# Spark DataFrame Basics

Spark DataFrames are the workhouse and main way of working with Spark and Python post Spark 2.0. DataFrames act as powerful versions of tables, with rows and columns, easily handling large datasets. The shift to DataFrames provides many advantages:
* **A much simpler syntax**
* **Ability to use SQL directly in the dataframe**
* **Operations are automatically distributed across RDDs**
    
If you've used R or even the pandas library with Python you are probably already familiar with the concept of DataFrames. Spark DataFrame expand on a lot of these concepts, allowing you to transfer that knowledge easily by understanding the simple syntax of Spark DataFrames. Remember that the main advantage to using Spark DataFrames vs those other programs is that **Spark can handle data across many RDDs, huge data sets that would never fit on a single computer**. That comes at a slight cost of some "peculiar" syntax choices, but after this course you will feel very comfortable with all those topics!

Let's get started!

## Creating a DataFrame

First we need to start a SparkSession:

In [None]:

df = spark.read.json('dbfs:/databricks-datasets/structured-streaming/events/file-0.json')

Then start the SparkSession

In [None]:
type(df)

Out[2]: pyspark.sql.dataframe.DataFrame

You will first need to get the data from a file (or connect to a large distributed file like HDFS, we'll talk about this later once we move to larger datasets on AWS EC2).

In [None]:
df.display()

action,time
Open,1469501107
Open,1469501147
Open,1469501202
Open,1469501219
Open,1469501225
Open,1469501234
Open,1469501245
Open,1469501246
Open,1469501248
Open,1469501256


In [None]:
df.summary()

Out[4]: DataFrame[summary: string, action: string, time: string]

#### Showing the data

In [None]:
df.columns

Out[5]: ['action', 'time']

In [None]:
df.describe()

Some data types make it easier to infer schema (like tabular formats such as csv which we will show later). 

However you often have to set the schema yourself if you aren't dealing with a .read method that doesn't have inferSchema() built-in.

Spark has all the tools you need for this, it just requires a very specific structure:

In [None]:
# necesitamos todas estas funciones para definir el Schema
from pyspark.sql.types import StructField, StringType, LongType, StructType


In [None]:
data_schema = [StructField('time', LongType(),True),
              StructField('action',StringType(),True)]

Next we need to create the list of Structure fields
* Param name: string, name of the field.
* Param dataType: :class:`DataType` of the field.
* Param nullable: boolean, whether the field can be null (None) or not.

In [None]:
final_struc = StructType(fields = data_schema)

In [None]:
df = spark.read.json('dbfs:/databricks-datasets/structured-streaming/events/file-0.json',schema = final_struc)

In [None]:
df.display()

time,action
1469501107,Open
1469501147,Open
1469501202,Open
1469501219,Open
1469501225,Open
1469501234,Open
1469501245,Open
1469501246,Open
1469501248,Open
1469501256,Open


In [None]:
df.printSchema()

root
 |-- time: long (nullable = true)
 |-- action: string (nullable = true)



### Grabbing the data

In [None]:
type(df['time'])

Multiple Columns:

In [None]:
df.select('time').display()

time
1469501107
1469501147
1469501202
1469501219
1469501225
1469501234
1469501245
1469501246
1469501248
1469501256


### Creating new columns

time,action
1469501107,Open
1469501147,Open
1469501202,Open
1469501219,Open
1469501225,Open
1469501234,Open
1469501245,Open
1469501246,Open
1469501248,Open
1469501256,Open


In [None]:
df.select('time', 'action')

More complicated operations to create new columns

In [None]:
df.withColumn('2xtime', df['time']*2).show()

In [None]:
df.withColumnRenamed('action','superaction').show()

We'll discuss much more complicated operations later on!

### Using SQL

To use SQL queries directly with the dataframe, you will need to register it to a temporary view:

In [None]:
df.createOrReplaceTempView("IoT")

In [None]:
sql_results = spark.sql('SELECT * FROM IoT')

We won't really be focusing on using the SQL syntax for this course in general, but keep in mind it is always there for you to get you out of bind quickly with your SQL skills!

In [None]:
sql_results.show(5)

Alright that is all we need to know for now!

In [None]:
spark.sql('SELECT * FROM IoT WHERE time < 1469501260').show(5)