Compare commits
30 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| fa79a58004 | |||
| 9997d4f0ed | |||
| 33edae9eff | |||
| c1e52ea908 | |||
| 0d5702f0fe | |||
| e4c3779092 | |||
| da5f233c3b | |||
| 02d89eec4f | |||
| 95dc2e2da2 | |||
| 59fc0432b4 | |||
| 99c0508f6f | |||
| b984dab2be | |||
| 157f097dfb | |||
| 630e74814b | |||
| 6248d03ead | |||
| 9b474a398b | |||
| 3deae15f5a | |||
| 8e1df7938b | |||
| d9f2d32c76 | |||
| 9296f0331e | |||
| 1ace61baa5 | |||
| e3e49b8db2 | |||
| 2ed15b548f | |||
| 7d2bc7f1f2 | |||
| ef2428f8e3 | |||
| 5edff5e272 | |||
| b424b24c2e | |||
| 310c1237b1 | |||
| cadc5888cc | |||
| 618e57074a |
@@ -11,7 +11,7 @@
|
|||||||
<!-- Quartz Scheduler-->
|
<!-- Quartz Scheduler-->
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
<PackageReference Include="Bogus" Version="35.6.5" />
|
<PackageReference Include="Bogus" Version="35.6.5" />
|
||||||
<PackageReference Include="Meziantou.Analyzer" Version="3.0.102">
|
<PackageReference Include="Meziantou.Analyzer" Version="3.0.103">
|
||||||
<PrivateAssets>all</PrivateAssets>
|
<PrivateAssets>all</PrivateAssets>
|
||||||
<IncludeAssets>runtime; build; native; contentfiles; analyzers; buildtransitive</IncludeAssets>
|
<IncludeAssets>runtime; build; native; contentfiles; analyzers; buildtransitive</IncludeAssets>
|
||||||
</PackageReference>
|
</PackageReference>
|
||||||
@@ -116,8 +116,8 @@
|
|||||||
|
|
||||||
<!-- Amazon S3 SDK -->
|
<!-- Amazon S3 SDK -->
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
<PackageReference Include="AWSSDK.Extensions.NetCore.Setup" Version="4.0.4.6" />
|
<PackageReference Include="AWSSDK.Extensions.NetCore.Setup" Version="4.0.4.7" />
|
||||||
<PackageReference Include="AWSSDK.S3" Version="4.0.24.3" />
|
<PackageReference Include="AWSSDK.S3" Version="4.0.24.4" />
|
||||||
<ProjectReference Include="..\LiteCharms.Features\LiteCharms.Features.csproj" />
|
<ProjectReference Include="..\LiteCharms.Features\LiteCharms.Features.csproj" />
|
||||||
|
|
||||||
<!-- global Usings -->
|
<!-- global Usings -->
|
||||||
|
|||||||
@@ -334,6 +334,28 @@ public sealed class CustomerService(IDbContextFactory<MidrandBooksDbContext> con
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
public async ValueTask<Result<Customer>> GetCustomerAsync(string email, CancellationToken cancellationToken = default)
|
||||||
|
{
|
||||||
|
try
|
||||||
|
{
|
||||||
|
await using var context = await contextFactory.CreateDbContextAsync(cancellationToken);
|
||||||
|
|
||||||
|
var customer = await context.Customers
|
||||||
|
.AsNoTracking()
|
||||||
|
.Include(c => c.Contacts)
|
||||||
|
.Include(c => c.Addresses)
|
||||||
|
.FirstOrDefaultAsync(c => c.Email == email, cancellationToken);
|
||||||
|
|
||||||
|
return customer is not null
|
||||||
|
? Result.Ok(customer.ToModel())
|
||||||
|
: Result.Fail<Customer>(new Error($"Customer with email '{email}' does not exist."));
|
||||||
|
}
|
||||||
|
catch (Exception ex)
|
||||||
|
{
|
||||||
|
return Result.Fail<Customer>(new Error(ex.Message).CausedBy(ex));
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
public async ValueTask<Result<Customer>> GetCustomerAsync(long customerId, CancellationToken cancellationToken = default)
|
public async ValueTask<Result<Customer>> GetCustomerAsync(long customerId, CancellationToken cancellationToken = default)
|
||||||
{
|
{
|
||||||
try
|
try
|
||||||
|
|||||||
@@ -12,8 +12,8 @@ public sealed class CustomerConfiguration : IEntityTypeConfiguration<Customer>
|
|||||||
builder.Property(c => c.Company).IsRequired(false);
|
builder.Property(c => c.Company).IsRequired(false);
|
||||||
builder.Property(c => c.VatNumber).IsRequired(false);
|
builder.Property(c => c.VatNumber).IsRequired(false);
|
||||||
builder.Property(c => c.Email).IsRequired();
|
builder.Property(c => c.Email).IsRequired();
|
||||||
builder.Property(c => c.Phone).IsRequired();
|
builder.Property(c => c.Phone).IsRequired(false);
|
||||||
builder.Property(c => c.Website).IsRequired();
|
builder.Property(c => c.Website).IsRequired(false);
|
||||||
builder.Property(c => c.Enabled).HasDefaultValue(true);
|
builder.Property(c => c.Enabled).HasDefaultValue(true);
|
||||||
|
|
||||||
builder.OwnsMany(f => f.SocialMedia, b => { b.ToJson(); });
|
builder.OwnsMany(f => f.SocialMedia, b => { b.ToJson(); });
|
||||||
|
|||||||
@@ -1,11 +1,12 @@
|
|||||||
using LiteCharms.Features.Abstractions;
|
using LiteCharms.Features.Abstractions;
|
||||||
|
using LiteCharms.Features.Browser;
|
||||||
using LiteCharms.Features.MidrandBooks.Abstractions;
|
using LiteCharms.Features.MidrandBooks.Abstractions;
|
||||||
|
|
||||||
namespace LiteCharms.Features.MidrandBooks.Extensions;
|
namespace LiteCharms.Features.MidrandBooks.Extensions;
|
||||||
|
|
||||||
public static class Shop
|
public static class Shop
|
||||||
{
|
{
|
||||||
public static IServiceCollection AddShopServices(this IServiceCollection services)
|
public static IServiceCollection AddShopServices(this IServiceCollection services, bool includeLocalStorage = false)
|
||||||
{
|
{
|
||||||
var serviceType = typeof(IService);
|
var serviceType = typeof(IService);
|
||||||
|
|
||||||
@@ -19,6 +20,9 @@ public static class Shop
|
|||||||
|
|
||||||
foreach (var coreImplementation in coreImplementations) services.AddScoped(coreImplementation);
|
foreach (var coreImplementation in coreImplementations) services.AddScoped(coreImplementation);
|
||||||
|
|
||||||
|
if (includeLocalStorage)
|
||||||
|
services.AddScoped<LocalStorageService>();
|
||||||
|
|
||||||
return services;
|
return services;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -32,7 +32,7 @@
|
|||||||
<!-- Quartz Scheduler-->
|
<!-- Quartz Scheduler-->
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
<PackageReference Include="Humanizer" Version="3.0.10" />
|
<PackageReference Include="Humanizer" Version="3.0.10" />
|
||||||
<PackageReference Include="Meziantou.Analyzer" Version="3.0.102">
|
<PackageReference Include="Meziantou.Analyzer" Version="3.0.103">
|
||||||
<PrivateAssets>all</PrivateAssets>
|
<PrivateAssets>all</PrivateAssets>
|
||||||
<IncludeAssets>runtime; build; native; contentfiles; analyzers; buildtransitive</IncludeAssets>
|
<IncludeAssets>runtime; build; native; contentfiles; analyzers; buildtransitive</IncludeAssets>
|
||||||
</PackageReference>
|
</PackageReference>
|
||||||
@@ -136,8 +136,8 @@
|
|||||||
|
|
||||||
<!-- Amazon S3 SDK -->
|
<!-- Amazon S3 SDK -->
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
<PackageReference Include="AWSSDK.Extensions.NetCore.Setup" Version="4.0.4.6" />
|
<PackageReference Include="AWSSDK.Extensions.NetCore.Setup" Version="4.0.4.7" />
|
||||||
<PackageReference Include="AWSSDK.S3" Version="4.0.24.3" />
|
<PackageReference Include="AWSSDK.S3" Version="4.0.24.4" />
|
||||||
<ProjectReference Include="..\LiteCharms.Features\LiteCharms.Features.csproj" />
|
<ProjectReference Include="..\LiteCharms.Features\LiteCharms.Features.csproj" />
|
||||||
|
|
||||||
<!-- global Usings -->
|
<!-- global Usings -->
|
||||||
@@ -148,6 +148,7 @@
|
|||||||
|
|
||||||
<!-- Shared Usings -->
|
<!-- Shared Usings -->
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
|
<Using Include="Microsoft.AspNetCore.Http" />
|
||||||
<Using Include="System.Net.Sockets" />
|
<Using Include="System.Net.Sockets" />
|
||||||
<Using Include="System.Text.RegularExpressions" />
|
<Using Include="System.Text.RegularExpressions" />
|
||||||
<Using Include="System.Web" />
|
<Using Include="System.Web" />
|
||||||
|
|||||||
@@ -164,6 +164,27 @@ public sealed class OrderService(IDbContextFactory<MidrandBooksDbContext> contex
|
|||||||
public async ValueTask<Result> CancelOrderAsync(long orderId, CancellationToken cancellationToken = default) =>
|
public async ValueTask<Result> CancelOrderAsync(long orderId, CancellationToken cancellationToken = default) =>
|
||||||
await UpdateOrderStatusAsync(orderId, OrderStatus.Cancelled, cancellationToken);
|
await UpdateOrderStatusAsync(orderId, OrderStatus.Cancelled, cancellationToken);
|
||||||
|
|
||||||
|
public async ValueTask<Result<Order>> GetPendingOrderAsync(long customerId, CancellationToken cancellationToken = default)
|
||||||
|
{
|
||||||
|
try
|
||||||
|
{
|
||||||
|
await using var context = await contextFactory.CreateDbContextAsync(cancellationToken);
|
||||||
|
|
||||||
|
var order = await context.Orders.AsNoTracking()
|
||||||
|
.Where(o => o.Status == OrderStatus.Pending && o.CustomerId == customerId)
|
||||||
|
.OrderByDescending(o => o.Id)
|
||||||
|
.FirstOrDefaultAsync(cancellationToken);
|
||||||
|
|
||||||
|
return order is not null
|
||||||
|
? Result.Ok(order.ToModel())
|
||||||
|
: Result.Fail<Order>("Order not found.");
|
||||||
|
}
|
||||||
|
catch (Exception ex)
|
||||||
|
{
|
||||||
|
return Result.Fail<Order>(new Error(ex.Message).CausedBy(ex));
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
public async ValueTask<Result<Order>> GetOrderAsync(long orderId, CancellationToken cancellationToken = default)
|
public async ValueTask<Result<Order>> GetOrderAsync(long orderId, CancellationToken cancellationToken = default)
|
||||||
{
|
{
|
||||||
try
|
try
|
||||||
|
|||||||
@@ -1,5 +1,4 @@
|
|||||||
using LiteCharms.Features.Abstractions;
|
using LiteCharms.Features.Browser;
|
||||||
using LiteCharms.Features.Browser;
|
|
||||||
using LiteCharms.Features.Hasher;
|
using LiteCharms.Features.Hasher;
|
||||||
using LiteCharms.Features.MidrandBooks.Authors.Models;
|
using LiteCharms.Features.MidrandBooks.Authors.Models;
|
||||||
using LiteCharms.Features.MidrandBooks.Payments.Models;
|
using LiteCharms.Features.MidrandBooks.Payments.Models;
|
||||||
@@ -7,7 +6,7 @@ using LiteCharms.Features.MidrandBooks.Products.Models;
|
|||||||
|
|
||||||
namespace LiteCharms.Features.MidrandBooks.Payments;
|
namespace LiteCharms.Features.MidrandBooks.Payments;
|
||||||
|
|
||||||
public sealed class CartService(LocalStorageService localStorage) : IService
|
public sealed class CartService(LocalStorageService localStorage)
|
||||||
{
|
{
|
||||||
private readonly string CartStorageKey = HashService.ToMd5Hash(nameof(Cart)).Value;
|
private readonly string CartStorageKey = HashService.ToMd5Hash(nameof(Cart)).Value;
|
||||||
|
|
||||||
|
|||||||
+25
-85
@@ -1,17 +1,13 @@
|
|||||||
using LiteCharms.Features.Api.Configuration;
|
using LiteCharms.Features.Hasher;
|
||||||
using LiteCharms.Features.Hasher;
|
|
||||||
using LiteCharms.Features.Mediator;
|
using LiteCharms.Features.Mediator;
|
||||||
using LiteCharms.Features.MidrandBooks.Orders;
|
using LiteCharms.Features.MidrandBooks.Orders;
|
||||||
using LiteCharms.Features.MidrandBooks.Payments.Models;
|
using LiteCharms.Features.MidrandBooks.Payments.Models;
|
||||||
|
|
||||||
namespace LiteCharms.Features.MidrandBooks.Payments.Events.Handlers;
|
namespace LiteCharms.Features.MidrandBooks.Payments.Events.Handlers;
|
||||||
|
|
||||||
public sealed class PayfastPaymentConfirmationReceivedEventHandler(IServiceProvider services,
|
public sealed class PayfastPaymentConfirmationReceivedEventHandler(IServiceProvider services, ILogger<PayfastPaymentConfirmationReceivedEvent> logger) :
|
||||||
IOptions<PayfastSettings> payfastOptions, ILogger<PayfastPaymentConfirmationReceivedEvent> logger) :
|
|
||||||
INotificationHandler<PayfastPaymentConfirmationReceivedEvent>
|
INotificationHandler<PayfastPaymentConfirmationReceivedEvent>
|
||||||
{
|
{
|
||||||
private readonly PayfastSettings pasfastSettings = payfastOptions.Value;
|
|
||||||
|
|
||||||
public async ValueTask Handle(PayfastPaymentConfirmationReceivedEvent notification, CancellationToken cancellationToken)
|
public async ValueTask Handle(PayfastPaymentConfirmationReceivedEvent notification, CancellationToken cancellationToken)
|
||||||
{
|
{
|
||||||
using var activity = MediatorTelemetry.Source.StartActivity($"Quartz: {typeof(PayfastPaymentConfirmationReceivedEvent).Name}");
|
using var activity = MediatorTelemetry.Source.StartActivity($"Quartz: {typeof(PayfastPaymentConfirmationReceivedEvent).Name}");
|
||||||
@@ -23,83 +19,34 @@ public sealed class PayfastPaymentConfirmationReceivedEventHandler(IServiceProvi
|
|||||||
var paymentService = scope.ServiceProvider.GetRequiredService<PaymentService>();
|
var paymentService = scope.ServiceProvider.GetRequiredService<PaymentService>();
|
||||||
var payfastService = scope.ServiceProvider.GetRequiredService<PayfastService>();
|
var payfastService = scope.ServiceProvider.GetRequiredService<PayfastService>();
|
||||||
|
|
||||||
var payload = notification.Payload ?? throw new Exception("Payload metadata context context is null.");
|
var payload = notification.Payload ?? throw new Exception("Payload metadata context is null.");
|
||||||
|
|
||||||
var dict = payload.ToParamDictionary();
|
var hashResult = hashService.DecodeLongIdHash(payload.MerchantPaymentId!);
|
||||||
var localSignature = PayfastService.GenerateSignature(dict, pasfastSettings.Passphrase);
|
if (hashResult.IsFailed) throw new Exception("Failed to decode application tracking hash key identifier.");
|
||||||
|
|
||||||
if (localSignature.IsFailed)
|
var orderResult = await orderService.GetOrderAsync(hashResult.Value, cancellationToken);
|
||||||
throw new Exception("Failed to generate local signature for incoming webhook payload.");
|
if (orderResult.IsFailed) throw new Exception("Target system order entity context cannot be traced.");
|
||||||
|
|
||||||
if (!string.Equals(localSignature.Value, payload.Signature, StringComparison.OrdinalIgnoreCase))
|
var paymentResult = await paymentService.GetOrderPaymentAsync(orderResult.Value.Id, cancellationToken);
|
||||||
|
if (paymentResult.IsFailed) throw new Exception("Target payment ledger entity cannot be resolved.");
|
||||||
|
|
||||||
|
var isAlreadyProcessed = await paymentService.HasLedgerEntryAsync(orderResult.Value.Id, paymentResult.Value.Id, cancellationToken);
|
||||||
|
if (isAlreadyProcessed.Value)
|
||||||
{
|
{
|
||||||
logger.LogCritical("Incoming webhook signature verification failed. Possible payload tampering.");
|
logger.LogWarning("Webhook reference token '{Ref}' already verified. Skipping processing routines.", payload.MerchantPaymentId);
|
||||||
|
|
||||||
return;
|
return;
|
||||||
}
|
}
|
||||||
|
|
||||||
var hashResult = hashService.DecodeLongIdHash(payload.MerchantPaymentId!);
|
var isAmountValid = payfastService.ValidatePaymentAmount(orderResult.Value.Total, payload.AmountGross);
|
||||||
|
if (!isAmountValid.Value)
|
||||||
if (hashResult.IsFailed) throw new Exception("Failed to decode application tracking hash key identifier.");
|
throw new Exception("Security validation exception: Transaction cost variance bounds breached (Price Tampering Detected).");
|
||||||
|
|
||||||
var orderResult = await orderService.GetOrderAsync(hashResult.Value, cancellationToken);
|
|
||||||
|
|
||||||
if (orderResult.IsFailed) throw new Exception("Target system order entity context cannot be traced.");
|
|
||||||
|
|
||||||
var paymentResult = await paymentService.GetOrderPaymentAsync(orderResult.Value.Id, cancellationToken);
|
|
||||||
|
|
||||||
if (paymentResult.IsFailed) throw new Exception("Target payment ledger entity cannot be resolved.");
|
|
||||||
|
|
||||||
decimal.TryParse(payload.AmountGross, CultureInfo.InvariantCulture, out var gross);
|
decimal.TryParse(payload.AmountGross, CultureInfo.InvariantCulture, out var gross);
|
||||||
decimal.TryParse(payload.AmountFee, CultureInfo.InvariantCulture, out var fee);
|
decimal.TryParse(payload.AmountFee, CultureInfo.InvariantCulture, out var fee);
|
||||||
decimal.TryParse(payload.AmountNet, CultureInfo.InvariantCulture, out var net);
|
decimal.TryParse(payload.AmountNet, CultureInfo.InvariantCulture, out var net);
|
||||||
string status = payload.PaymentStatus ?? "UNKNOWN";
|
string status = payload.PaymentStatus ?? "UNKNOWN";
|
||||||
|
|
||||||
var isAlreadyProcessed = await paymentService.HasLedgerEntryAsync(orderResult.Value.Id, paymentResult.Value.Id, cancellationToken);
|
|
||||||
|
|
||||||
if (isAlreadyProcessed.Value)
|
|
||||||
{
|
|
||||||
logger.LogWarning("Webhook reference token '{Ref}' already verified. Skipping validation routines.", payload.MerchantPaymentId);
|
|
||||||
|
|
||||||
return;
|
|
||||||
}
|
|
||||||
|
|
||||||
if (notification.PerformBackgroundChecks)
|
|
||||||
{
|
|
||||||
var isHostValid = await payfastService.ValidateReferrerIpAsync(notification.RemoteIpAddress!, notification.AllowLoopback, cancellationToken);
|
|
||||||
|
|
||||||
if (isHostValid.IsFailed)
|
|
||||||
throw new Exception("Security validation exception: Webhook packet source address failed cluster validation checks.");
|
|
||||||
|
|
||||||
if (!isHostValid.Value)
|
|
||||||
throw new Exception("Security validation exception: Webhook packet source address failed cluster validation checks.");
|
|
||||||
|
|
||||||
var isAmountValid = payfastService.ValidatePaymentAmount(orderResult.Value.Total, payload.AmountGross);
|
|
||||||
|
|
||||||
if (!isAmountValid.Value)
|
|
||||||
throw new Exception("Security validation exception: Transaction cost variance bounds breached.");
|
|
||||||
|
|
||||||
var paramList = new List<string>();
|
|
||||||
|
|
||||||
foreach (var kvp in dict)
|
|
||||||
{
|
|
||||||
if (!string.IsNullOrEmpty(kvp.Value))
|
|
||||||
{
|
|
||||||
string encoded = HttpUtility.UrlEncode(kvp.Value.Trim());
|
|
||||||
|
|
||||||
string safeValue = PayfastService.PercentEncodingRegex.Replace(encoded, m => m.Value.ToLowerInvariant());
|
|
||||||
paramList.Add($"{kvp.Key}={safeValue}");
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
string rawParamString = string.Join("&", paramList);
|
|
||||||
|
|
||||||
var serverConfirmation = await payfastService.ValidateServerConfirmationAsync(rawParamString, isSandbox: true, cancellationToken);
|
|
||||||
|
|
||||||
if (serverConfirmation.IsFailed)
|
|
||||||
throw new Exception("Security validation exception: Payfast central handshake server rejected payload legitimacy.");
|
|
||||||
}
|
|
||||||
|
|
||||||
await payfastService.WriteLedgerEntryAsync(new CreateGatewayLedgerEntry
|
await payfastService.WriteLedgerEntryAsync(new CreateGatewayLedgerEntry
|
||||||
{
|
{
|
||||||
OrderId = orderResult.Value.Id,
|
OrderId = orderResult.Value.Id,
|
||||||
@@ -124,31 +71,23 @@ public sealed class PayfastPaymentConfirmationReceivedEventHandler(IServiceProvi
|
|||||||
CustomerId = orderResult.Value.CustomerId,
|
CustomerId = orderResult.Value.CustomerId,
|
||||||
}, cancellationToken);
|
}, cancellationToken);
|
||||||
|
|
||||||
if (ledgerWriteResult.IsFailed)
|
if (ledgerWriteResult.IsFailed) throw new Exception("Failed to write ledger entry for payment confirmation.");
|
||||||
throw new Exception("Failed to write ledger entry for payment confirmation.");
|
|
||||||
|
|
||||||
var completePaymentResult = await paymentService.CompletePaymentAsync(paymentResult.Value.Id, PaymentStatuses.Paid, cancellationToken);
|
var completePaymentResult = await paymentService.CompletePaymentAsync(paymentResult.Value.Id, PaymentStatuses.Paid, cancellationToken);
|
||||||
|
if (completePaymentResult.IsFailed) throw new Exception("Failed to update payment status to 'Paid'.");
|
||||||
if (completePaymentResult.IsFailed)
|
|
||||||
throw new Exception("Failed to update payment status to 'Paid' for payment confirmation.");
|
|
||||||
|
|
||||||
var updateOrderResult = await orderService.UpdateOrderStatusAsync(orderResult.Value.Id, OrderStatus.Completed, cancellationToken);
|
var updateOrderResult = await orderService.UpdateOrderStatusAsync(orderResult.Value.Id, OrderStatus.Completed, cancellationToken);
|
||||||
|
if (updateOrderResult.IsFailed) throw new Exception("Failed to update order status to 'Completed'.");
|
||||||
if (updateOrderResult.IsFailed)
|
|
||||||
throw new Exception("Failed to update order status to 'Completed' for payment confirmation.");
|
|
||||||
|
|
||||||
logger.LogInformation("Order payment verified secure and cleared successfully.");
|
logger.LogInformation("Order payment verified secure and cleared successfully.");
|
||||||
}
|
}
|
||||||
else
|
else
|
||||||
{
|
{
|
||||||
LedgerStatuses ledgerStatus;
|
LedgerStatuses ledgerStatus = status.Equals("CANCELLED", StringComparison.OrdinalIgnoreCase)
|
||||||
|
? LedgerStatuses.Cancelled
|
||||||
|
: LedgerStatuses.Failed;
|
||||||
|
|
||||||
if (status.Equals("CANCELLED", StringComparison.OrdinalIgnoreCase))
|
await paymentService.WriteLedgerEntryAsync(new CreateLedgerEntry
|
||||||
ledgerStatus = LedgerStatuses.Cancelled;
|
|
||||||
else
|
|
||||||
ledgerStatus = LedgerStatuses.Failed;
|
|
||||||
|
|
||||||
var ledgerWriteResult = await paymentService.WriteLedgerEntryAsync(new CreateLedgerEntry
|
|
||||||
{
|
{
|
||||||
OrderId = orderResult.Value.Id,
|
OrderId = orderResult.Value.Id,
|
||||||
PaymentId = paymentResult.Value.Id,
|
PaymentId = paymentResult.Value.Id,
|
||||||
@@ -157,8 +96,9 @@ public sealed class PayfastPaymentConfirmationReceivedEventHandler(IServiceProvi
|
|||||||
CustomerId = orderResult.Value.CustomerId,
|
CustomerId = orderResult.Value.CustomerId,
|
||||||
}, cancellationToken);
|
}, cancellationToken);
|
||||||
|
|
||||||
logger.LogInformation("Webhook validation pipeline passed checks successfully, logged entry to ledger with status: {Status}", status);
|
logger.LogInformation("Webhook pipeline logged non-success entry to ledger with status: {Status}", status);
|
||||||
}
|
}
|
||||||
|
|
||||||
activity?.SetStatus(ActivityStatusCode.Ok);
|
activity?.SetStatus(ActivityStatusCode.Ok);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -48,6 +48,39 @@ public sealed partial class PayfastService(IDbContextFactory<MidrandBooksDbConte
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
public static bool VerifyIncomingSignatureFromForm(IFormCollection formCollection, string passphrase)
|
||||||
|
{
|
||||||
|
var sortedFields = new Dictionary<string, string>(StringComparer.Ordinal);
|
||||||
|
|
||||||
|
foreach (var field in formCollection)
|
||||||
|
{
|
||||||
|
sortedFields.Add(field.Key, field.Value.ToString());
|
||||||
|
}
|
||||||
|
|
||||||
|
if (!sortedFields.TryGetValue("signature", out var incomingSignature)) return false;
|
||||||
|
|
||||||
|
var stringBuilder = new StringBuilder();
|
||||||
|
|
||||||
|
foreach (var key in sortedFields.Keys)
|
||||||
|
{
|
||||||
|
if (key.Equals("signature", StringComparison.OrdinalIgnoreCase)) continue;
|
||||||
|
|
||||||
|
string encodedVal = HttpUtility.UrlEncode(sortedFields[key].Trim());
|
||||||
|
string cleanVal = PercentEncodingRegex.Replace(encodedVal, m => m.Value.ToUpperInvariant());
|
||||||
|
|
||||||
|
stringBuilder.Append($"{key}={cleanVal}&");
|
||||||
|
}
|
||||||
|
|
||||||
|
string encodedPassphrase = HttpUtility.UrlEncode(passphrase.Trim());
|
||||||
|
string safePassphrase = PercentEncodingRegex.Replace(encodedPassphrase, m => m.Value.ToUpperInvariant());
|
||||||
|
|
||||||
|
stringBuilder.Append($"passphrase={safePassphrase}");
|
||||||
|
|
||||||
|
string generatedSignature = HashService.ToMd5Hash(stringBuilder.ToString()).Value;
|
||||||
|
|
||||||
|
return incomingSignature.Equals(generatedSignature, StringComparison.OrdinalIgnoreCase);
|
||||||
|
}
|
||||||
|
|
||||||
public async ValueTask<Result<bool>> ValidateReferrerIpAsync(string remoteIpAddress, bool allowLoopback = false, CancellationToken cancellationToken = default)
|
public async ValueTask<Result<bool>> ValidateReferrerIpAsync(string remoteIpAddress, bool allowLoopback = false, CancellationToken cancellationToken = default)
|
||||||
{
|
{
|
||||||
if(payfastOptions.Value?.ValidHosts?.Length == 0)
|
if(payfastOptions.Value?.ValidHosts?.Length == 0)
|
||||||
@@ -147,33 +180,66 @@ public sealed partial class PayfastService(IDbContextFactory<MidrandBooksDbConte
|
|||||||
{
|
{
|
||||||
var pfOutput = new StringBuilder();
|
var pfOutput = new StringBuilder();
|
||||||
|
|
||||||
foreach (var kvp in data)
|
var mandatorySequence = GetPayfastMandatoryFieldSequence();
|
||||||
|
|
||||||
|
foreach (string key in mandatorySequence)
|
||||||
{
|
{
|
||||||
if (string.IsNullOrEmpty(kvp.Value))
|
if (data.TryGetValue(key, out string? rawValue) && !string.IsNullOrEmpty(rawValue))
|
||||||
continue;
|
{
|
||||||
|
string encodedVal = HttpUtility.UrlEncode(rawValue.Trim());
|
||||||
|
string val = PercentEncodingRegex.Replace(encodedVal, m => m.Value.ToUpperInvariant());
|
||||||
|
|
||||||
string key = kvp.Key;
|
pfOutput.Append($"{key}={val}&");
|
||||||
|
}
|
||||||
string encodedVal = HttpUtility.UrlEncode(kvp.Value.Trim());
|
|
||||||
|
|
||||||
string val = PercentEncodingRegex.Replace(encodedVal, m => m.Value.ToLowerInvariant());
|
|
||||||
|
|
||||||
pfOutput.Append($"{key}={val}&");
|
|
||||||
}
|
}
|
||||||
|
|
||||||
string getString = pfOutput.Length > 0
|
var getString = pfOutput.Length > 0
|
||||||
? pfOutput.ToString()[..^1]
|
? pfOutput.ToString()[..^1]
|
||||||
: string.Empty;
|
: string.Empty;
|
||||||
|
|
||||||
if (!string.IsNullOrWhiteSpace(passPhrase))
|
if (!string.IsNullOrWhiteSpace(passPhrase))
|
||||||
{
|
{
|
||||||
string encodedPassphrase = HttpUtility.UrlEncode(passPhrase.Trim());
|
string encodedPassphrase = HttpUtility.UrlEncode(passPhrase.Trim());
|
||||||
|
string safePassphrase = PercentEncodingRegex.Replace(encodedPassphrase, m => m.Value.ToUpperInvariant());
|
||||||
string safePassphrase = PercentEncodingRegex.Replace(encodedPassphrase, m => m.Value.ToLowerInvariant());
|
|
||||||
|
|
||||||
getString += $"&passphrase={safePassphrase}";
|
getString += $"&passphrase={safePassphrase}";
|
||||||
}
|
}
|
||||||
|
|
||||||
return HashService.ToMd5Hash(getString);
|
return HashService.ToMd5Hash(getString);
|
||||||
}
|
}
|
||||||
|
|
||||||
|
private static string[] GetPayfastMandatoryFieldSequence() =>
|
||||||
|
[
|
||||||
|
"merchant_id",
|
||||||
|
"merchant_key",
|
||||||
|
"return_url",
|
||||||
|
"cancel_url",
|
||||||
|
"notify_url",
|
||||||
|
"name_first",
|
||||||
|
"name_last",
|
||||||
|
"email_address",
|
||||||
|
"cell_number",
|
||||||
|
"m_payment_id",
|
||||||
|
"amount",
|
||||||
|
"item_name",
|
||||||
|
"item_description",
|
||||||
|
"custom_int1",
|
||||||
|
"custom_int2",
|
||||||
|
"custom_int3",
|
||||||
|
"custom_int4",
|
||||||
|
"custom_int5",
|
||||||
|
"custom_str1",
|
||||||
|
"custom_str2",
|
||||||
|
"custom_str3",
|
||||||
|
"custom_str4",
|
||||||
|
"custom_str5",
|
||||||
|
"email_confirmation",
|
||||||
|
"confirmation_address",
|
||||||
|
"payment_method",
|
||||||
|
"subscription_type",
|
||||||
|
"billing_date",
|
||||||
|
"recurring_amount",
|
||||||
|
"frequency",
|
||||||
|
"cycles"
|
||||||
|
];
|
||||||
}
|
}
|
||||||
|
|||||||
+1290
File diff suppressed because it is too large
Load Diff
+54
@@ -0,0 +1,54 @@
|
|||||||
|
using Microsoft.EntityFrameworkCore.Migrations;
|
||||||
|
|
||||||
|
#nullable disable
|
||||||
|
|
||||||
|
namespace LiteCharms.Features.MidrandBooks.Postgres.Migrations
|
||||||
|
{
|
||||||
|
/// <inheritdoc />
|
||||||
|
public partial class OnlyEmailIsMandatoryOnCustomer : Migration
|
||||||
|
{
|
||||||
|
/// <inheritdoc />
|
||||||
|
protected override void Up(MigrationBuilder migrationBuilder)
|
||||||
|
{
|
||||||
|
migrationBuilder.AlterColumn<string>(
|
||||||
|
name: "Website",
|
||||||
|
table: "Customers",
|
||||||
|
type: "text",
|
||||||
|
nullable: true,
|
||||||
|
oldClrType: typeof(string),
|
||||||
|
oldType: "text");
|
||||||
|
|
||||||
|
migrationBuilder.AlterColumn<string>(
|
||||||
|
name: "Phone",
|
||||||
|
table: "Customers",
|
||||||
|
type: "text",
|
||||||
|
nullable: true,
|
||||||
|
oldClrType: typeof(string),
|
||||||
|
oldType: "text");
|
||||||
|
}
|
||||||
|
|
||||||
|
/// <inheritdoc />
|
||||||
|
protected override void Down(MigrationBuilder migrationBuilder)
|
||||||
|
{
|
||||||
|
migrationBuilder.AlterColumn<string>(
|
||||||
|
name: "Website",
|
||||||
|
table: "Customers",
|
||||||
|
type: "text",
|
||||||
|
nullable: false,
|
||||||
|
defaultValue: "",
|
||||||
|
oldClrType: typeof(string),
|
||||||
|
oldType: "text",
|
||||||
|
oldNullable: true);
|
||||||
|
|
||||||
|
migrationBuilder.AlterColumn<string>(
|
||||||
|
name: "Phone",
|
||||||
|
table: "Customers",
|
||||||
|
type: "text",
|
||||||
|
nullable: false,
|
||||||
|
defaultValue: "",
|
||||||
|
oldClrType: typeof(string),
|
||||||
|
oldType: "text",
|
||||||
|
oldNullable: true);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
+1
-3
@@ -17,7 +17,7 @@ namespace LiteCharms.Features.MidrandBooks.Postgres.Migrations
|
|||||||
{
|
{
|
||||||
#pragma warning disable 612, 618
|
#pragma warning disable 612, 618
|
||||||
modelBuilder
|
modelBuilder
|
||||||
.HasAnnotation("ProductVersion", "10.0.8")
|
.HasAnnotation("ProductVersion", "10.0.9")
|
||||||
.HasAnnotation("Relational:MaxIdentifierLength", 63);
|
.HasAnnotation("Relational:MaxIdentifierLength", 63);
|
||||||
|
|
||||||
NpgsqlModelBuilderExtensions.UseIdentityByDefaultColumns(modelBuilder);
|
NpgsqlModelBuilderExtensions.UseIdentityByDefaultColumns(modelBuilder);
|
||||||
@@ -309,7 +309,6 @@ namespace LiteCharms.Features.MidrandBooks.Postgres.Migrations
|
|||||||
.HasDefaultValue(true);
|
.HasDefaultValue(true);
|
||||||
|
|
||||||
b.Property<string>("Phone")
|
b.Property<string>("Phone")
|
||||||
.IsRequired()
|
|
||||||
.HasColumnType("text");
|
.HasColumnType("text");
|
||||||
|
|
||||||
b.Property<DateTime?>("UpdatedAt")
|
b.Property<DateTime?>("UpdatedAt")
|
||||||
@@ -321,7 +320,6 @@ namespace LiteCharms.Features.MidrandBooks.Postgres.Migrations
|
|||||||
.HasColumnType("text");
|
.HasColumnType("text");
|
||||||
|
|
||||||
b.Property<string>("Website")
|
b.Property<string>("Website")
|
||||||
.IsRequired()
|
|
||||||
.HasColumnType("text");
|
.HasColumnType("text");
|
||||||
|
|
||||||
b.HasKey("Id");
|
b.HasKey("Id");
|
||||||
|
|||||||
@@ -136,8 +136,8 @@
|
|||||||
|
|
||||||
<!-- Amazon S3 SDK -->
|
<!-- Amazon S3 SDK -->
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
<PackageReference Include="AWSSDK.Extensions.NetCore.Setup" Version="4.0.4.6" />
|
<PackageReference Include="AWSSDK.Extensions.NetCore.Setup" Version="4.0.4.7" />
|
||||||
<PackageReference Include="AWSSDK.S3" Version="4.0.24.3" />
|
<PackageReference Include="AWSSDK.S3" Version="4.0.24.4" />
|
||||||
<ProjectReference Include="..\LiteCharms.Features\LiteCharms.Features.csproj" />
|
<ProjectReference Include="..\LiteCharms.Features\LiteCharms.Features.csproj" />
|
||||||
|
|
||||||
<!-- global Usings -->
|
<!-- global Usings -->
|
||||||
|
|||||||
@@ -4,8 +4,6 @@
|
|||||||
"ValidHosts": [
|
"ValidHosts": [
|
||||||
"www.payfast.co.za",
|
"www.payfast.co.za",
|
||||||
"sandbox.payfast.co.za",
|
"sandbox.payfast.co.za",
|
||||||
"w1w.payfast.co.za",
|
|
||||||
"w2w.payfast.co.za",
|
|
||||||
"ips.payfast.co.za",
|
"ips.payfast.co.za",
|
||||||
"api.payfast.co.za",
|
"api.payfast.co.za",
|
||||||
"payment.payfast.io"
|
"payment.payfast.io"
|
||||||
|
|||||||
@@ -1,11 +1,10 @@
|
|||||||
using LiteCharms.Features.Abstractions;
|
using LiteCharms.Features.Api.Configuration;
|
||||||
using LiteCharms.Features.Api.Configuration;
|
|
||||||
using LiteCharms.Features.Api.Models;
|
using LiteCharms.Features.Api.Models;
|
||||||
using LiteCharms.Features.Api.Sdk;
|
using LiteCharms.Features.Api.Sdk;
|
||||||
|
|
||||||
namespace LiteCharms.Features.Api;
|
namespace LiteCharms.Features.Api;
|
||||||
|
|
||||||
public sealed class TokenService(IConnectApi connectApi, IOptions<LiteCharmsClientSettings> clientOptions) : IService
|
public sealed class TokenService(IConnectApi connectApi, IOptions<LiteCharmsClientSettings> clientOptions)
|
||||||
{
|
{
|
||||||
private readonly LiteCharmsClientSettings clientSettings = clientOptions.Value;
|
private readonly LiteCharmsClientSettings clientSettings = clientOptions.Value;
|
||||||
|
|
||||||
|
|||||||
@@ -1,8 +1,6 @@
|
|||||||
using LiteCharms.Features.Abstractions;
|
namespace LiteCharms.Features.Browser;
|
||||||
|
|
||||||
namespace LiteCharms.Features.Browser;
|
public sealed class LocalStorageService(ProtectedLocalStorage storage)
|
||||||
|
|
||||||
public sealed class LocalStorageService(ProtectedLocalStorage storage) : IService
|
|
||||||
{
|
{
|
||||||
public async ValueTask<Result> DeleteAsync(string key)
|
public async ValueTask<Result> DeleteAsync(string key)
|
||||||
{
|
{
|
||||||
|
|||||||
@@ -46,6 +46,8 @@ public static class Api
|
|||||||
options.Retry.BackoffType = Polly.DelayBackoffType.Exponential;
|
options.Retry.BackoffType = Polly.DelayBackoffType.Exponential;
|
||||||
});
|
});
|
||||||
|
|
||||||
|
services.AddScoped<TokenService>();
|
||||||
|
|
||||||
return services;
|
return services;
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
@@ -79,7 +79,7 @@
|
|||||||
<!-- Quartz Scheduler-->
|
<!-- Quartz Scheduler-->
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
<PackageReference Include="Hashids.net" Version="1.7.0" />
|
<PackageReference Include="Hashids.net" Version="1.7.0" />
|
||||||
<PackageReference Include="Meziantou.Analyzer" Version="3.0.102">
|
<PackageReference Include="Meziantou.Analyzer" Version="3.0.103">
|
||||||
<PrivateAssets>all</PrivateAssets>
|
<PrivateAssets>all</PrivateAssets>
|
||||||
<IncludeAssets>runtime; build; native; contentfiles; analyzers; buildtransitive</IncludeAssets>
|
<IncludeAssets>runtime; build; native; contentfiles; analyzers; buildtransitive</IncludeAssets>
|
||||||
</PackageReference>
|
</PackageReference>
|
||||||
@@ -183,8 +183,8 @@
|
|||||||
|
|
||||||
<!-- Amazon S3 SDK -->
|
<!-- Amazon S3 SDK -->
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
<PackageReference Include="AWSSDK.Extensions.NetCore.Setup" Version="4.0.4.6" />
|
<PackageReference Include="AWSSDK.Extensions.NetCore.Setup" Version="4.0.4.7" />
|
||||||
<PackageReference Include="AWSSDK.S3" Version="4.0.24.3" />
|
<PackageReference Include="AWSSDK.S3" Version="4.0.24.4" />
|
||||||
|
|
||||||
<!-- global Usings -->
|
<!-- global Usings -->
|
||||||
<Using Include="Amazon.S3" />
|
<Using Include="Amazon.S3" />
|
||||||
|
|||||||
Reference in New Issue
Block a user