Compare commits
8 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| 95dc2e2da2 | |||
| 59fc0432b4 | |||
| 99c0508f6f | |||
| b984dab2be | |||
| 157f097dfb | |||
| 630e74814b | |||
| 6248d03ead | |||
| 9b474a398b |
@@ -1,11 +1,12 @@
|
|||||||
using LiteCharms.Features.Abstractions;
|
using LiteCharms.Features.Abstractions;
|
||||||
|
using LiteCharms.Features.Browser;
|
||||||
using LiteCharms.Features.MidrandBooks.Abstractions;
|
using LiteCharms.Features.MidrandBooks.Abstractions;
|
||||||
|
|
||||||
namespace LiteCharms.Features.MidrandBooks.Extensions;
|
namespace LiteCharms.Features.MidrandBooks.Extensions;
|
||||||
|
|
||||||
public static class Shop
|
public static class Shop
|
||||||
{
|
{
|
||||||
public static IServiceCollection AddShopServices(this IServiceCollection services)
|
public static IServiceCollection AddShopServices(this IServiceCollection services, bool includeLocalStorage = false)
|
||||||
{
|
{
|
||||||
var serviceType = typeof(IService);
|
var serviceType = typeof(IService);
|
||||||
|
|
||||||
@@ -19,6 +20,9 @@ public static class Shop
|
|||||||
|
|
||||||
foreach (var coreImplementation in coreImplementations) services.AddScoped(coreImplementation);
|
foreach (var coreImplementation in coreImplementations) services.AddScoped(coreImplementation);
|
||||||
|
|
||||||
|
if (includeLocalStorage)
|
||||||
|
services.AddScoped<LocalStorageService>();
|
||||||
|
|
||||||
return services;
|
return services;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -148,6 +148,7 @@
|
|||||||
|
|
||||||
<!-- Shared Usings -->
|
<!-- Shared Usings -->
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
|
<Using Include="Microsoft.AspNetCore.Http" />
|
||||||
<Using Include="System.Net.Sockets" />
|
<Using Include="System.Net.Sockets" />
|
||||||
<Using Include="System.Text.RegularExpressions" />
|
<Using Include="System.Text.RegularExpressions" />
|
||||||
<Using Include="System.Web" />
|
<Using Include="System.Web" />
|
||||||
|
|||||||
@@ -1,5 +1,4 @@
|
|||||||
using LiteCharms.Features.Abstractions;
|
using LiteCharms.Features.Browser;
|
||||||
using LiteCharms.Features.Browser;
|
|
||||||
using LiteCharms.Features.Hasher;
|
using LiteCharms.Features.Hasher;
|
||||||
using LiteCharms.Features.MidrandBooks.Authors.Models;
|
using LiteCharms.Features.MidrandBooks.Authors.Models;
|
||||||
using LiteCharms.Features.MidrandBooks.Payments.Models;
|
using LiteCharms.Features.MidrandBooks.Payments.Models;
|
||||||
@@ -7,7 +6,7 @@ using LiteCharms.Features.MidrandBooks.Products.Models;
|
|||||||
|
|
||||||
namespace LiteCharms.Features.MidrandBooks.Payments;
|
namespace LiteCharms.Features.MidrandBooks.Payments;
|
||||||
|
|
||||||
public sealed class CartService(LocalStorageService localStorage) : IService
|
public sealed class CartService(LocalStorageService localStorage)
|
||||||
{
|
{
|
||||||
private readonly string CartStorageKey = HashService.ToMd5Hash(nameof(Cart)).Value;
|
private readonly string CartStorageKey = HashService.ToMd5Hash(nameof(Cart)).Value;
|
||||||
|
|
||||||
|
|||||||
@@ -48,6 +48,41 @@ public sealed partial class PayfastService(IDbContextFactory<MidrandBooksDbConte
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
public static bool VerifyIncomingSignature(HttpRequest request, string passphrase)
|
||||||
|
{
|
||||||
|
var formFields = new Dictionary<string, string>(StringComparer.Ordinal);
|
||||||
|
|
||||||
|
foreach (var file in request.Form)
|
||||||
|
formFields.Add(file.Key, file.Value.ToString());
|
||||||
|
|
||||||
|
if (!formFields.TryGetValue("signature", out string? incomingSignature))
|
||||||
|
return false;
|
||||||
|
|
||||||
|
var stringBuilder = new StringBuilder();
|
||||||
|
|
||||||
|
foreach (var key in formFields.Keys)
|
||||||
|
{
|
||||||
|
if (key.Equals("signature", StringComparison.OrdinalIgnoreCase))
|
||||||
|
continue;
|
||||||
|
|
||||||
|
string rawValue = formFields[key] ?? string.Empty;
|
||||||
|
|
||||||
|
string encodedVal = HttpUtility.UrlEncode(rawValue.Trim());
|
||||||
|
string cleanVal = PercentEncodingRegex.Replace(encodedVal, m => m.Value.ToUpperInvariant());
|
||||||
|
|
||||||
|
stringBuilder.Append($"{key}={cleanVal}&");
|
||||||
|
}
|
||||||
|
|
||||||
|
string encodedPassphrase = HttpUtility.UrlEncode(passphrase.Trim());
|
||||||
|
string safePassphrase = PercentEncodingRegex.Replace(encodedPassphrase, m => m.Value.ToUpperInvariant());
|
||||||
|
|
||||||
|
stringBuilder.Append($"passphrase={safePassphrase}");
|
||||||
|
|
||||||
|
string generatedSignature = HashService.ToMd5Hash(stringBuilder.ToString()).Value;
|
||||||
|
|
||||||
|
return incomingSignature.Equals(generatedSignature, StringComparison.OrdinalIgnoreCase);
|
||||||
|
}
|
||||||
|
|
||||||
public async ValueTask<Result<bool>> ValidateReferrerIpAsync(string remoteIpAddress, bool allowLoopback = false, CancellationToken cancellationToken = default)
|
public async ValueTask<Result<bool>> ValidateReferrerIpAsync(string remoteIpAddress, bool allowLoopback = false, CancellationToken cancellationToken = default)
|
||||||
{
|
{
|
||||||
if(payfastOptions.Value?.ValidHosts?.Length == 0)
|
if(payfastOptions.Value?.ValidHosts?.Length == 0)
|
||||||
@@ -147,8 +182,35 @@ public sealed partial class PayfastService(IDbContextFactory<MidrandBooksDbConte
|
|||||||
{
|
{
|
||||||
var pfOutput = new StringBuilder();
|
var pfOutput = new StringBuilder();
|
||||||
|
|
||||||
// Define the exact structural sequence mandated by Payfast's documentation
|
var mandatorySequence = GetPayfastMandatoryFieldSequence();
|
||||||
string[] mandatorySequence =
|
|
||||||
|
foreach (string key in mandatorySequence)
|
||||||
|
{
|
||||||
|
if (data.TryGetValue(key, out string? rawValue) && !string.IsNullOrEmpty(rawValue))
|
||||||
|
{
|
||||||
|
string encodedVal = HttpUtility.UrlEncode(rawValue.Trim());
|
||||||
|
string val = PercentEncodingRegex.Replace(encodedVal, m => m.Value.ToUpperInvariant());
|
||||||
|
|
||||||
|
pfOutput.Append($"{key}={val}&");
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
var getString = pfOutput.Length > 0
|
||||||
|
? pfOutput.ToString()[..^1]
|
||||||
|
: string.Empty;
|
||||||
|
|
||||||
|
if (!string.IsNullOrWhiteSpace(passPhrase))
|
||||||
|
{
|
||||||
|
string encodedPassphrase = HttpUtility.UrlEncode(passPhrase.Trim());
|
||||||
|
string safePassphrase = PercentEncodingRegex.Replace(encodedPassphrase, m => m.Value.ToUpperInvariant());
|
||||||
|
|
||||||
|
getString += $"&passphrase={safePassphrase}";
|
||||||
|
}
|
||||||
|
|
||||||
|
return HashService.ToMd5Hash(getString);
|
||||||
|
}
|
||||||
|
|
||||||
|
private static string[] GetPayfastMandatoryFieldSequence() =>
|
||||||
[
|
[
|
||||||
"merchant_id",
|
"merchant_id",
|
||||||
"merchant_key",
|
"merchant_key",
|
||||||
@@ -182,35 +244,4 @@ public sealed partial class PayfastService(IDbContextFactory<MidrandBooksDbConte
|
|||||||
"frequency",
|
"frequency",
|
||||||
"cycles"
|
"cycles"
|
||||||
];
|
];
|
||||||
|
|
||||||
// 1. Iterate explicitly by the mandatory positional array sequence instead of the dictionary's internal order
|
|
||||||
foreach (string key in mandatorySequence)
|
|
||||||
{
|
|
||||||
// Only append if the key exists in your source dictionary and contains data
|
|
||||||
if (data.TryGetValue(key, out string? rawValue) && !string.IsNullOrEmpty(rawValue))
|
|
||||||
{
|
|
||||||
// Payfast requires spaces to be '+' signs. HttpUtility does this natively.
|
|
||||||
string encodedVal = HttpUtility.UrlEncode(rawValue.Trim());
|
|
||||||
|
|
||||||
// Payfast requires all OTHER percent-encoded hex arrays to be UPPERCASE (e.g., %3A instead of %3a)
|
|
||||||
string val = Regex.Replace(encodedVal, "%[0-9A-Fa-f]{2}", m => m.Value.ToUpperInvariant());
|
|
||||||
|
|
||||||
pfOutput.Append($"{key}={val}&");
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
string getString = pfOutput.Length > 0
|
|
||||||
? pfOutput.ToString()[..^1]
|
|
||||||
: string.Empty;
|
|
||||||
|
|
||||||
if (!string.IsNullOrWhiteSpace(passPhrase))
|
|
||||||
{
|
|
||||||
string encodedPassphrase = HttpUtility.UrlEncode(passPhrase.Trim());
|
|
||||||
string safePassphrase = Regex.Replace(encodedPassphrase, "%[0-9A-Fa-f]{2}", m => m.Value.ToUpperInvariant());
|
|
||||||
|
|
||||||
getString += $"&passphrase={safePassphrase}";
|
|
||||||
}
|
|
||||||
|
|
||||||
return HashService.ToMd5Hash(getString);
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -4,8 +4,6 @@
|
|||||||
"ValidHosts": [
|
"ValidHosts": [
|
||||||
"www.payfast.co.za",
|
"www.payfast.co.za",
|
||||||
"sandbox.payfast.co.za",
|
"sandbox.payfast.co.za",
|
||||||
"w1w.payfast.co.za",
|
|
||||||
"w2w.payfast.co.za",
|
|
||||||
"ips.payfast.co.za",
|
"ips.payfast.co.za",
|
||||||
"api.payfast.co.za",
|
"api.payfast.co.za",
|
||||||
"payment.payfast.io"
|
"payment.payfast.io"
|
||||||
|
|||||||
@@ -1,11 +1,10 @@
|
|||||||
using LiteCharms.Features.Abstractions;
|
using LiteCharms.Features.Api.Configuration;
|
||||||
using LiteCharms.Features.Api.Configuration;
|
|
||||||
using LiteCharms.Features.Api.Models;
|
using LiteCharms.Features.Api.Models;
|
||||||
using LiteCharms.Features.Api.Sdk;
|
using LiteCharms.Features.Api.Sdk;
|
||||||
|
|
||||||
namespace LiteCharms.Features.Api;
|
namespace LiteCharms.Features.Api;
|
||||||
|
|
||||||
public sealed class TokenService(IConnectApi connectApi, IOptions<LiteCharmsClientSettings> clientOptions) : IService
|
public sealed class TokenService(IConnectApi connectApi, IOptions<LiteCharmsClientSettings> clientOptions)
|
||||||
{
|
{
|
||||||
private readonly LiteCharmsClientSettings clientSettings = clientOptions.Value;
|
private readonly LiteCharmsClientSettings clientSettings = clientOptions.Value;
|
||||||
|
|
||||||
|
|||||||
@@ -46,6 +46,8 @@ public static class Api
|
|||||||
options.Retry.BackoffType = Polly.DelayBackoffType.Exponential;
|
options.Retry.BackoffType = Polly.DelayBackoffType.Exponential;
|
||||||
});
|
});
|
||||||
|
|
||||||
|
services.AddScoped<TokenService>();
|
||||||
|
|
||||||
return services;
|
return services;
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user