#### after week 11

In [1]:
import json
from pyspark.sql import Row
from pyspark.sql.functions import udf

In [2]:
@udf('string')
def munge_event(event_as_json):
    event = json.loads(event_as_json)
    event['Host'] = "moe"
    event['Cache-Control'] = "no-cache"
    return json.dumps(event)

In [3]:
spark

In [4]:
raw_events = spark \
        .read \
        .format("kafka") \
        .option("kafka.bootstrap.servers", "kafka:29092") \
        .option("subscribe", "events") \
        .option("startingOffsets", "earliest") \
        .option("endingOffsets", "latest") \
        .load()


In [5]:
raw_events.show()

+----+--------------------+------+---------+------+--------------------+-------------+
| key|               value| topic|partition|offset|           timestamp|timestampType|
+----+--------------------+------+---------+------+--------------------+-------------+
|null|[7B 22 48 6F 73 7...|events|        0|     0|2020-11-06 01:36:...|            0|
|null|[7B 22 48 6F 73 7...|events|        0|     1|2020-11-06 01:36:...|            0|
|null|[7B 22 48 6F 73 7...|events|        0|     2|2020-11-06 01:36:...|            0|
|null|[7B 22 48 6F 73 7...|events|        0|     3|2020-11-06 01:36:...|            0|
+----+--------------------+------+---------+------+--------------------+-------------+



In [6]:
munged_events = raw_events \
        .select(raw_events.value.cast('string').alias('raw'),
                raw_events.timestamp.cast('string')) \
        .withColumn('munged', munge_event('raw'))

In [7]:
munged_events.show()

+--------------------+--------------------+--------------------+
|                 raw|           timestamp|              munged|
+--------------------+--------------------+--------------------+
|{"Host": "localho...|2020-11-06 01:36:...|{"Host": "moe", "...|
|{"Host": "localho...|2020-11-06 01:36:...|{"Host": "moe", "...|
|{"Host": "localho...|2020-11-06 01:36:...|{"Host": "moe", "...|
|{"Host": "localho...|2020-11-06 01:36:...|{"Host": "moe", "...|
+--------------------+--------------------+--------------------+



In [8]:
extracted_events = munged_events \
        .rdd \
        .map(lambda r: Row(timestamp=r.timestamp, **json.loads(r.munged))) \
        .toDF()

In [9]:
extracted_events.show()

+------+-------------+----+-----------+--------------+--------------------+
|Accept|Cache-Control|Host| User-Agent|    event_type|           timestamp|
+------+-------------+----+-----------+--------------+--------------------+
|   */*|     no-cache| moe|curl/7.47.0|       default|2020-11-06 01:36:...|
|   */*|     no-cache| moe|curl/7.47.0|purchase_sword|2020-11-06 01:36:...|
|   */*|     no-cache| moe|curl/7.47.0|     buy_sword|2020-11-06 01:36:...|
|   */*|     no-cache| moe|curl/7.47.0|    join_guild|2020-11-06 01:36:...|
+------+-------------+----+-----------+--------------+--------------------+



In [10]:
sword_purchases = extracted_events \
        .filter(extracted_events.event_type == 'purchase_sword')

sword_purchases.show()

In [12]:
default_hits = extracted_events \
        .filter(extracted_events.event_type == 'default')

In [13]:
default_hits.show()

+------+-------------+----+-----------+----------+--------------------+
|Accept|Cache-Control|Host| User-Agent|event_type|           timestamp|
+------+-------------+----+-----------+----------+--------------------+
|   */*|     no-cache| moe|curl/7.47.0|   default|2020-11-06 01:36:...|
+------+-------------+----+-----------+----------+--------------------+



### After Week 12

#### Code from filtered_writes.py

In [1]:
import json
from pyspark.sql import Row
from pyspark.sql.functions import udf


In [3]:
@udf('boolean')
def is_purchase(event_as_json):
    event = json.loads(event_as_json)
    if event['event_type'] == 'purchase_sword':
        return True
    return False

In [2]:
spark

In [4]:
raw_events = spark \
        .read \
        .format("kafka") \
        .option("kafka.bootstrap.servers", "kafka:29092") \
        .option("subscribe", "events") \
        .option("startingOffsets", "earliest") \
        .option("endingOffsets", "latest") \
        .load()

In [5]:
purchase_events = raw_events \
        .select(raw_events.value.cast('string').alias('raw'),
                raw_events.timestamp.cast('string')) \
        .filter(is_purchase('raw'))

In [6]:
extracted_purchase_events = purchase_events \
        .rdd \
        .map(lambda r: Row(timestamp=r.timestamp, **json.loads(r.raw))) \
        .toDF()

In [7]:
extracted_purchase_events.printSchema()

root
 |-- Accept: string (nullable = true)
 |-- Host: string (nullable = true)
 |-- User-Agent: string (nullable = true)
 |-- event_type: string (nullable = true)
 |-- sword_type: string (nullable = true)
 |-- timestamp: string (nullable = true)



In [8]:
extracted_purchase_events.show()


+------+-----------------+---------------+--------------+----------+--------------------+
|Accept|             Host|     User-Agent|    event_type|sword_type|           timestamp|
+------+-----------------+---------------+--------------+----------+--------------------+
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|us

In [9]:
extracted_purchase_events \
        .write \
        .mode('overwrite') \
        .parquet('/tmp/purchases')

#### pyspark code

In [10]:
purchases = spark.read.parquet('/tmp/purchases')


In [11]:
purchases.show()

+------+-----------------+---------------+--------------+----------+--------------------+
|Accept|             Host|     User-Agent|    event_type|sword_type|           timestamp|
+------+-----------------+---------------+--------------+----------+--------------------+
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|us

In [12]:
purchases.registerTempTable('purchases')


In [13]:
purchases_by_example2 = spark.sql("select * from purchases where Host = 'user1.comcast.com'")


In [14]:
purchases_by_example2.show()


+------+-----------------+---------------+--------------+----------+--------------------+
|Accept|             Host|     User-Agent|    event_type|sword_type|           timestamp|
+------+-----------------+---------------+--------------+----------+--------------------+
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|user1.comcast.com|ApacheBench/2.3|purchase_sword|   knights|2020-11-20 01:17:...|
|   */*|us

In [15]:
df = purchases_by_example2.toPandas()


In [16]:
df

Unnamed: 0,Accept,Host,User-Agent,event_type,sword_type,timestamp
0,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.792
1,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.795
2,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.798
3,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.803
4,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.806
5,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.808
6,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.816
7,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.819
8,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.822
9,*/*,user1.comcast.com,ApacheBench/2.3,purchase_sword,knights,2020-11-20 01:17:13.824


#### Simple analytics using Spark SQL on the Spark Dataframe in Memory

### After Week 13

In [1]:
import json
from pyspark.sql.functions import udf, from_json
from pyspark.sql.types import StructType, StructField, StringType

In [2]:
def purchase_sword_event_schema():
    """
    root
    |-- Accept: string (nullable = true)
    |-- Host: string (nullable = true)
    |-- User-Agent: string (nullable = true)
    |-- event_type: string (nullable = true)
    |-- timestamp: string (nullable = true)
    """
    return StructType([
        StructField("Accept", StringType(), True),
        StructField("Host", StringType(), True),
        StructField("User-Agent", StringType(), True),
        StructField("event_type", StringType(), True),
    ])

In [3]:
@udf('boolean')
def is_sword_purchase(event_as_json):
    """udf for filtering events
    """
    event = json.loads(event_as_json)
    if event['event_type'] == 'purchase_sword':
        return True
    return False

In [4]:
spark

In [5]:
raw_events = spark \
        .readStream \
        .format("kafka") \
        .option("kafka.bootstrap.servers", "kafka:29092") \
        .option("subscribe", "events") \
        .load()


In [6]:
sword_purchases = raw_events \
        .filter(is_sword_purchase(raw_events.value.cast('string'))) \
        .select(raw_events.value.cast('string').alias('raw_event'),
                raw_events.timestamp.cast('string'),
                from_json(raw_events.value.cast('string'),
                          purchase_sword_event_schema()).alias('json')) \
        .select('raw_event', 'timestamp', 'json.*')


In [7]:
sink = sword_purchases \
        .writeStream \
        .format("parquet") \
        .option("checkpointLocation", "/tmp/checkpoints_for_sword_purchases") \
        .option("path", "/tmp/sword_purchases") \
        .trigger(processingTime="10 seconds") \
        .start()


In [8]:
sink.stop()