2016-09-17 125 views
0

我似乎无法获得与Ruby一起使用的商家会话验证。试图HTTParty和RESTClient实现和我越来越:Apple在红宝石的Web商家会话中支付

的OpenSSL :: SSL :: SSLError(所以SSL_connect退换= 1个=错误号= SSLv3的读取完成A 0状态:SSLV3警报证书过期):

我试过同证书与这个节点服务器的例子,https://github.com/tomdale/apple-pay-merchant-session-server,它工作得很好,所以它必须是我的红宝石代码中的东西。

有没有人设法使此工作?

回答

4

我遇到了同样的问题。在你参考的例子和https://github.com/norfolkmustard/ApplePayJS的实现的帮助下(另见关于https://forums.developer.apple.com/thread/51580的实现的讨论),我能够得到它的工作。

对我来说是正确的证书(苹果支付商人身份证书)的传递,就像苹果公司提供,并得到像这样的证书键键:

一旦你有了自己的商家ID(会话)来自Apple的证书,通过双击将其导入到Mac上的keychain.app中,右键单击钥匙串中的证书并将组合的私钥和证书导出为.p12文件,然后在终端中: -

openssl pkcs12 -in your_merchant_identity_cert_name.p12 -out ApplePay.key.pem -nocerts -nodes 
openssl pkcs12 -in your_merchant_identity_cert_name.p12 -out ApplePay.key.pem -nocerts -nodes 

添加应用程序从苹果乐收费商家标识证书和ApplePay.key.pem文件的使用Ruby的Net :: HTTP类的内容的环境变量,我能够构造如下的请求......

class YourControllerName < ApplicationController 

    def apple_pay_validation 
    respond_to do |format| 
     format.json { render json: start_apple_session(params[:url]) } if params[:url].include?('apple.com') 
    end 
    end 

    private 

    def start_apple_session(url) 
    uri = URI.parse(url) # the url from event.validationURL 
    data = {'merchantIdentifier' => "merchant.com.your_site_name", 'domainName' => "your_doamin", 'displayName' => "your_company_name"} 
    pem = File.read('path/to/your/merchant_id.cer') 
    key = ENV['APPLE_PAY_MERCHANT_ID_ KEY'] 
    passphrase = 'passphrase set up when exporting certificate in keychain' # Should be an environment variable 
    http = Net::HTTP.new(uri.host, uri.port) 
    http.use_ssl = true 
    http.ssl_version = :TLSv1_2 
    http.ciphers = ['ECDHE-RSA-AES128-GCM-SHA256'] 
    http.cert = OpenSSL::X509::Certificate.new(pem) 
    http.key = OpenSSL::PKey::RSA.new(key, passphrase) 
    http.verify_mode = OpenSSL::SSL::VERIFY_PEER 
    request = Net::HTTP::Post.new(uri.request_uri, 'Content-Type' => 'application/json') 
    request.body = data.to_json 
    response = http.request(request) 
    response.body 
    end 

end 

这是从我performValidation函数调用它看起来像这样(从上面列出的ApplePayJS回购修改)..

performValidation = (valURL) -> 
    new Promise((resolve, reject) -> 
    xhr = new XMLHttpRequest 
    xhr.open 'GET', '/your_controller_name/apple_pay_validation?url=' + valURL 
    xhr.onerror = reject 
    xhr.onload = -> 
     data = JSON.parse(@responseText) 
     resolve data 
    xhr.send() 
) 

希望帮助别人节省一些时间和白发!