setInputParameters($inputData); parent::__construct(); } /** * @param string $component * * @return bool|void */ public function main($component = 'contribute') { try { //we only get invoice num as a key player from payment gateway response. //for ARB we get x_subscription_id and x_subscription_paynum $x_subscription_id = $this->retrieve('x_subscription_id', 'String'); if (!$x_subscription_id) { // Presence of the id means it is approved. return TRUE; } $ids = $objects = $input = []; $input['component'] = $component; // load post vars in $input $this->getInput($input, $ids); // load post ids in $ids $this->getIDs($ids, $input); // Attempt to get payment processor ID from URL if (!empty($this->_inputParameters['processor_id'])) { $paymentProcessorID = $this->_inputParameters['processor_id']; } else { // This is an unreliable method as there could be more than one instance. // Recommended approach is to use the civicrm/payment/ipn/xx url where xx is the payment // processor id & the handleNotification function (which should call the completetransaction api & by-pass this // entirely). The only thing the IPN class should really do is extract data from the request, validate it // & call completetransaction or call fail? (which may not exist yet). Civi::log()->warning('Unreliable method used to get payment_processor_id for AuthNet IPN - this will cause problems if you have more than one instance'); $paymentProcessorTypeID = CRM_Core_DAO::getFieldValue('CRM_Financial_DAO_PaymentProcessorType', 'AuthNet', 'id', 'name' ); $paymentProcessorID = (int) civicrm_api3('PaymentProcessor', 'getvalue', [ 'is_test' => 0, 'options' => ['limit' => 1], 'payment_processor_type_id' => $paymentProcessorTypeID, 'return' => 'id', ]); } // Check if the contribution exists // make sure contribution exists and is valid $contribution = new CRM_Contribute_BAO_Contribution(); $contribution->id = $ids['contribution']; if (!$contribution->find(TRUE)) { throw new CRM_Core_Exception('Failure: Could not find contribution record for ' . (int) $contribution->id, NULL, ['context' => "Could not find contribution record: {$contribution->id} in IPN request: " . print_r($input, TRUE)]); } $ids['contributionPage'] = $contribution->contribution_page_id; // make sure contact exists and is valid // use the contact id from the contribution record as the id in the IPN may not be valid anymore. $contact = new CRM_Contact_BAO_Contact(); $contact->id = $contribution->contact_id; $contact->find(TRUE); if ($contact->id != $ids['contact']) { // If the ids do not match then it is possible the contact id in the IPN has been merged into another contact which is why we use the contact_id from the contribution CRM_Core_Error::debug_log_message("Contact ID in IPN {$ids['contact']} not found but contact_id found in contribution {$contribution->contact_id} used instead"); echo "WARNING: Could not find contact record: {$ids['contact']}

"; $ids['contact'] = $contribution->contact_id; } if (!empty($ids['contributionRecur'])) { $contributionRecur = new CRM_Contribute_BAO_ContributionRecur(); $contributionRecur->id = $ids['contributionRecur']; if (!$contributionRecur->find(TRUE)) { CRM_Core_Error::debug_log_message("Could not find contribution recur record: {$ids['ContributionRecur']} in IPN request: " . print_r($input, TRUE)); echo "Failure: Could not find contribution recur record: {$ids['ContributionRecur']}

"; return FALSE; } } $objects['contact'] = &$contact; $objects['contribution'] = &$contribution; $this->loadObjects($input, $ids, $objects, TRUE, $paymentProcessorID); if (!empty($ids['paymentProcessor']) && $objects['contributionRecur']->payment_processor_id != $ids['paymentProcessor']) { Civi::log()->warning('Payment Processor does not match the recurring processor id.', ['civi.tag' => 'deprecated']); } if ($component == 'contribute' && $ids['contributionRecur']) { // check if first contribution is completed, else complete first contribution $first = TRUE; if ($objects['contribution']->contribution_status_id == 1) { $first = FALSE; //load new contribution object if required. // create a contribution and then get it processed $contribution = new CRM_Contribute_BAO_Contribution(); $contribution->contact_id = $ids['contact']; $contribution->financial_type_id = $objects['contributionType']->id; $contribution->contribution_page_id = $ids['contributionPage']; $contribution->contribution_recur_id = $ids['contributionRecur']; $contribution->receive_date = $input['receive_date']; $contribution->currency = $objects['contribution']->currency; $contribution->amount_level = $objects['contribution']->amount_level; $contribution->address_id = $objects['contribution']->address_id; $contribution->campaign_id = $objects['contribution']->campaign_id; $contribution->_relatedObjects = $objects['contribution']->_relatedObjects; $objects['contribution'] = &$contribution; } $input['payment_processor_id'] = $paymentProcessorID; return $this->recur($input, [ 'related_contact' => $ids['related_contact'] ?? NULL, 'participant' => !empty($objects['participant']) ? $objects['participant']->id : NULL, 'contributionRecur' => !empty($objects['contributionRecur']) ? $objects['contributionRecur']->id : NULL, 'contact' => $ids['contact'] ?? NULL, 'contributionPage' => $ids['contributionPage'] ?? NULL, ], $objects['contributionRecur'], $objects['contribution'], $first); } return TRUE; } catch (CRM_Core_Exception $e) { Civi::log()->debug($e->getMessage()); echo 'Invalid or missing data'; } } /** * @param array $input * @param array $ids * @param \CRM_Contribute_BAO_ContributionRecur $recur * @param \CRM_Contribute_BAO_Contribution $contribution * @param bool $first * * @return bool * @throws \CRM_Core_Exception * @throws \CiviCRM_API3_Exception */ public function recur($input, $ids, $recur, $contribution, $first) { // do a subscription check if ($recur->processor_id != $input['subscription_id']) { throw new CRM_Core_Exception('Unrecognized subscription.'); } $contributionStatus = CRM_Contribute_PseudoConstant::contributionStatus(NULL, 'name'); $now = date('YmdHis'); $contribution->invoice_id = md5(uniqid(rand(), TRUE)); $contribution->total_amount = $input['amount']; $contribution->trxn_id = $input['trxn_id']; $isFirstOrLastRecurringPayment = FALSE; if ($input['response_code'] == 1) { // Approved if ($first) { $recur->start_date = $now; $recur->trxn_id = $recur->processor_id; $isFirstOrLastRecurringPayment = CRM_Core_Payment::RECURRING_PAYMENT_START; } if (($recur->installments > 0) && ($input['subscription_paynum'] >= $recur->installments) ) { // this is the last payment $recur->end_date = $now; $isFirstOrLastRecurringPayment = CRM_Core_Payment::RECURRING_PAYMENT_END; // This end date update should occur in ContributionRecur::updateOnNewPayment // testIPNPaymentRecurNoReceipt has test cover. $recur->save(); } } else { // Declined // failed status $recur->contribution_status_id = array_search('Failed', $contributionStatus); $recur->cancel_date = $now; $recur->save(); $message = ts('Subscription payment failed - %1', [1 => htmlspecialchars($input['response_reason_text'])]); CRM_Core_Error::debug_log_message($message); // the recurring contribution has declined a payment or has failed // so we just fix the recurring contribution and not change any of // the existing contributions // CRM-9036 return TRUE; } // check if contribution is already completed, if so we ignore this ipn if ($contribution->contribution_status_id == 1) { CRM_Core_Error::debug_log_message("Returning since contribution has already been handled."); echo 'Success: Contribution has already been handled

'; return TRUE; } CRM_Contribute_BAO_Contribution::completeOrder($input, $ids, $contribution); if ($isFirstOrLastRecurringPayment) { //send recurring Notification email for user CRM_Contribute_BAO_ContributionPage::recurringNotify(TRUE, $ids['contact'], $ids['contributionPage'], $recur, (bool) $this->getMembershipID($contribution->id, $recur->id) ); } } /** * Get the input from passed in fields. * * @param array $input * * @throws \CRM_Core_Exception */ public function getInput(&$input) { $input['amount'] = $this->retrieve('x_amount', 'String'); $input['subscription_id'] = $this->retrieve('x_subscription_id', 'Integer'); $input['response_code'] = $this->retrieve('x_response_code', 'Integer'); $input['MD5_Hash'] = $this->retrieve('x_MD5_Hash', 'String', FALSE, ''); $input['response_reason_code'] = $this->retrieve('x_response_reason_code', 'String', FALSE); $input['response_reason_text'] = $this->retrieve('x_response_reason_text', 'String', FALSE); $input['subscription_paynum'] = $this->retrieve('x_subscription_paynum', 'Integer', FALSE, 0); $input['trxn_id'] = $this->retrieve('x_trans_id', 'String', FALSE); $input['receive_date'] = $this->retrieve('receive_date', 'String', FALSE, date('YmdHis', strtotime('now'))); if ($input['trxn_id']) { $input['is_test'] = 0; } // Only assume trxn_id 'should' have been returned for success. // Per CRM-17611 it would also not be passed back for a decline. elseif ($input['response_code'] == 1) { $input['is_test'] = 1; $input['trxn_id'] = md5(uniqid(rand(), TRUE)); } $billingID = CRM_Core_BAO_LocationType::getBilling(); $params = [ 'first_name' => 'x_first_name', 'last_name' => 'x_last_name', "street_address-{$billingID}" => 'x_address', "city-{$billingID}" => 'x_city', "state-{$billingID}" => 'x_state', "postal_code-{$billingID}" => 'x_zip', "country-{$billingID}" => 'x_country', "email-{$billingID}" => 'x_email', ]; foreach ($params as $civiName => $resName) { $input[$civiName] = $this->retrieve($resName, 'String', FALSE); } } /** * Get ids from input. * * @param array $ids * @param array $input * * @throws \CRM_Core_Exception */ public function getIDs(&$ids, &$input) { $ids['contact'] = $this->retrieve('x_cust_id', 'Integer', FALSE, 0); $ids['contribution'] = (int) $this->retrieve('x_invoice_num', 'Integer'); // joining with contribution table for extra checks $sql = " SELECT cr.id, cr.contact_id FROM civicrm_contribution_recur cr INNER JOIN civicrm_contribution co ON co.contribution_recur_id = cr.id WHERE cr.processor_id = '{$input['subscription_id']}' AND (cr.contact_id = {$ids['contact']} OR co.id = {$ids['contribution']}) LIMIT 1"; $contRecur = CRM_Core_DAO::executeQuery($sql); $contRecur->fetch(); $ids['contributionRecur'] = (int) $contRecur->id; if ($ids['contact'] != $contRecur->contact_id) { $message = ts("Recurring contribution appears to have been re-assigned from id %1 to %2, continuing with %2.", [1 => $ids['contact'], 2 => $contRecur->contact_id]); CRM_Core_Error::debug_log_message($message); $ids['contact'] = $contRecur->contact_id; } if (!$ids['contributionRecur']) { $message = ts("Could not find contributionRecur id"); $log = new CRM_Utils_SystemLogger(); $log->error('payment_notification', ['message' => $message, 'ids' => $ids, 'input' => $input]); throw new CRM_Core_Exception($message); } } /** * @param string $name * Parameter name. * @param string $type * Parameter type. * @param bool $abort * Abort if not present. * @param null $default * Default value. * * @throws CRM_Core_Exception * @return mixed */ public function retrieve($name, $type, $abort = TRUE, $default = NULL) { $value = CRM_Utils_Type::validate( empty($this->_inputParameters[$name]) ? $default : $this->_inputParameters[$name], $type, FALSE ); if ($abort && $value === NULL) { throw new CRM_Core_Exception("Could not find an entry for $name"); } return $value; } /** * Get membership id, if any. * * @param int $contributionID * @param int $contributionRecurID * * @return int|null */ protected function getMembershipID(int $contributionID, int $contributionRecurID): ?int { // Get membershipId. Join with membership payment table for additional checks $sql = " SELECT m.id FROM civicrm_membership m INNER JOIN civicrm_membership_payment mp ON m.id = mp.membership_id AND mp.contribution_id = {$contributionID} WHERE m.contribution_recur_id = {$contributionRecurID} LIMIT 1"; return CRM_Core_DAO::singleValueQuery($sql); } }