CRM-19372 allow payment processors to define an array of accepted credit card types
[civicrm-core.git] / CRM / Core / Payment / eWAY.php
CommitLineData
6a488035
TO
1<?php
2/*
3 +--------------------------------------------------------------------+
7e9e8871 4 | CiviCRM version 4.7 |
6a488035
TO
5 +--------------------------------------------------------------------+
6 | This file is a part of CiviCRM. |
7 | |
8 | CiviCRM is free software; you can copy, modify, and distribute it |
9 | under the terms of the GNU Affero General Public License |
10 | Version 3, 19 November 2007 and the CiviCRM Licensing Exception. |
11 | |
12 | CiviCRM is distributed in the hope that it will be useful, but |
13 | WITHOUT ANY WARRANTY; without even the implied warranty of |
14 | MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. |
15 | See the GNU Affero General Public License for more details. |
16 | |
17 | You should have received a copy of the GNU Affero General Public |
18 | License and the CiviCRM Licensing Exception along |
19 | with this program; if not, contact CiviCRM LLC |
20 | at info[AT]civicrm[DOT]org. If you have questions about the |
21 | GNU Affero General Public License or the licensing of CiviCRM, |
22 | see the CiviCRM license FAQ at http://civicrm.org/licensing |
23 +--------------------------------------------------------------------+
d25dd0ee 24 */
6a488035
TO
25
26
27/*
28 +--------------------------------------------------------------------+
7e9e8871 29 | eWAY Core Payment Module for CiviCRM version 4.7 & 1.9 |
6a488035
TO
30 +--------------------------------------------------------------------+
31 | Licensed to CiviCRM under the Academic Free License version 3.0 |
32 | |
33 | Written & Contributed by Dolphin Software P/L - March 2008 |
34 +--------------------------------------------------------------------+
35 | |
36 | This file is a part of CiviCRM. |
37 | |
38 | This code was initially based on the recent PayJunction module |
39 | contributed by Phase2 Technology, and then plundered bits from |
40 | the AuthorizeNet module contributed by Ideal Solution, and |
41 | referenced the eWAY code in Drupal 5.7's ecommerce-5.x-3.4 and |
42 | ecommerce-5.x-4.x-dev modules. |
43 | |
44 | Plus a bit of our own code of course - Peter Barwell |
45 | contact PB@DolphinSoftware.com.au if required. |
46 | |
b44e3f84 47 | NOTE: This initial eWAY module does not yet allow for recurring |
6a488035
TO
48 | payments - contact Peter Barwell or add yourself (or both) |
49 | |
50 | NOTE: The eWAY gateway only allows a single currency per account |
51 | (per eWAY CustomerID) ie you can only have one currency per |
52 | added Payment Processor. |
53 | The only way to add multi-currency is to code it so that a |
54 | different CustomerID is used per currency. |
55 | |
56 +--------------------------------------------------------------------+
e70a7fc0 57 */
6a488035
TO
58
59/**
353ffa53
TO
60 * -----------------------------------------------------------------------------------------------
61 * From the eWAY supplied 'Web.config' dated 25-Sep-2006 - check date and update links if required
62 * -----------------------------------------------------------------------------------------------
63 *
64 * LIVE gateway with CVN
65 * https://www.eway.com.au/gateway_cvn/xmlpayment.asp
66 *
67 * LIVE gateway without CVN
68 * https://www.eway.com.au/gateway/xmlpayment.asp
69 *
70 *
71 * Test gateway with CVN
72 * https://www.eway.com.au/gateway_cvn/xmltest/TestPage.asp
73 *
74 * Test gateway without CVN
75 * https://www.eway.com.au/gateway/xmltest/TestPage.asp
76 *
77 *
78 * LIVE gateway for Stored Transactions
79 * https://www.eway.com.au/gateway/xmlstored.asp
80 *
81 *
82 * -----------------------------------------------------------------------------------------------
83 * From the eWAY web-site - http://www.eway.com.au/Support/Developer/PaymentsRealTime.aspx
84 * -----------------------------------------------------------------------------------------------
85 * The test Customer ID is 87654321 - this is the only ID that will work on the test gateway.
86 * The test Credit Card number is 4444333322221111
87 * - this is the only credit card number that will work on the test gateway.
88 * The test Total Amount should end in 00 or 08 to get a successful response (e.g. $10.00 or $10.08)
89 * ie - all other amounts will return a failed response.
90 *
91 * -----------------------------------------------------------------------------------------------
c301f76e 92 */
404d48bf 93
94// require Standard eWAY API libraries
95require_once 'eWAY/eWAY_GatewayRequest.php';
96require_once 'eWAY/eWAY_GatewayResponse.php';
97
6a488035
TO
98class CRM_Core_Payment_eWAY extends CRM_Core_Payment {
99 # (not used, implicit in the API, might need to convert?)
7da04cde 100 const CHARSET = 'UTF-8';
6a488035
TO
101
102 /**
103 * We only need one instance of this object. So we use the singleton
104 * pattern and cache the instance in this variable
105 *
106 * @var object
6a488035
TO
107 */
108 static private $_singleton = NULL;
109
c301f76e 110 /**
111 * *******************************************************
6a488035
TO
112 * Constructor
113 *
6a0b768e
TO
114 * @param string $mode
115 * The mode of operation: live or test.
6a488035 116 *
c301f76e 117 * @param int $paymentProcessor
dd244018 118 *
c301f76e 119 * *******************************************************
dd244018 120 */
00be9182 121 public function __construct($mode, &$paymentProcessor) {
6a488035
TO
122
123 // live or test
124 $this->_mode = $mode;
125 $this->_paymentProcessor = $paymentProcessor;
126 $this->_processorName = ts('eWay');
127 }
128
c301f76e 129 /**
ad37ac8e 130 * Sends request and receive response from eWAY payment process.
131 *
132 * @param array $params
133 *
134 * @return array|object
135 * @throws \Exception
c301f76e 136 */
00be9182 137 public function doDirectPayment(&$params) {
d597ad57 138 if (CRM_Utils_Array::value('is_recur', $params) == TRUE) {
6a488035
TO
139 CRM_Core_Error::fatal(ts('eWAY - recurring payments not implemented'));
140 }
141
142 if (!defined('CURLOPT_SSLCERT')) {
143 CRM_Core_Error::fatal(ts('eWAY - Gateway requires curl with SSL support'));
144 }
145
146 // eWAY Client ID
147 $ewayCustomerID = $this->_paymentProcessor['user_name'];
148 // eWAY Gateway URL
149 $gateway_URL = $this->_paymentProcessor['url_site'];
150
151 //------------------------------------
152 // create eWAY gateway objects
153 //------------------------------------
c301f76e 154 $eWAYRequest = new GatewayRequest();
6a488035
TO
155
156 if (($eWAYRequest == NULL) || (!($eWAYRequest instanceof GatewayRequest))) {
157 return self::errorExit(9001, "Error: Unable to create eWAY Request object.");
158 }
159
c301f76e 160 $eWAYResponse = new GatewayResponse();
6a488035
TO
161
162 if (($eWAYResponse == NULL) || (!($eWAYResponse instanceof GatewayResponse))) {
163 return self::errorExit(9002, "Error: Unable to create eWAY Response object.");
164 }
165
166 /*
e70a7fc0
TO
167 //-------------------------------------------------------------
168 // NOTE: eWAY Doesn't use the following at the moment:
169 //-------------------------------------------------------------
170 $creditCardType = $params['credit_card_type'];
171 $currentcyID = $params['currencyID'];
172 $country = $params['country'];
173 */
6a488035 174
6a488035
TO
175 //-------------------------------------------------------------
176 // Prepare some composite data from _paymentProcessor fields
177 //-------------------------------------------------------------
178 $fullAddress = $params['street_address'] . ", " . $params['city'] . ", " . $params['state_province'] . ".";
353ffa53 179 $expireYear = substr($params['year'], 2, 2);
6a488035
TO
180 $expireMonth = sprintf('%02d', (int) $params['month']);
181 // CiviCRM V1.9 - Picks up reasonable description
182 //$description = $params['amount_level'];
183 // CiviCRM V2.0 - Picks up description
184 $description = $params['description'];
185 $txtOptions = "";
186
187 $amountInCents = round(((float) $params['amount']) * 100);
188
189 $credit_card_name = $params['first_name'] . " ";
190 if (strlen($params['middle_name']) > 0) {
191 $credit_card_name .= $params['middle_name'] . " ";
192 }
193 $credit_card_name .= $params['last_name'];
194
195 //----------------------------------------------------------------------------------------------------
196 // We use CiviCRM's param's 'invoiceID' as the unique transaction token to feed to eWAY
197 // Trouble is that eWAY only accepts 16 chars for the token, while CiviCRM's invoiceID is an 32.
198 // As its made from a "$invoiceID = md5(uniqid(rand(), true));" then using the fierst 16 chars
199 // should be alright
200 //----------------------------------------------------------------------------------------------------
201 $uniqueTrnxNum = substr($params['invoiceID'], 0, 16);
202
203 //----------------------------------------------------------------------------------------------------
204 // OPTIONAL: If TEST Card Number force an Override of URL and CutomerID.
205 // During testing CiviCRM once used the LIVE URL.
206 // This code can be uncommented to override the LIVE URL that if CiviCRM does that again.
207 //----------------------------------------------------------------------------------------------------
208 // if ( ( $gateway_URL == "https://www.eway.com.au/gateway_cvn/xmlpayment.asp")
209 // && ( $params['credit_card_number'] == "4444333322221111" ) ) {
210 // $ewayCustomerID = "87654321";
211 // $gateway_URL = "https://www.eway.com.au/gateway_cvn/xmltest/testpage.asp";
212 // }
213
214 //----------------------------------------------------------------------------------------------------
215 // Now set the payment details - see http://www.eway.com.au/Support/Developer/PaymentsRealTime.aspx
216 //----------------------------------------------------------------------------------------------------
217 // 8 Chars - ewayCustomerID - Required
218 $eWAYRequest->EwayCustomerID($ewayCustomerID);
219 // 12 Chars - ewayTotalAmount (in cents) - Required
220 $eWAYRequest->InvoiceAmount($amountInCents);
221 // 50 Chars - ewayCustomerFirstName
222 $eWAYRequest->PurchaserFirstName($params['first_name']);
223 // 50 Chars - ewayCustomerLastName
224 $eWAYRequest->PurchaserLastName($params['last_name']);
225 // 50 Chars - ewayCustomerEmail
226 $eWAYRequest->PurchaserEmailAddress($params['email']);
227 // 255 Chars - ewayCustomerAddress
228 $eWAYRequest->PurchaserAddress($fullAddress);
229 // 6 Chars - ewayCustomerPostcode
230 $eWAYRequest->PurchaserPostalCode($params['postal_code']);
231 // 1000 Chars - ewayCustomerInvoiceDescription
232 $eWAYRequest->InvoiceDescription($description);
233 // 50 Chars - ewayCustomerInvoiceRef
234 $eWAYRequest->InvoiceReference($params['invoiceID']);
235 // 50 Chars - ewayCardHoldersName - Required
236 $eWAYRequest->CardHolderName($credit_card_name);
237 // 20 Chars - ewayCardNumber - Required
238 $eWAYRequest->CardNumber($params['credit_card_number']);
239 // 2 Chars - ewayCardExpiryMonth - Required
240 $eWAYRequest->CardExpiryMonth($expireMonth);
241 // 2 Chars - ewayCardExpiryYear - Required
242 $eWAYRequest->CardExpiryYear($expireYear);
243 // 4 Chars - ewayCVN - Required if CVN Gateway used
244 $eWAYRequest->CVN($params['cvv2']);
245 // 16 Chars - ewayTrxnNumber
246 $eWAYRequest->TransactionNumber($uniqueTrnxNum);
247 // 255 Chars - ewayOption1
248 $eWAYRequest->EwayOption1($txtOptions);
249 // 255 Chars - ewayOption2
250 $eWAYRequest->EwayOption2($txtOptions);
251 // 255 Chars - ewayOption3
252 $eWAYRequest->EwayOption3($txtOptions);
253
254 $eWAYRequest->CustomerIPAddress($params['ip_address']);
255 $eWAYRequest->CustomerBillingCountry($params['country']);
256
257 // Allow further manipulation of the arguments via custom hooks ..
258 CRM_Utils_Hook::alterPaymentProcessorParams($this, $params, $eWAYRequest);
259
260 //----------------------------------------------------------------------------------------------------
261 // Check to see if we have a duplicate before we send
262 //----------------------------------------------------------------------------------------------------
d253aeb8 263 if ($this->checkDupe($params['invoiceID'], CRM_Utils_Array::value('contributionID', $params))) {
6a488035
TO
264 return self::errorExit(9003, 'It appears that this transaction is a duplicate. Have you already submitted the form once? If so there may have been a connection problem. Check your email for a receipt from eWAY. If you do not receive a receipt within 2 hours you can try your transaction again. If you continue to have problems please contact the site administrator.');
265 }
266
267 //----------------------------------------------------------------------------------------------------
268 // Convert to XML and send the payment information
269 //----------------------------------------------------------------------------------------------------
270 $requestxml = $eWAYRequest->ToXML();
271
272 $submit = curl_init($gateway_URL);
273
274 if (!$submit) {
275 return self::errorExit(9004, 'Could not initiate connection to payment gateway');
276 }
277
278 curl_setopt($submit, CURLOPT_POST, TRUE);
279 // return the result on success, FALSE on failure
280 curl_setopt($submit, CURLOPT_RETURNTRANSFER, TRUE);
281 curl_setopt($submit, CURLOPT_POSTFIELDS, $requestxml);
282 curl_setopt($submit, CURLOPT_TIMEOUT, 36000);
283 // if open_basedir or safe_mode are enabled in PHP settings CURLOPT_FOLLOWLOCATION won't work so don't apply it
284 // it's not really required CRM-5841
285 if (ini_get('open_basedir') == '' && ini_get('safe_mode' == 'Off')) {
286 // ensures any Location headers are followed
287 curl_setopt($submit, CURLOPT_FOLLOWLOCATION, 1);
288 }
289
290 // Send the data out over the wire
291 //--------------------------------
292 $responseData = curl_exec($submit);
293
294 //----------------------------------------------------------------------------------------------------
295 // See if we had a curl error - if so tell 'em and bail out
296 //
297 // NOTE: curl_error does not return a logical value (see its documentation), but
298 // a string, which is empty when there was no error.
299 //----------------------------------------------------------------------------------------------------
300 if ((curl_errno($submit) > 0) || (strlen(curl_error($submit)) > 0)) {
301 $errorNum = curl_errno($submit);
302 $errorDesc = curl_error($submit);
303
304 // Paranoia - in the unlikley event that 'curl' errno fails
2aa397bc
TO
305 if ($errorNum == 0) {
306 $errorNum = 9005;
307 }
6a488035
TO
308
309 // Paranoia - in the unlikley event that 'curl' error fails
2aa397bc
TO
310 if (strlen($errorDesc) == 0) {
311 $errorDesc = "Connection to eWAY payment gateway failed";
312 }
6a488035
TO
313
314 return self::errorExit($errorNum, $errorDesc);
315 }
316
317 //----------------------------------------------------------------------------------------------------
318 // If null data returned - tell 'em and bail out
319 //
320 // NOTE: You will not necessarily get a string back, if the request failed for
321 // any reason, the return value will be the boolean false.
322 //----------------------------------------------------------------------------------------------------
323 if (($responseData === FALSE) || (strlen($responseData) == 0)) {
324 return self::errorExit(9006, "Error: Connection to payment gateway failed - no data returned.");
325 }
326
327 //----------------------------------------------------------------------------------------------------
328 // If gateway returned no data - tell 'em and bail out
329 //----------------------------------------------------------------------------------------------------
330 if (empty($responseData)) {
331 return self::errorExit(9007, "Error: No data returned from payment gateway.");
332 }
333
334 //----------------------------------------------------------------------------------------------------
335 // Success so far - close the curl and check the data
336 //----------------------------------------------------------------------------------------------------
337 curl_close($submit);
338
339 //----------------------------------------------------------------------------------------------------
ceb10dc7 340 // Payment successfully sent to gateway - process the response now
6a488035
TO
341 //----------------------------------------------------------------------------------------------------
342 $eWAYResponse->ProcessResponse($responseData);
343
344 //----------------------------------------------------------------------------------------------------
345 // See if we got an OK result - if not tell 'em and bail out
346 //----------------------------------------------------------------------------------------------------
347 if (self::isError($eWAYResponse)) {
348 $eWayTrxnError = $eWAYResponse->Error();
09e49db4 349 CRM_Core_Error::debug_var('eWay Error', $eWayTrxnError, TRUE, TRUE);
6a488035
TO
350 if (substr($eWayTrxnError, 0, 6) == "Error:") {
351 return self::errorExit(9008, $eWayTrxnError);
352 }
353 $eWayErrorCode = substr($eWayTrxnError, 0, 2);
354 $eWayErrorDesc = substr($eWayTrxnError, 3);
355
356 return self::errorExit(9008, "Error: [" . $eWayErrorCode . "] - " . $eWayErrorDesc . ".");
357 }
358
359 //-----------------------------------------------------------------------------------------------------
360 // Cross-Check - the unique 'TrxnReference' we sent out should match the just received 'TrxnReference'
361 //
362 // PLEASE NOTE: If this occurs (which is highly unlikely) its a serious error as it would mean we have
363 // received an OK status from eWAY, but their Gateway has not returned the correct unique
364 // token - ie something is broken, BUT money has been taken from the client's account,
365 // so we can't very well error-out as CiviCRM will then not process the registration.
b44e3f84 366 // There is an error message commented out here but my preferred response to this unlikley
6a488035
TO
367 // possibility is to email 'support@eWAY.com.au'
368 //-----------------------------------------------------------------------------------------------------
369 $eWayTrxnReference_OUT = $eWAYRequest->GetTransactionNumber();
370 $eWayTrxnReference_IN = $eWAYResponse->InvoiceReference();
371
372 if ($eWayTrxnReference_IN != $eWayTrxnReference_OUT) {
373 // return self::errorExit( 9009, "Error: Unique Trxn code was not returned by eWAY Gateway. This is extremely unusual! Please contact the administrator of this site immediately with details of this transaction.");
374
6a488035
TO
375 }
376
377 /*
e70a7fc0
TO
378 //----------------------------------------------------------------------------------------------------
379 // Test mode always returns trxn_id = 0 - so we fix that here
380 //
381 // NOTE: This code was taken from the AuthorizeNet payment processor, however it now appears
b44e3f84 382 // unnecessary for the eWAY gateway - Left here in case it proves useful
e70a7fc0
TO
383 //----------------------------------------------------------------------------------------------------
384 if ( $this->_mode == 'test' ) {
385 $query = "SELECT MAX(trxn_id) FROM civicrm_contribution WHERE trxn_id LIKE 'test%'";
386 $p = array( );
387 $trxn_id = strval( CRM_Core_Dao::singleValueQuery( $query, $p ) );
388 $trxn_id = str_replace( 'test', '', $trxn_id );
389 $trxn_id = intval($trxn_id) + 1;
390 $params['trxn_id'] = sprintf('test%08d', $trxn_id);
391 }
392 else {
393 $params['trxn_id'] = $eWAYResponse->TransactionNumber();
394 }
395 */
6a488035 396
6a488035
TO
397 //=============
398 // Success !
399 //=============
400 $beaglestatus = $eWAYResponse->BeagleScore();
401 if (!empty($beaglestatus)) {
402 $beaglestatus = ": " . $beaglestatus;
403 }
404 $params['trxn_result_code'] = $eWAYResponse->Status() . $beaglestatus;
405 $params['gross_amount'] = $eWAYResponse->Amount();
406 $params['trxn_id'] = $eWAYResponse->TransactionNumber();
407
408 return $params;
409 }
410 // end function doDirectPayment
411
c301f76e 412 /**
ad37ac8e 413 * Checks the eWAY response status - returning a boolean false if status != 'true'.
414 *
415 * @param object $response
416 *
417 * @return bool
c301f76e 418 */
00be9182 419 public function isError(&$response) {
6a488035
TO
420 $status = $response->Status();
421
422 if ((stripos($status, "true")) === FALSE) {
423 return TRUE;
424 }
425 return FALSE;
426 }
427
c301f76e 428 /**
ea3ddccf 429 * Produces error message and returns from class.
430 *
431 * @param int $errorCode
432 * @param string $errorMessage
433 *
434 * @return object
c301f76e 435 */
00be9182 436 public function &errorExit($errorCode = NULL, $errorMessage = NULL) {
6a488035
TO
437 $e = CRM_Core_Error::singleton();
438
439 if ($errorCode) {
440 $e->push($errorCode, 0, NULL, $errorMessage);
441 }
442 else {
443 $e->push(9000, 0, NULL, 'Unknown System Error.');
444 }
445 return $e;
446 }
447
c301f76e 448 /**
449 * *****************************************************************************************
6a488035
TO
450 * This public function checks to see if we have the right processor config values set
451 *
452 * NOTE: Called by Events and Contribute to check config params are set prior to trying
453 * register any credit card details
454 *
77b97be7
EM
455 * @return null|string
456 * @internal param string $mode the mode we are operating in (live or test) - not used but could be
6a488035
TO
457 * to check that the 'test' mode CustomerID was equal to '87654321' and that the URL was
458 * set to https://www.eway.com.au/gateway_cvn/xmltest/TestPage.asp
459 *
460 * returns string $errorMsg if any errors found - null if OK
461 *
c301f76e 462 * *****************************************************************************************
77b97be7 463 */
00be9182 464 public function checkConfig() {
6a488035
TO
465 $errorMsg = array();
466
467 if (empty($this->_paymentProcessor['user_name'])) {
468 $errorMsg[] = ts('eWAY CustomerID is not set for this payment processor');
469 }
470
471 if (empty($this->_paymentProcessor['url_site'])) {
472 $errorMsg[] = ts('eWAY Gateway URL is not set for this payment processor');
473 }
474
475 if (!empty($errorMsg)) {
476 return implode('<p>', $errorMsg);
477 }
478 else {
479 return NULL;
480 }
481 }
482
6a488035
TO
483}
484// end class CRM_Core_Payment_eWAY