
- Explain Analyze
- Index Templates
- 索引統計信息
- 索引段
- 索引恢復
- 索引分片存儲
- 清理緩存
- 刷新
- 同步刷新
- 重新加載
- 強制合并
- Cat APIs
- cat aliases
- cat allocation
- cat count
- cat fielddata
- cat health
- cat indices
- cat master
- cat nodeattrs
- cat nodes
- cat pending tasks
- cat plugins
- cat recovery
- cat repositories
- cat segments
- cat shards
- cat thread pool
- cat snapshots
- cat templates
- Cluster APIs
- 集群健康
- 集群狀態
- 集群統計
- 掛起的集群任務
- 集群重新路由
- Cluster Update Settings
- Nodes Stats
- Nodes Info
- Nodes Feature Usage
- Remote Cluster Info
- Task Management API
- Nodes hot_threads
- Cluster Allocation Explain API
- Query DSL
- 查詢context與過濾context
- Match All Query
- 全文搜索
- 匹配查詢
- 短語匹配查詢
- 短語前綴匹配查詢
- 多字段查詢
- 常用術語查詢
- 查詢語句查詢
- 簡單查詢語句
- Term level queries
- Term Query
- Terms Query
- Range Query
- Exists Query
- Prefix Query
- Wildcard Query
- Regexp Query
- Fuzzy Query
- Type Query
- Ids Query
- 復合查詢
- Constant Score 查詢
- Bool 查詢
- Dis Max 查詢
- Function Score 查詢
- Boosting 查詢
- Joining queries
- Has Child Query
- Has Parent Query
- Nested Query(嵌套查詢)
- Parent Id Query
- Geo queries
- GeoShape Query(地理形狀查詢)
- Geo Bounding Box Query(地理邊框查詢)
- Geo Distance Query(地理距離查詢)
- Geo Polygon Query(地理多邊形查詢)
- Specialized queries
- More Like This Query
- Script Query
- Percolate Query
- Span queries
- Span Term 查詢
- Span Multi Term 查詢
- Span First 查詢
- Span Near 查詢
- Span Or 查詢
- Span Not 查詢
- Span Containing 查詢
- Span Within 查詢
- Span Field Masking 查詢 轉至元數據結尾
- Minimum Should Match
- Multi Term Query Rewrite
- Mapping
- Removal of mapping types
- Field datatypes
- Array
- Binary
- Range
- Boolean
- Date
- Geo-point datatype
- Geo-Shape datatype
- IP datatype
- Keyword datatype
- Nested datatype
- Numeric datatypes
- Object datatype
- Text
- Token數
- 滲濾型
- join datatype
- Meta-Fields
- _all field
- _field_names field
- _id field
- _index field
- _meta field
- _routing field
- _source field
- _type field
- _uid field
- Mapping parameters
- analyzer(分析器)
- normalizer(歸一化)
- boost(提升)
- Coerce(強制類型轉換)
- copy_to(合并參數)
- doc_values(文檔值)
- dynamic(動態設置)
- enabled(開啟字段)
- eager_global_ordinals
- fielddata(字段數據)
- format (日期格式)
- ignore_above(忽略超越限制的字段)
- ignore_malformed(忽略格式不對的數據)
- index (索引)
- index_options(索引設置)
- fields(字段)
- Norms (標準信息)
- null_value(空值)
- position_increment_gap(短語位置間隙)
- properties (屬性)
- search_analyzer (搜索分析器)
- similarity (匹配方法)
- store(存儲)
- Term_vectors(詞根信息)
- Dynamic Mapping
- Dynamic field mapping(動態字段映射)
- Dynamic templates(動態模板)
- default mapping(mapping中的_default_)
- Analysis
- Anatomy of an analyzer(分析器的分析)
- Testing analyzers(測試分析器)
- Analyzers(分析器)
- Configuring built-in analyzers(配置內置分析器)
- Standard Analyzer(標準分析器)
- Simple Analyzer(簡單分析器)
- 空白分析器
- Stop Analyzer
- Keyword Analyzer
- 模式分析器
- 語言分析器
- 指紋分析器
- 自定義分析器
- Normalizers
- Tokenizers(分詞器)
- Standard Tokenizer(標準分詞器)
- Letter Tokenizer
- Lowercase Tokenizer (小寫分詞器)
- Whitespace Analyzer
- UAX URL Email Tokenizer
- Classic Tokenizer
- Thai Tokenizer(泰語分詞器)
- NGram Tokenizer
- Edge NGram Tokenizer
- Keyword Analyzer
- Pattern Tokenizer
- Simple Pattern Tokenizer
- Simple Pattern Split Tokenizer
- Path Hierarchy Tokenizer(路徑層次分詞器)
- Token Filters(詞元過濾器)
- Standard Token Filter
- ASCII Folding Token Filter
- Flatten Graph Token Filter
- Length Token Filter
- Lowercase Token Filter
- Uppercase Token Filter
- NGram Token Filter
- Edge NGram Token Filter
- Porter Stem Token Filter
- Shingle Token Filter
- Stop Token Filter
- Word Delimiter Token Filter
- Word Delimiter Graph Token Filter
- Stemmer Token Filter
- Stemmer Override Token Filter
- Keyword Marker Token Filter
- Keyword Repeat Token Filter
- KStem Token Filter
- Snowball Token Filter
- Phonetic Token Filter
- Synonym Token Filter
- Synonym Graph Token Filter
- Compound Word Token Filters
- Reverse Token Filter
- Elision Token Filter
- Truncate Token Filter
- Unique Token Filter
- Pattern Capture Token Filter
- Pattern Replace Token Filter
- Trim Token Filter
- Limit Token Count Token Filter
- Hunspell Token Filter
- Common Grams Token Filter
- Normalization Token Filter
- CJK Width Token Filter
- CJK Bigram Token Filter
- Delimited Payload Token Filter
- Keep Words Token Filter
- Keep Types Token Filter
- Classic Token Filter
- Apostrophe Token Filter
- Decimal Digit Token Filter
- Fingerprint Token Filter
- Minhash Token Filter
- Character Filters(字符過濾器)
- HTML Strip Character Filter
- Mapping Character Filter
- Pattern Replace Character Filter
- 模塊
- Cluster
- 集群級路由和碎片分配
- 基于磁盤的分片分配
- 分片分配awareness
- 分片分配過濾
- Miscellaneous cluster settings
- Scripting
- Painless Scripting Language
- Lucene Expressions Language
- Advanced scripts using script engines
- Snapshot And Restore
- Thread Pool
- Index Modules(索引模塊)
- 預處理節點
- Pipeline Definition
- Ingest APIs
- Put Pipeline API
- Get Pipeline API
- Delete Pipeline API
- Simulate Pipeline API
- Accessing Data in Pipelines
- Handling Failures in Pipelines
- Processors
- Monitoring Elasticsearch
- X-Pack APIs
- X-Pack Commands
- How To
- Testing(測試)
- Glossary of terms
- Release Notes
- X-Pack Release Notes