2021-01-14 01:47:56 +01:00
|
|
|
/*
|
|
|
|
This file is part of GNU Taler
|
|
|
|
(C) 2020 Taler Systems S.A.
|
|
|
|
|
|
|
|
GNU Taler is free software; you can redistribute it and/or modify it under the
|
|
|
|
terms of the GNU General Public License as published by the Free Software
|
|
|
|
Foundation; either version 3, or (at your option) any later version.
|
|
|
|
|
|
|
|
GNU Taler is distributed in the hope that it will be useful, but WITHOUT ANY
|
|
|
|
WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR
|
|
|
|
A PARTICULAR PURPOSE. See the GNU General Public License for more details.
|
|
|
|
|
|
|
|
You should have received a copy of the GNU General Public License along with
|
|
|
|
GNU Taler; see the file COPYING. If not, see <http://www.gnu.org/licenses/>
|
|
|
|
*/
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Imports.
|
|
|
|
*/
|
|
|
|
import {
|
|
|
|
BankService,
|
|
|
|
ExchangeService,
|
|
|
|
GlobalTestState,
|
|
|
|
MerchantPrivateApi,
|
|
|
|
MerchantService,
|
|
|
|
setupDb,
|
|
|
|
WalletCli,
|
2021-11-13 12:53:48 +01:00
|
|
|
getPayto
|
2021-10-20 13:06:31 +02:00
|
|
|
} from "../harness/harness.js";
|
2021-01-14 01:47:56 +01:00
|
|
|
import {
|
|
|
|
withdrawViaBank,
|
|
|
|
createFaultInjectedMerchantTestkudosEnvironment,
|
|
|
|
FaultyMerchantTestEnvironment,
|
2021-10-20 13:06:31 +02:00
|
|
|
} from "../harness/helpers.js";
|
2021-01-14 01:47:56 +01:00
|
|
|
import {
|
|
|
|
PreparePayResultType,
|
|
|
|
codecForMerchantOrderStatusUnpaid,
|
|
|
|
ConfirmPayResultType,
|
2021-03-17 17:56:37 +01:00
|
|
|
} from "@gnu-taler/taler-util";
|
2021-01-14 01:47:56 +01:00
|
|
|
import axios from "axios";
|
|
|
|
import {
|
|
|
|
FaultInjectedExchangeService,
|
|
|
|
FaultInjectedMerchantService,
|
|
|
|
FaultInjectionRequestContext,
|
2021-10-20 13:06:31 +02:00
|
|
|
} from "../harness/faultInjection";
|
|
|
|
import { defaultCoinConfig } from "../harness/denomStructures";
|
2021-06-17 13:34:59 +02:00
|
|
|
import { WalletApiOperation } from "@gnu-taler/taler-wallet-core";
|
2021-08-06 11:45:08 +02:00
|
|
|
import { URL } from "url";
|
2021-01-14 01:47:56 +01:00
|
|
|
|
|
|
|
/**
|
|
|
|
* Run a test case with a simple TESTKUDOS Taler environment, consisting
|
|
|
|
* of one exchange, one bank and one merchant.
|
|
|
|
*/
|
|
|
|
export async function createConfusedMerchantTestkudosEnvironment(
|
|
|
|
t: GlobalTestState,
|
|
|
|
): Promise<FaultyMerchantTestEnvironment> {
|
|
|
|
const db = await setupDb(t);
|
|
|
|
|
|
|
|
const bank = await BankService.create(t, {
|
|
|
|
allowRegistrations: true,
|
|
|
|
currency: "TESTKUDOS",
|
|
|
|
database: db.connStr,
|
|
|
|
httpPort: 8082,
|
|
|
|
});
|
|
|
|
|
|
|
|
const exchange = ExchangeService.create(t, {
|
|
|
|
name: "testexchange-1",
|
|
|
|
currency: "TESTKUDOS",
|
|
|
|
httpPort: 8081,
|
|
|
|
database: db.connStr,
|
|
|
|
});
|
|
|
|
|
|
|
|
const merchant = await MerchantService.create(t, {
|
|
|
|
name: "testmerchant-1",
|
|
|
|
currency: "TESTKUDOS",
|
|
|
|
httpPort: 8083,
|
|
|
|
database: db.connStr,
|
|
|
|
});
|
|
|
|
|
|
|
|
const faultyMerchant = new FaultInjectedMerchantService(t, merchant, 9083);
|
|
|
|
const faultyExchange = new FaultInjectedExchangeService(t, exchange, 9081);
|
|
|
|
|
|
|
|
const exchangeBankAccount = await bank.createExchangeAccount(
|
2021-11-13 12:53:48 +01:00
|
|
|
"myexchange",
|
2021-01-14 01:47:56 +01:00
|
|
|
"x",
|
|
|
|
);
|
|
|
|
exchange.addBankAccount("1", exchangeBankAccount);
|
|
|
|
|
|
|
|
bank.setSuggestedExchange(
|
|
|
|
faultyExchange,
|
|
|
|
exchangeBankAccount.accountPaytoUri,
|
|
|
|
);
|
|
|
|
|
|
|
|
await bank.start();
|
|
|
|
|
|
|
|
await bank.pingUntilAvailable();
|
|
|
|
|
|
|
|
exchange.addOfferedCoins(defaultCoinConfig);
|
|
|
|
|
|
|
|
await exchange.start();
|
|
|
|
await exchange.pingUntilAvailable();
|
|
|
|
|
|
|
|
// Confuse the merchant by adding the non-proxied exchange.
|
|
|
|
merchant.addExchange(exchange);
|
|
|
|
|
|
|
|
await merchant.start();
|
|
|
|
await merchant.pingUntilAvailable();
|
|
|
|
|
|
|
|
await merchant.addInstance({
|
|
|
|
id: "default",
|
|
|
|
name: "Default Instance",
|
2021-11-13 12:53:48 +01:00
|
|
|
paytoUris: [getPayto("merchant-default")],
|
2021-01-14 01:47:56 +01:00
|
|
|
});
|
|
|
|
|
2021-05-21 12:03:09 +02:00
|
|
|
await merchant.addInstance({
|
|
|
|
id: "minst1",
|
|
|
|
name: "minst1",
|
2021-11-13 12:53:48 +01:00
|
|
|
paytoUris: [getPayto("minst1")]
|
2021-05-21 12:03:09 +02:00
|
|
|
});
|
|
|
|
|
2021-01-14 01:47:56 +01:00
|
|
|
console.log("setup done!");
|
|
|
|
|
|
|
|
const wallet = new WalletCli(t);
|
|
|
|
|
|
|
|
return {
|
|
|
|
commonDb: db,
|
|
|
|
exchange,
|
|
|
|
merchant,
|
|
|
|
wallet,
|
|
|
|
bank,
|
|
|
|
exchangeBankAccount,
|
|
|
|
faultyMerchant,
|
|
|
|
faultyExchange,
|
|
|
|
};
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Confuse the merchant by having one URL for the same exchange in the config,
|
|
|
|
* but sending coins from the same exchange with a different URL.
|
|
|
|
*/
|
|
|
|
export async function runMerchantExchangeConfusionTest(t: GlobalTestState) {
|
|
|
|
// Set up test environment
|
|
|
|
|
|
|
|
const {
|
|
|
|
wallet,
|
|
|
|
bank,
|
|
|
|
faultyExchange,
|
|
|
|
faultyMerchant,
|
|
|
|
} = await createConfusedMerchantTestkudosEnvironment(t);
|
|
|
|
|
|
|
|
// Withdraw digital cash into the wallet.
|
|
|
|
|
|
|
|
await withdrawViaBank(t, {
|
|
|
|
wallet,
|
|
|
|
bank,
|
|
|
|
exchange: faultyExchange,
|
|
|
|
amount: "TESTKUDOS:20",
|
|
|
|
});
|
|
|
|
|
|
|
|
/**
|
|
|
|
* =========================================================================
|
|
|
|
* Create an order and let the wallet pay under a session ID
|
|
|
|
*
|
|
|
|
* We check along the way that the JSON response to /orders/{order_id}
|
|
|
|
* returns the right thing.
|
|
|
|
* =========================================================================
|
|
|
|
*/
|
|
|
|
|
|
|
|
const merchant = faultyMerchant;
|
|
|
|
|
|
|
|
let orderResp = await MerchantPrivateApi.createOrder(merchant, "default", {
|
|
|
|
order: {
|
|
|
|
summary: "Buy me!",
|
|
|
|
amount: "TESTKUDOS:5",
|
|
|
|
fulfillment_url: "https://example.com/article42",
|
|
|
|
},
|
|
|
|
});
|
|
|
|
|
|
|
|
let orderStatus = await MerchantPrivateApi.queryPrivateOrderStatus(merchant, {
|
|
|
|
orderId: orderResp.order_id,
|
|
|
|
sessionId: "mysession-one",
|
|
|
|
});
|
|
|
|
|
|
|
|
t.assertTrue(orderStatus.order_status === "unpaid");
|
|
|
|
|
|
|
|
t.assertTrue(orderStatus.already_paid_order_id === undefined);
|
|
|
|
let publicOrderStatusUrl = orderStatus.order_status_url;
|
|
|
|
|
|
|
|
let publicOrderStatusResp = await axios.get(publicOrderStatusUrl, {
|
|
|
|
validateStatus: () => true,
|
|
|
|
});
|
|
|
|
|
|
|
|
if (publicOrderStatusResp.status != 402) {
|
|
|
|
throw Error(
|
|
|
|
`expected status 402 (before claiming), but got ${publicOrderStatusResp.status}`,
|
|
|
|
);
|
|
|
|
}
|
|
|
|
|
|
|
|
let pubUnpaidStatus = codecForMerchantOrderStatusUnpaid().decode(
|
|
|
|
publicOrderStatusResp.data,
|
|
|
|
);
|
|
|
|
|
|
|
|
console.log(pubUnpaidStatus);
|
|
|
|
|
2021-06-17 13:34:59 +02:00
|
|
|
let preparePayResp = await wallet.client.call(
|
|
|
|
WalletApiOperation.PreparePayForUri,
|
|
|
|
{
|
|
|
|
talerPayUri: pubUnpaidStatus.taler_pay_uri,
|
|
|
|
},
|
|
|
|
);
|
2021-01-14 01:47:56 +01:00
|
|
|
|
|
|
|
t.assertTrue(preparePayResp.status === PreparePayResultType.PaymentPossible);
|
|
|
|
|
|
|
|
const proposalId = preparePayResp.proposalId;
|
|
|
|
|
2021-08-06 11:45:08 +02:00
|
|
|
const orderUrlWithHash = new URL(publicOrderStatusUrl);
|
|
|
|
orderUrlWithHash.searchParams.set("h_contract", preparePayResp.contractTermsHash);
|
2021-08-04 18:40:39 +02:00
|
|
|
|
2021-08-06 11:45:08 +02:00
|
|
|
console.log("requesting", orderUrlWithHash.href);
|
|
|
|
|
|
|
|
publicOrderStatusResp = await axios.get(orderUrlWithHash.href, {
|
2021-01-14 01:47:56 +01:00
|
|
|
validateStatus: () => true,
|
|
|
|
});
|
|
|
|
|
|
|
|
if (publicOrderStatusResp.status != 402) {
|
|
|
|
throw Error(
|
|
|
|
`expected status 402 (after claiming), but got ${publicOrderStatusResp.status}`,
|
|
|
|
);
|
|
|
|
}
|
|
|
|
|
|
|
|
pubUnpaidStatus = codecForMerchantOrderStatusUnpaid().decode(
|
|
|
|
publicOrderStatusResp.data,
|
|
|
|
);
|
|
|
|
|
2021-06-17 13:34:59 +02:00
|
|
|
const confirmPayRes = await wallet.client.call(
|
|
|
|
WalletApiOperation.ConfirmPay,
|
|
|
|
{
|
|
|
|
proposalId: proposalId,
|
|
|
|
},
|
|
|
|
);
|
2021-01-14 01:47:56 +01:00
|
|
|
|
|
|
|
t.assertTrue(confirmPayRes.type === ConfirmPayResultType.Done);
|
|
|
|
}
|
2021-03-02 14:19:01 +01:00
|
|
|
|
|
|
|
runMerchantExchangeConfusionTest.suites = ["merchant"];
|