summaryrefslogtreecommitdiff
path: root/src/frontend_blog/essay_pay.php
blob: 1e01742855671cf5884e39c4968974ad90cbf7c2 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
<?php
/*
  This file is part of GNU TALER.
  Copyright (C) 2014, 2015 GNUnet e.V.

  TALER is free software; you can redistribute it and/or modify it under the
  terms of the GNU Lesser General Public License as published by the Free Software
  Foundation; either version 2.1, or (at your option) any later version.

  TALER is distributed in the hope that it will be useful, but WITHOUT ANY
  WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR
  A PARTICULAR PURPOSE.  See the GNU Lesser General Public License for more details.

  You should have received a copy of the GNU Lesser General Public License along with
  TALER; see the file COPYING.  If not, If not, see <http://www.gnu.org/licenses/>
*/

/**
 * This file should:
 * 1. Check if the session is valid
 * 2. augment the deposit permission with missing values
 * 3. forward payment to backend
 */
include("../frontend_lib/merchants.php");
include("../frontend_lib/util.php");
include("./blog_lib.php");

session_start();
if (!isset($_SESSION['H_contract']))
{
  echo "No session active.";
  http_response_code (301);
  return;
}

if (isset($_SESSION['payment_ok']) && $_SESSION['payment_ok'] == true)
{
  $_SESSION['payment_ok'] = true;
  http_response_code (301);
  $url = (new http\URL($_SERVER['REQUEST_SCHEME'].'://'.$_SERVER['HTTP_HOST'].$_SERVER['REQUEST_URI']))
    ->mod(array ("path" => "essay_fulfillment.php?article=".$_SESSION['article']), http\Url::JOIN_PATH);
  header("Location: $url");
  die();
}

$article = $_SESSION['article'];
$post_body = file_get_contents('php://input');
$deposit_permission = json_decode ($post_body, true);
$to_add = array('max_fee' => array('value' => 3,
                                   'fraction' => 8,
                                   'currency' => $_SESSION['article_currency']),
                'amount' => array('value' => $_SESSION['article_value'],
                                  'fraction' => $_SESSION['article_fraction'],
		                  'currency' => $_SESSION['article_currency']));
$complete_deposit_permission = array_merge($deposit_permission, $to_add);

$resp = give_to_backend($_SERVER['HTTP_HOST'],
                        "backend/pay",
			json_encode($complete_deposit_permission, JSON_PRETTY_PRINT));
$status_code = $resp->getResponseCode();


// Our response code is the same we got from the backend:
http_response_code ($status_code);
// Now generate our body  
if ($status_code != 200)
{
  /* error: just forwarding to the wallet what
    gotten from the backend (which is forwarding 'as is'
    the error gotten from the mint) */
  echo json_encode ($new_deposit_permission);
  echo "Error came from the backend, payment undone. Status $status_code\n";
  echo "\n";
  echo $resp->body->toString ();
}
else
{
  $_SESSION['payment_ok'] = true;
  if (!isset($_SESSION['allowed_articles']))
    $_SESSION['allowed_articles'] = array ($article => true);
  else $_SESSION['allowed_articles'] = array_merge($_SESSION['allowed_articles'], array ($article => true));
  http_response_code (301);
  $url = (new http\URL($_SERVER['REQUEST_SCHEME'] . '://' . $_SERVER['HTTP_HOST'].$_SERVER['REQUEST_URI']))
    ->mod(array ("path" => "essay_fulfillment.php?article=$article"), http\Url::JOIN_PATH);
  header("Location: $url");
  die();
}