Compare commits
69 Commits
feat-neft-
...
otp_bindin
| Author | SHA1 | Date | |
|---|---|---|---|
| edbeca3fd2 | |||
| ffbbea27d7 | |||
| a706fd8c21 | |||
| 184a760cd5 | |||
| a81e26fa9f | |||
| 051e86b1ff | |||
| cf94a3b425 | |||
| d38681613b | |||
| 3d3a8f629c | |||
| b285c94aa2 | |||
| 752b725fa6 | |||
| 00a839a6d8 | |||
| 2c6b56e47d | |||
| 2a0ef55725 | |||
| f1a1ffa817 | |||
| 64e3cf3182 | |||
| a122882764 | |||
|
|
cb3b34899b | ||
|
|
d492c43427 | ||
| 3f90a793fe | |||
| 3cbb1e9c39 | |||
| 0d8371e3df | |||
| 50c375f0ba | |||
| 445a0f434d | |||
|
|
2516ff5f4c | ||
| 3da77cf97a | |||
| f675f1561a | |||
| 05068634fe | |||
| aaa11287a1 | |||
| 4857ef6cab | |||
| f60329672c | |||
| 9f6c2f9cc1 | |||
| cb22b926f8 | |||
| b213259c7c | |||
| 90f60f7324 | |||
| 6533c5081c | |||
| 33aa50413c | |||
| 65519e6403 | |||
| b1f2277c92 | |||
|
|
bb446f41d8 | ||
| 6e6690746a | |||
| 470d8e15f6 | |||
| 50753295b4 | |||
| 454553adbb | |||
| 077d48c7f0 | |||
| c8efe8d75a | |||
| 484a0dd51a | |||
| a02e58ebec | |||
| 780eb39c18 | |||
|
|
3cfcb8e5bc | ||
| e179d1b339 | |||
| 52225828d0 | |||
| 0d2cea8902 | |||
| 1e32b4a5a6 | |||
| 75a0e6e084 | |||
| 4ff437319e | |||
| d6a750092c | |||
| de90be86a7 | |||
|
|
cbfd1d6d09 | ||
|
|
98ab9954bf | ||
|
|
2000ec3e4e | ||
|
|
bfd062be80 | ||
|
|
33ef65de32 | ||
|
|
6f07e9beb9 | ||
|
|
dbdc1c7829 | ||
|
|
1bd618b4fd | ||
|
|
6b6b5679bf | ||
| 7ba9f878f7 | |||
| cd1193c746 |
2
.gitignore
vendored
2
.gitignore
vendored
@@ -1,2 +1,4 @@
|
|||||||
node_modules/
|
node_modules/
|
||||||
|
.vscode/
|
||||||
.env
|
.env
|
||||||
|
logs/requests.log
|
||||||
|
|||||||
5
.vscode/settings.json
vendored
5
.vscode/settings.json
vendored
@@ -1,6 +1,9 @@
|
|||||||
{
|
{
|
||||||
"cSpell.words": [
|
"cSpell.words": [
|
||||||
|
"MPIN",
|
||||||
|
"otpgenerator",
|
||||||
"tpassword",
|
"tpassword",
|
||||||
"tpin"
|
"tpin",
|
||||||
|
"TPWORD"
|
||||||
]
|
]
|
||||||
}
|
}
|
||||||
16
package-lock.json
generated
16
package-lock.json
generated
@@ -12,8 +12,10 @@
|
|||||||
"axios": "^1.9.0",
|
"axios": "^1.9.0",
|
||||||
"bcrypt": "^6.0.0",
|
"bcrypt": "^6.0.0",
|
||||||
"cors": "^2.8.5",
|
"cors": "^2.8.5",
|
||||||
|
"dayjs": "^1.11.18",
|
||||||
"dotenv": "^16.5.0",
|
"dotenv": "^16.5.0",
|
||||||
"express": "^5.1.0",
|
"express": "^5.1.0",
|
||||||
|
"helmet": "^8.1.0",
|
||||||
"jsonwebtoken": "^9.0.2",
|
"jsonwebtoken": "^9.0.2",
|
||||||
"pg": "^8.16.0",
|
"pg": "^8.16.0",
|
||||||
"pino": "^9.7.0",
|
"pino": "^9.7.0",
|
||||||
@@ -842,6 +844,12 @@
|
|||||||
"node": "*"
|
"node": "*"
|
||||||
}
|
}
|
||||||
},
|
},
|
||||||
|
"node_modules/dayjs": {
|
||||||
|
"version": "1.11.18",
|
||||||
|
"resolved": "https://registry.npmjs.org/dayjs/-/dayjs-1.11.18.tgz",
|
||||||
|
"integrity": "sha512-zFBQ7WFRvVRhKcWoUh+ZA1g2HVgUbsZm9sbddh8EC5iv93sui8DVVz1Npvz+r6meo9VKfa8NyLWBsQK1VvIKPA==",
|
||||||
|
"license": "MIT"
|
||||||
|
},
|
||||||
"node_modules/debug": {
|
"node_modules/debug": {
|
||||||
"version": "4.4.1",
|
"version": "4.4.1",
|
||||||
"resolved": "https://registry.npmjs.org/debug/-/debug-4.4.1.tgz",
|
"resolved": "https://registry.npmjs.org/debug/-/debug-4.4.1.tgz",
|
||||||
@@ -1664,6 +1672,14 @@
|
|||||||
"node": ">= 0.4"
|
"node": ">= 0.4"
|
||||||
}
|
}
|
||||||
},
|
},
|
||||||
|
"node_modules/helmet": {
|
||||||
|
"version": "8.1.0",
|
||||||
|
"resolved": "https://registry.npmjs.org/helmet/-/helmet-8.1.0.tgz",
|
||||||
|
"integrity": "sha512-jOiHyAZsmnr8LqoPGmCjYAaiuWwjAPLgY8ZX2XrmHawt99/u1y6RgrZMTeoPfpUbV96HOalYgz1qzkRbw54Pmg==",
|
||||||
|
"engines": {
|
||||||
|
"node": ">=18.0.0"
|
||||||
|
}
|
||||||
|
},
|
||||||
"node_modules/help-me": {
|
"node_modules/help-me": {
|
||||||
"version": "5.0.0",
|
"version": "5.0.0",
|
||||||
"resolved": "https://registry.npmjs.org/help-me/-/help-me-5.0.0.tgz",
|
"resolved": "https://registry.npmjs.org/help-me/-/help-me-5.0.0.tgz",
|
||||||
|
|||||||
@@ -16,8 +16,10 @@
|
|||||||
"axios": "^1.9.0",
|
"axios": "^1.9.0",
|
||||||
"bcrypt": "^6.0.0",
|
"bcrypt": "^6.0.0",
|
||||||
"cors": "^2.8.5",
|
"cors": "^2.8.5",
|
||||||
|
"dayjs": "^1.11.18",
|
||||||
"dotenv": "^16.5.0",
|
"dotenv": "^16.5.0",
|
||||||
"express": "^5.1.0",
|
"express": "^5.1.0",
|
||||||
|
"helmet": "^8.1.0",
|
||||||
"jsonwebtoken": "^9.0.2",
|
"jsonwebtoken": "^9.0.2",
|
||||||
"pg": "^8.16.0",
|
"pg": "^8.16.0",
|
||||||
"pino": "^9.7.0",
|
"pino": "^9.7.0",
|
||||||
|
|||||||
@@ -2,10 +2,12 @@ const express = require('express');
|
|||||||
const cors = require('cors');
|
const cors = require('cors');
|
||||||
const { logger } = require('./util/logger');
|
const { logger } = require('./util/logger');
|
||||||
const routes = require('./routes');
|
const routes = require('./routes');
|
||||||
|
const helmet = require('helmet');
|
||||||
|
|
||||||
const app = express();
|
const app = express();
|
||||||
|
|
||||||
app.use(cors());
|
app.use(cors());
|
||||||
|
app.use(helmet());
|
||||||
app.use(express.json());
|
app.use(express.json());
|
||||||
app.use(express.urlencoded({ extended: true }));
|
app.use(express.urlencoded({ extended: true }));
|
||||||
|
|
||||||
|
|||||||
122
src/controllers/admin_auth.controller.js
Normal file
122
src/controllers/admin_auth.controller.js
Normal file
@@ -0,0 +1,122 @@
|
|||||||
|
const adminAuthService = require('../services/admin.auth.service');
|
||||||
|
const authService = require('../services/auth.service');
|
||||||
|
const { generateToken } = require('../util/jwt');
|
||||||
|
const { logger } = require('../util/logger');
|
||||||
|
const { hashPassword } = require('../util/hash');
|
||||||
|
const db = require('../config/db');
|
||||||
|
const { generateOTP } = require('../otpgenerator');
|
||||||
|
const dayjs = require("dayjs");
|
||||||
|
|
||||||
|
async function login(req, res) {
|
||||||
|
const { userName, password } = req.body;
|
||||||
|
|
||||||
|
if (!userName || !password) {
|
||||||
|
return res
|
||||||
|
.status(400)
|
||||||
|
.json({ error: 'UserName and Password are required' });
|
||||||
|
}
|
||||||
|
const currentTime = new Date().toISOString();
|
||||||
|
try {
|
||||||
|
const admin = await adminAuthService.validateAdmin(userName, password);
|
||||||
|
if (!admin) return res.status(401).json({ error: 'invalid credentials' });
|
||||||
|
|
||||||
|
const token = generateToken(admin.username, 'admin', '1d');
|
||||||
|
await db.query('UPDATE admin SET last_login = $1 WHERE username = $2', [
|
||||||
|
currentTime,
|
||||||
|
userName,
|
||||||
|
]);
|
||||||
|
res.json({ token });
|
||||||
|
} catch (err) {
|
||||||
|
logger.error(err, 'login failed');
|
||||||
|
res.status(500).json({ error: 'something went wrong' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
async function fetchAdminDetails(req, res) {
|
||||||
|
const customerNo = req.admin;
|
||||||
|
try {
|
||||||
|
const admin = await adminAuthService.findAdminByUserName(customerNo);
|
||||||
|
if (!admin) return res.status(404).json({ message: 'ADMIN_USER_NOT_FOUND' });
|
||||||
|
return res.json(admin);
|
||||||
|
|
||||||
|
} catch (err) {
|
||||||
|
logger.error(err, 'error occurred while fetching admin details');
|
||||||
|
res.status(500).json({ error: 'something went wrong' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
async function getUserDetails(req, res) {
|
||||||
|
const { CIF } = req.query;
|
||||||
|
if (!CIF) {
|
||||||
|
res.status(400).json({
|
||||||
|
error: 'CIF number is required',
|
||||||
|
});
|
||||||
|
}
|
||||||
|
try {
|
||||||
|
const userDetails = await adminAuthService.getCustomerDetails(CIF);
|
||||||
|
if (!userDetails)
|
||||||
|
return res.status(401).json({ error: 'invalid CIF number' });
|
||||||
|
return res.json(userDetails);
|
||||||
|
} catch (error) {
|
||||||
|
logger.error('while fetching customer details', error);
|
||||||
|
res.status(500).json({ error: 'invalid CIF number' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
async function getUserRights(req, res) {
|
||||||
|
const { CIF } = req.query;
|
||||||
|
if (!CIF) {
|
||||||
|
res.status(400).json({
|
||||||
|
error: 'CIF number is required',
|
||||||
|
});
|
||||||
|
}
|
||||||
|
const userDetails = await adminAuthService.getCustomerDetailsFromDB(CIF);
|
||||||
|
if (!userDetails)
|
||||||
|
return res.status(401).json({ error: 'invalid CIF number or No rights is present for the user.' });
|
||||||
|
return res.json(userDetails);
|
||||||
|
}
|
||||||
|
|
||||||
|
async function UserRights(req, res) {
|
||||||
|
try {
|
||||||
|
const { CIF, ib_access_level, mb_access_level } = req.body;
|
||||||
|
|
||||||
|
if (!CIF) {
|
||||||
|
return res.status(400).json({ error: 'CIF number is required' });
|
||||||
|
}
|
||||||
|
|
||||||
|
const currentTime = new Date().toISOString();
|
||||||
|
const user = await authService.findUserByCustomerNo(CIF);
|
||||||
|
const first_time_pass = generateOTP(6);
|
||||||
|
const password = await hashPassword(first_time_pass);
|
||||||
|
if (user) {
|
||||||
|
const FirstTimeLogin = await authService.CheckFirstTimeLogin(CIF);
|
||||||
|
// if user did not login within 7 days
|
||||||
|
if (FirstTimeLogin && dayjs(currentTime).diff(dayjs(user.created_at), 'day') > 8) {
|
||||||
|
// Password expired, resend
|
||||||
|
await db.query(
|
||||||
|
'UPDATE users SET password_hash=$2, updated_at=$5, ib_access_level=$3, mb_access_level=$4 WHERE customer_no=$1',
|
||||||
|
[CIF, password, ib_access_level, mb_access_level, currentTime]
|
||||||
|
);
|
||||||
|
return res.json({ otp: first_time_pass });
|
||||||
|
}
|
||||||
|
// Just update access levels and timestamp
|
||||||
|
await db.query(
|
||||||
|
'UPDATE users SET updated_at=$4, ib_access_level=$2, mb_access_level=$3 WHERE customer_no=$1',
|
||||||
|
[CIF, ib_access_level, mb_access_level, currentTime]
|
||||||
|
);
|
||||||
|
return res.json({ message: "User updated successfully." });
|
||||||
|
} else {
|
||||||
|
// User does not exist, insert
|
||||||
|
await db.query(
|
||||||
|
'INSERT INTO users (customer_no, password_hash, ib_access_level, mb_access_level) VALUES ($1, $2, $3, $4)',
|
||||||
|
[CIF, password, ib_access_level, mb_access_level]
|
||||||
|
);
|
||||||
|
return res.json({ otp: first_time_pass });
|
||||||
|
}
|
||||||
|
} catch (err) {
|
||||||
|
console.error(err);
|
||||||
|
logger.error(err, 'UserRights failed');
|
||||||
|
return res.status(500).json({ error: 'Something went wrong' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = { login, fetchAdminDetails, getUserDetails, UserRights, getUserRights };
|
||||||
@@ -2,9 +2,12 @@ const authService = require('../services/auth.service');
|
|||||||
const { generateToken } = require('../util/jwt');
|
const { generateToken } = require('../util/jwt');
|
||||||
const { logger } = require('../util/logger');
|
const { logger } = require('../util/logger');
|
||||||
const db = require('../config/db');
|
const db = require('../config/db');
|
||||||
|
const dayjs = require('dayjs');
|
||||||
|
const { comparePassword } = require('../util/hash');
|
||||||
|
|
||||||
async function login(req, res) {
|
async function login(req, res) {
|
||||||
const { customerNo, password } = req.body;
|
const { customerNo, password } = req.body;
|
||||||
|
const loginType = req.headers['x-login-type'] || 'standard';
|
||||||
|
|
||||||
if (!customerNo || !password) {
|
if (!customerNo || !password) {
|
||||||
return res
|
return res
|
||||||
@@ -13,17 +16,34 @@ async function login(req, res) {
|
|||||||
}
|
}
|
||||||
const currentTime = new Date().toISOString();
|
const currentTime = new Date().toISOString();
|
||||||
try {
|
try {
|
||||||
|
const isMigratedUser = await authService.isMigratedUser(customerNo);
|
||||||
|
if (isMigratedUser)
|
||||||
|
return res.status(401).json({ error: 'MIGRATED_USER_HAS_NO_PASSWORD' });
|
||||||
const user = await authService.validateUser(customerNo, password);
|
const user = await authService.validateUser(customerNo, password);
|
||||||
if (!user) return res.status(401).json({ error: 'invalid credentials' });
|
if (!user || !password)
|
||||||
const token = generateToken(user.customer_no, '1d');
|
return res.status(401).json({ error: 'INVALID_CREDENTIALS' });
|
||||||
|
|
||||||
const FirstTimeLogin = await authService.CheckFirstTimeLogin(customerNo);
|
const FirstTimeLogin = await authService.CheckFirstTimeLogin(customerNo);
|
||||||
|
// For registration : if try to login first time after 7 days.
|
||||||
|
if (FirstTimeLogin && dayjs(user.created_at).diff(currentTime, 'day') > 8)
|
||||||
|
return res
|
||||||
|
.status(401)
|
||||||
|
.json({ error: 'Password Expired.Please Contact with Administrator' });
|
||||||
|
|
||||||
|
const token = generateToken(user.customer_no);
|
||||||
|
const loginPswExpiry = user.password_hash_expiry;
|
||||||
|
const rights = {
|
||||||
|
ibAccess: user.ib_access_level,
|
||||||
|
mbAccess: user.mb_access_level,
|
||||||
|
};
|
||||||
await db.query('UPDATE users SET last_login = $1 WHERE customer_no = $2', [
|
await db.query('UPDATE users SET last_login = $1 WHERE customer_no = $2', [
|
||||||
currentTime,
|
currentTime,
|
||||||
customerNo,
|
customerNo,
|
||||||
]);
|
]);
|
||||||
res.json({ token, FirstTimeLogin });
|
logger.info(`Login successful | Type: ${loginType}`);
|
||||||
|
res.json({ token, FirstTimeLogin, loginPswExpiry, rights });
|
||||||
} catch (err) {
|
} catch (err) {
|
||||||
logger.error(err, 'login failed');
|
logger.error(err, `login failed | Type: ${loginType}`);
|
||||||
res.status(500).json({ error: 'something went wrong' });
|
res.status(500).json({ error: 'something went wrong' });
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
@@ -34,7 +54,6 @@ async function fetchUserDetails(req, res) {
|
|||||||
const user = await authService.findUserByCustomerNo(customerNo);
|
const user = await authService.findUserByCustomerNo(customerNo);
|
||||||
if (!user) return res.status(404).json({ message: 'USER_NOT_FOUND' });
|
if (!user) return res.status(404).json({ message: 'USER_NOT_FOUND' });
|
||||||
return res.json(user);
|
return res.json(user);
|
||||||
|
|
||||||
} catch (err) {
|
} catch (err) {
|
||||||
logger.error(err, 'error occured while fetching user details');
|
logger.error(err, 'error occured while fetching user details');
|
||||||
res.status(500).json({ error: 'something went wrong' });
|
res.status(500).json({ error: 'something went wrong' });
|
||||||
@@ -88,6 +107,7 @@ async function setLoginPassword(req, res) {
|
|||||||
return res.status(500).json({ error: 'SOMETHING_WENT_WRONG' });
|
return res.status(500).json({ error: 'SOMETHING_WENT_WRONG' });
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
async function setTransactionPassword(req, res) {
|
async function setTransactionPassword(req, res) {
|
||||||
const customerNo = req.user;
|
const customerNo = req.user;
|
||||||
try {
|
try {
|
||||||
@@ -102,4 +122,79 @@ async function setTransactionPassword(req, res) {
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
module.exports = { login, tpin, setTpin, setLoginPassword, setTransactionPassword,fetchUserDetails };
|
async function changeLoginPassword(req, res) {
|
||||||
|
const customerNo = req.user;
|
||||||
|
try {
|
||||||
|
const user = await authService.findUserByCustomerNo(customerNo);
|
||||||
|
if (!user) return res.status(404).json({ error: 'USER_NOT_FOUND' });
|
||||||
|
const { OldLPsw, newLPsw, confirmLPsw } = req.body;
|
||||||
|
const isMatch = await comparePassword(OldLPsw, user.password_hash);
|
||||||
|
if (!isMatch)
|
||||||
|
return res
|
||||||
|
.status(500)
|
||||||
|
.json({ error: 'Please Enter Correct Old Login Password' });
|
||||||
|
if (newLPsw !== confirmLPsw)
|
||||||
|
return res
|
||||||
|
.status(500)
|
||||||
|
.json({ error: 'New Password and Confirm Password not Match' });
|
||||||
|
const isMatchWithOldPassword = await comparePassword(
|
||||||
|
newLPsw,
|
||||||
|
user.password_hash
|
||||||
|
);
|
||||||
|
if (isMatchWithOldPassword)
|
||||||
|
return res.status(500).json({
|
||||||
|
error: 'New Password will be different from Previous Password',
|
||||||
|
});
|
||||||
|
authService.changeLoginPassword(customerNo, newLPsw);
|
||||||
|
return res.json({ message: 'New Login Password changed successfully' });
|
||||||
|
} catch (error) {
|
||||||
|
logger.error(error);
|
||||||
|
return res.status(500).json({ error: 'SOMETHING_WENT_WRONG' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
async function changeTransPassword(req, res) {
|
||||||
|
const customerNo = req.user;
|
||||||
|
try {
|
||||||
|
const user = await authService.findUserByCustomerNo(customerNo);
|
||||||
|
if (!user) return res.status(404).json({ error: 'USER_NOT_FOUND' });
|
||||||
|
const { OldTPsw, newTPsw, confirmTPsw } = req.body;
|
||||||
|
const isMatch = await comparePassword(OldTPsw, user.transaction_password);
|
||||||
|
if (!isMatch)
|
||||||
|
return res
|
||||||
|
.status(500)
|
||||||
|
.json({ error: 'Please Enter Correct Old Transaction Password' });
|
||||||
|
if (newTPsw !== confirmTPsw)
|
||||||
|
return res.status(500).json({
|
||||||
|
error:
|
||||||
|
'New Transaction Password and Confirm Transaction Password not Match',
|
||||||
|
});
|
||||||
|
const isMatchWithOldPassword = await comparePassword(
|
||||||
|
newTPsw,
|
||||||
|
user.transaction_password
|
||||||
|
);
|
||||||
|
if (isMatchWithOldPassword)
|
||||||
|
return res.status(500).json({
|
||||||
|
error:
|
||||||
|
'New Transaction Password will be different from Previous Transaction Password',
|
||||||
|
});
|
||||||
|
authService.changeTransPassword(customerNo, newTPsw);
|
||||||
|
return res.json({
|
||||||
|
message: 'New Transaction Password changed successfully',
|
||||||
|
});
|
||||||
|
} catch (error) {
|
||||||
|
logger.error(error);
|
||||||
|
return res.status(500).json({ error: 'SOMETHING_WENT_WRONG' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = {
|
||||||
|
login,
|
||||||
|
tpin,
|
||||||
|
setTpin,
|
||||||
|
setLoginPassword,
|
||||||
|
setTransactionPassword,
|
||||||
|
fetchUserDetails,
|
||||||
|
changeLoginPassword,
|
||||||
|
changeTransPassword,
|
||||||
|
};
|
||||||
|
|||||||
@@ -1,6 +1,8 @@
|
|||||||
const { logger } = require('../util/logger');
|
const { logger } = require('../util/logger');
|
||||||
const beneficiaryService = require('../services/beneficiary.service');
|
const beneficiaryService = require('../services/beneficiary.service');
|
||||||
|
const { getJson, setJson } = require('../config/redis');
|
||||||
const db = require('../config/db');
|
const db = require('../config/db');
|
||||||
|
const randomName = require('../util/name.generator');
|
||||||
|
|
||||||
async function validateWithinBank(req, res) {
|
async function validateWithinBank(req, res) {
|
||||||
const { accountNumber } = req.query;
|
const { accountNumber } = req.query;
|
||||||
@@ -38,9 +40,8 @@ async function validateOutsideBank(req, res) {
|
|||||||
);
|
);
|
||||||
if (!refNo)
|
if (!refNo)
|
||||||
return res.status(401).json({ error: 'invalid account number' });
|
return res.status(401).json({ error: 'invalid account number' });
|
||||||
//**IN PRODUCTION** poll the redis server continuously giving the refNo since the response from NPCI will be stored there
|
const name = await pollRedisKey(refNo);
|
||||||
await delay(3000);
|
return res.json({ name });
|
||||||
return res.json({ name: 'John Doe' });
|
|
||||||
} catch (err) {
|
} catch (err) {
|
||||||
logger.error(err, 'beneficiary validation within bank failed');
|
logger.error(err, 'beneficiary validation within bank failed');
|
||||||
res.status(500).json({ error: 'invalid account number' });
|
res.status(500).json({ error: 'invalid account number' });
|
||||||
@@ -93,18 +94,34 @@ async function getBeneficiary(req, res) {
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
async function deleteBeneficiary(req, res) {
|
||||||
|
const { beneficiaryAccountNo } = req.params;
|
||||||
|
try {
|
||||||
|
await beneficiaryService.deleteBeneficiary(req.user, beneficiaryAccountNo);
|
||||||
|
res.status(204).send();
|
||||||
|
} catch (error) {
|
||||||
|
if (error.message === 'ACCOUNT_NOT_FOUND') {
|
||||||
|
logger.warn(
|
||||||
|
`beneficiary ${beneficiaryAccountNo} does not exist for the customer ${req.user}`
|
||||||
|
);
|
||||||
|
return res.status(400).json({ error: 'INVALID_BENEFICIARY_ACCOUNT_NO' });
|
||||||
|
} else {
|
||||||
|
logger.error(error, 'error deleting beneficiary');
|
||||||
|
return res.status(500).json({ error: 'INTERNAL_SERVER_ERROR' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
async function getIfscDetails(req, res) {
|
async function getIfscDetails(req, res) {
|
||||||
const { ifscCode } = req.query;
|
const { ifscCode } = req.query;
|
||||||
if (!ifscCode) {
|
if (!ifscCode) {
|
||||||
res.status(403).json({ error: 'BAD_REQUEST' });
|
res.status(403).json({ error: 'BAD_REQUEST' });
|
||||||
return;
|
return;
|
||||||
}
|
}
|
||||||
console.log(ifscCode);
|
|
||||||
try {
|
try {
|
||||||
const query = 'SELECT * FROM ifsc_details WHERE ifsc_code = $1';
|
const query = 'SELECT * FROM ifsc_details WHERE ifsc_code = $1';
|
||||||
const result = await db.query(query, [ifscCode]);
|
const result = await db.query(query, [ifscCode]);
|
||||||
console.log(result.rows);
|
if (result.rows?.length === 0) {
|
||||||
if (!result.rows) {
|
|
||||||
res.status(404).json({ error: 'NOT_FOUND' });
|
res.status(404).json({ error: 'NOT_FOUND' });
|
||||||
return;
|
return;
|
||||||
}
|
}
|
||||||
@@ -119,10 +136,39 @@ function delay(ms) {
|
|||||||
return new Promise((resolve) => setTimeout(resolve, ms));
|
return new Promise((resolve) => setTimeout(resolve, ms));
|
||||||
}
|
}
|
||||||
|
|
||||||
|
async function pollRedisKey(key) {
|
||||||
|
const timeout = 2 * 60 * 1000;
|
||||||
|
const interval = 2000;
|
||||||
|
const startTime = Date.now();
|
||||||
|
|
||||||
|
return new Promise((resolve, reject) => {
|
||||||
|
const poll = async () => {
|
||||||
|
try {
|
||||||
|
const beneficiaryName = await getJson(key);
|
||||||
|
if (beneficiaryName !== null) {
|
||||||
|
logger.info(beneficiaryName, 'payload from redis');
|
||||||
|
return resolve(beneficiaryName);
|
||||||
|
}
|
||||||
|
|
||||||
|
if (Date.now() - startTime >= timeout) {
|
||||||
|
return resolve(null);
|
||||||
|
}
|
||||||
|
|
||||||
|
setTimeout(poll, interval);
|
||||||
|
} catch (error) {
|
||||||
|
reject(error);
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
poll();
|
||||||
|
});
|
||||||
|
}
|
||||||
|
|
||||||
module.exports = {
|
module.exports = {
|
||||||
validateWithinBank,
|
validateWithinBank,
|
||||||
validateOutsideBank,
|
validateOutsideBank,
|
||||||
addBeneficiary,
|
addBeneficiary,
|
||||||
getIfscDetails,
|
getIfscDetails,
|
||||||
getBeneficiary,
|
getBeneficiary,
|
||||||
|
deleteBeneficiary,
|
||||||
};
|
};
|
||||||
|
|||||||
56
src/controllers/imps.controller.js
Normal file
56
src/controllers/imps.controller.js
Normal file
@@ -0,0 +1,56 @@
|
|||||||
|
const axios = require('axios');
|
||||||
|
const { logger } = require('../util/logger');
|
||||||
|
const {
|
||||||
|
recordInterBankTransaction,
|
||||||
|
} = require('../services/recordkeeping.service');
|
||||||
|
|
||||||
|
async function send(
|
||||||
|
customerNo,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
amount,
|
||||||
|
ifscCode,
|
||||||
|
beneficiaryName,
|
||||||
|
beneficiaryAcctType = 'SAVINGS',
|
||||||
|
remarks = ''
|
||||||
|
) {
|
||||||
|
try {
|
||||||
|
const reqData = {
|
||||||
|
stBenAccNo: toAccount,
|
||||||
|
stBeneName: beneficiaryName,
|
||||||
|
stBenAccType: beneficiaryAcctType,
|
||||||
|
stBenIFSC: ifscCode,
|
||||||
|
stFromAccDetails: fromAccount,
|
||||||
|
stTransferAmount: amount,
|
||||||
|
stRemarks: remarks,
|
||||||
|
};
|
||||||
|
const response = await axios.post(
|
||||||
|
'http://192.168.1.39:6768/kccb/api/IMPS/Producer',
|
||||||
|
reqData,
|
||||||
|
{
|
||||||
|
headers: {
|
||||||
|
'Content-Type': 'application/json',
|
||||||
|
},
|
||||||
|
}
|
||||||
|
);
|
||||||
|
await recordInterBankTransaction(
|
||||||
|
customerNo,
|
||||||
|
'imps',
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
ifscCode,
|
||||||
|
amount,
|
||||||
|
'',
|
||||||
|
'',
|
||||||
|
response.data
|
||||||
|
);
|
||||||
|
return response.data;
|
||||||
|
} catch (error) {
|
||||||
|
logger.error(error, 'error from IMPS');
|
||||||
|
throw new Error(
|
||||||
|
'API call failed: ' + (error.response?.data?.message || error.message)
|
||||||
|
);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = { send };
|
||||||
56
src/controllers/neft.controller.js
Normal file
56
src/controllers/neft.controller.js
Normal file
@@ -0,0 +1,56 @@
|
|||||||
|
const axios = require('axios');
|
||||||
|
const {
|
||||||
|
recordInterBankTransaction,
|
||||||
|
} = require('../services/recordkeeping.service');
|
||||||
|
|
||||||
|
async function send(
|
||||||
|
customerNo,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
amount,
|
||||||
|
ifscCode,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
remarks
|
||||||
|
) {
|
||||||
|
const commission = 0;
|
||||||
|
try {
|
||||||
|
const response = await axios.post(
|
||||||
|
'http://localhost:8690/kccb/api/Neftfundtransfer',
|
||||||
|
{
|
||||||
|
stFromAcc: fromAccount,
|
||||||
|
stToAcc: toAccount,
|
||||||
|
stTranAmt: amount,
|
||||||
|
stCommission: commission,
|
||||||
|
stIfscCode: ifscCode,
|
||||||
|
stFullName: remitterName,
|
||||||
|
stBeneName: beneficiaryName,
|
||||||
|
stAddress1: '',
|
||||||
|
stAddress2: '',
|
||||||
|
stAddress3: '',
|
||||||
|
narration: remarks
|
||||||
|
}
|
||||||
|
);
|
||||||
|
await recordInterBankTransaction(
|
||||||
|
customerNo,
|
||||||
|
'neft',
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
ifscCode,
|
||||||
|
amount,
|
||||||
|
commission,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
response.data.status
|
||||||
|
);
|
||||||
|
return response.data;
|
||||||
|
} catch (error) {
|
||||||
|
throw new Error(
|
||||||
|
'API call failed: ' + (error.response?.data?.message || error.message)
|
||||||
|
);
|
||||||
|
}
|
||||||
|
|
||||||
|
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = { send };
|
||||||
@@ -4,6 +4,7 @@ const { logger } = require('../util/logger');
|
|||||||
|
|
||||||
async function npciResponse(req, res) {
|
async function npciResponse(req, res) {
|
||||||
const { resp } = req.body;
|
const { resp } = req.body;
|
||||||
|
logger.info(resp, 'received from NPCI');
|
||||||
if (resp.status === 'Success') {
|
if (resp.status === 'Success') {
|
||||||
await handleNPCISuccess(resp);
|
await handleNPCISuccess(resp);
|
||||||
} else {
|
} else {
|
||||||
|
|||||||
218
src/controllers/otp.controller.js
Normal file
218
src/controllers/otp.controller.js
Normal file
@@ -0,0 +1,218 @@
|
|||||||
|
const { setJson, getJson } = require('../config/redis');
|
||||||
|
const { generateOTP } = require('../otpgenerator');
|
||||||
|
const { generateToken } = require('../util/jwt');
|
||||||
|
const authService = require('../services/auth.service.js');
|
||||||
|
const customerController = require('../controllers/customer_details.controller.js');
|
||||||
|
const { logger } = require('../util/logger');
|
||||||
|
const axios = require('axios');
|
||||||
|
const templates = require('../util/sms_template');
|
||||||
|
|
||||||
|
// Send OTP
|
||||||
|
async function SendOtp(req, res) {
|
||||||
|
const {
|
||||||
|
mobileNumber,
|
||||||
|
type,
|
||||||
|
amount,
|
||||||
|
beneficiary,
|
||||||
|
ifsc,
|
||||||
|
acctFrom,
|
||||||
|
acctTo,
|
||||||
|
ref,
|
||||||
|
date,
|
||||||
|
userOtp,
|
||||||
|
} = req.body;
|
||||||
|
|
||||||
|
if (!mobileNumber || !type) {
|
||||||
|
return res
|
||||||
|
.status(400)
|
||||||
|
.json({ error: 'Mobile number and type are required' });
|
||||||
|
}
|
||||||
|
|
||||||
|
try {
|
||||||
|
let message;
|
||||||
|
let otp = null;
|
||||||
|
// Pick template based on type
|
||||||
|
switch (type) {
|
||||||
|
case 'IMPS':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.IMPS(otp);
|
||||||
|
break;
|
||||||
|
case 'NEFT':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.NEFT(otp, amount, beneficiary);
|
||||||
|
break;
|
||||||
|
case 'RTGS':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.RTGS(otp, amount, beneficiary);
|
||||||
|
break;
|
||||||
|
case 'BENEFICIARY_ADD':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.BENEFICIARY_ADD(otp, beneficiary, ifsc);
|
||||||
|
break;
|
||||||
|
case 'BENEFICIARY_SUCCESS':
|
||||||
|
message = templates.BENEFICIARY_SUCCESS(beneficiary);
|
||||||
|
break;
|
||||||
|
case 'NOTIFICATION':
|
||||||
|
message = templates.NOTIFICATION(acctFrom, acctTo, amount, ref, date);
|
||||||
|
break;
|
||||||
|
case 'FORGOT_PASSWORD':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.FORGOT_PASSWORD(otp);
|
||||||
|
break;
|
||||||
|
case 'CHANGE_LPWORD':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.CHANGE_LPWORD(otp);
|
||||||
|
break;
|
||||||
|
case 'CHANGE_TPIN':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.CHANGE_TPIN(otp);
|
||||||
|
break;
|
||||||
|
case 'CHANGE_TPWORD':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.CHANGE_TPWORD(otp);
|
||||||
|
break;
|
||||||
|
case 'CHANGE_MPIN':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.CHANGE_MPIN(otp);
|
||||||
|
break;
|
||||||
|
case 'REGISTRATION':
|
||||||
|
otp = userOtp ? userOtp : generateOTP(6);
|
||||||
|
message = templates.REGISTRATION(otp);
|
||||||
|
break;
|
||||||
|
case 'RIGHT_UPDATE':
|
||||||
|
message = templates.RIGHT_UPDATE;
|
||||||
|
break;
|
||||||
|
case 'EMandate':
|
||||||
|
otp = generateOTP(6);
|
||||||
|
message = templates.EMandate(otp);
|
||||||
|
break;
|
||||||
|
default:
|
||||||
|
return res.status(400).json({ error: 'Invalid OTP type' });
|
||||||
|
}
|
||||||
|
|
||||||
|
// Call SMS API
|
||||||
|
const response = await axios.post(
|
||||||
|
'http://localhost:9999/api/SendtoMessage',
|
||||||
|
{
|
||||||
|
mobileNumber,
|
||||||
|
stMessage: message,
|
||||||
|
}
|
||||||
|
);
|
||||||
|
|
||||||
|
if (response.data) {
|
||||||
|
// Save OTP only if it's OTP based (skip notifications without OTP)
|
||||||
|
if (message.includes('OTP')) {
|
||||||
|
await setJson(`otp:${mobileNumber}`, otp, 300);
|
||||||
|
}
|
||||||
|
|
||||||
|
logger.info(`Sent OTP [${otp}] for type [${type}] to ${mobileNumber}`);
|
||||||
|
}
|
||||||
|
|
||||||
|
return res.status(200).json({ message: 'Message sent successfully' });
|
||||||
|
} catch (err) {
|
||||||
|
logger.error(err, 'Error sending OTP');
|
||||||
|
return res.status(500).json({ error: 'Internal server error' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// Verify OTP
|
||||||
|
async function VerifyOtp(req, res) {
|
||||||
|
const { mobileNumber } = req.query;
|
||||||
|
const { otp } = req.body;
|
||||||
|
|
||||||
|
if (!mobileNumber || !otp) {
|
||||||
|
return res.status(400).json({ error: 'Phone number and OTP are required' });
|
||||||
|
}
|
||||||
|
|
||||||
|
try {
|
||||||
|
const storedOtp = await getJson(`otp:${mobileNumber}`);
|
||||||
|
|
||||||
|
if (!storedOtp) {
|
||||||
|
return res.status(400).json({ error: 'OTP expired or not found' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (parseInt(otp, 10) !== parseInt(storedOtp, 10)) {
|
||||||
|
return res.status(400).json({ error: 'Invalid OTP' });
|
||||||
|
}
|
||||||
|
|
||||||
|
return res.status(200).json({ message: 'OTP verified successfully' });
|
||||||
|
} catch (err) {
|
||||||
|
logger.error(err, 'Error verifying OTP');
|
||||||
|
return res.status(500).json({ error: 'Internal server error' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
async function sendForSetPassword(req, res) {
|
||||||
|
try {
|
||||||
|
const { customerNo } = req.query;
|
||||||
|
if (!customerNo)
|
||||||
|
return res.status(400).json({ error: 'CUSTOMER_NO_REQUIRED' });
|
||||||
|
// check if user is registered for in mobile banking data
|
||||||
|
const user = await authService.findUserByCustomerNo(customerNo);
|
||||||
|
if (!user) return res.status(404).json({ error: 'USER_NOT_FOUND' });
|
||||||
|
// if present then get his phone number from CBS
|
||||||
|
const userDetails = await customerController.getDetails(customerNo);
|
||||||
|
const singleUserDetail = userDetails[0];
|
||||||
|
if (!singleUserDetail?.mobileno)
|
||||||
|
return res.status(400).json({ error: 'USER_PHONE_NOT_FOUND' });
|
||||||
|
|
||||||
|
const mobileNumber = singleUserDetail.mobileno;
|
||||||
|
const otp = generateOTP(6);
|
||||||
|
const message = templates.CHANGE_LPWORD(otp);
|
||||||
|
const response = await axios.post(
|
||||||
|
'http://localhost:9999/api/SendtoMessage',
|
||||||
|
{
|
||||||
|
mobileNumber,
|
||||||
|
stMessage: message,
|
||||||
|
}
|
||||||
|
);
|
||||||
|
await setJson(`otp:${mobileNumber}`, otp, 300);
|
||||||
|
return res.status(200).json({ message: 'OTP_SENT' });
|
||||||
|
} catch (err) {
|
||||||
|
logger.error(err, 'Error sending OTP');
|
||||||
|
return res.status(500).json({ error: 'INTERNAL_SERVER_ERROR' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
async function verifyForSetPassword(req, res) {
|
||||||
|
try {
|
||||||
|
const { customerNo, otp } = req.query;
|
||||||
|
if (!customerNo || !otp)
|
||||||
|
return res.status(400).json({ error: 'CUSTOMER_NO_REQUIRED' });
|
||||||
|
// check if user is registered for mobile banking database
|
||||||
|
const user = await authService.findUserByCustomerNo(customerNo);
|
||||||
|
if (!user) return res.status(404).json({ error: 'USER_NOT_FOUND' });
|
||||||
|
// if present then get his phone number from CBS
|
||||||
|
const userDetails = await customerController.getDetails(customerNo);
|
||||||
|
// temp check
|
||||||
|
const singleUserDetail = userDetails[0];
|
||||||
|
if (!singleUserDetail?.mobileno)
|
||||||
|
return res.status(400).json({ error: 'USER_PHONE_NOT_FOUND' });
|
||||||
|
|
||||||
|
const mobileNumber = singleUserDetail.mobileno;
|
||||||
|
const storedOtp = await getJson(`otp:${mobileNumber}`);
|
||||||
|
|
||||||
|
if (!storedOtp) {
|
||||||
|
return res.status(400).json({ error: 'OTP expired or not found' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (parseInt(otp, 10) !== parseInt(storedOtp, 10)) {
|
||||||
|
return res.status(400).json({ error: 'Invalid OTP' });
|
||||||
|
}
|
||||||
|
|
||||||
|
const token = generateToken(customerNo, 'user', '5m');
|
||||||
|
return res
|
||||||
|
.status(200)
|
||||||
|
.json({ message: 'OTP verified successfully', token: token });
|
||||||
|
} catch (err) {
|
||||||
|
logger.error(err, 'Error sending OTP');
|
||||||
|
return res.status(500).json({ error: 'INTERNAL_SERVER_ERROR' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = {
|
||||||
|
SendOtp,
|
||||||
|
VerifyOtp,
|
||||||
|
sendForSetPassword,
|
||||||
|
verifyForSetPassword,
|
||||||
|
};
|
||||||
55
src/controllers/rtgs.controller.js
Normal file
55
src/controllers/rtgs.controller.js
Normal file
@@ -0,0 +1,55 @@
|
|||||||
|
const axios = require('axios');
|
||||||
|
const {
|
||||||
|
recordInterBankTransaction,
|
||||||
|
} = require('../services/recordkeeping.service');
|
||||||
|
|
||||||
|
async function send(
|
||||||
|
customerNo,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
amount,
|
||||||
|
ifscCode,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
remarks
|
||||||
|
) {
|
||||||
|
const commission = 0;
|
||||||
|
try {
|
||||||
|
const response = await axios.post(
|
||||||
|
'http://localhost:8690/kccb/Rtgsfundtransfer',
|
||||||
|
{
|
||||||
|
stFromAcc: fromAccount,
|
||||||
|
stToAcc: toAccount,
|
||||||
|
stTranAmt: amount,
|
||||||
|
stCommission: commission,
|
||||||
|
stIfscCode: ifscCode,
|
||||||
|
stFullName: remitterName,
|
||||||
|
stBeneName: beneficiaryName,
|
||||||
|
stAddress1: '',
|
||||||
|
stAddress2: '',
|
||||||
|
stAddress3: '',
|
||||||
|
narration: remarks
|
||||||
|
}
|
||||||
|
);
|
||||||
|
await recordInterBankTransaction(
|
||||||
|
customerNo,
|
||||||
|
'rtgs',
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
ifscCode,
|
||||||
|
amount,
|
||||||
|
commission,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
response.data.status
|
||||||
|
);
|
||||||
|
return response.data;
|
||||||
|
} catch (error) {
|
||||||
|
throw new Error(
|
||||||
|
'API call to CBS failed' +
|
||||||
|
(error.response?.data?.message || error.message)
|
||||||
|
);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = { send };
|
||||||
@@ -13,6 +13,8 @@ async function getLastTen(accountNumber) {
|
|||||||
date: tx.stTransactionDate,
|
date: tx.stTransactionDate,
|
||||||
amount: tx.stTransactionAmount.slice(0, -3),
|
amount: tx.stTransactionAmount.slice(0, -3),
|
||||||
type: tx.stTransactionAmount.slice(-2),
|
type: tx.stTransactionAmount.slice(-2),
|
||||||
|
balance: tx.stAccountBalance.slice(0, -3),
|
||||||
|
balanceType: tx.stAccountBalance.slice(-2),
|
||||||
}));
|
}));
|
||||||
return processedTransactions;
|
return processedTransactions;
|
||||||
} catch (error) {
|
} catch (error) {
|
||||||
@@ -21,5 +23,29 @@ async function getLastTen(accountNumber) {
|
|||||||
);
|
);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
async function getFiltered(accountNumber, fromDate, toDate) {
|
||||||
module.exports = { getLastTen };
|
try {
|
||||||
|
const response = await axios.get(
|
||||||
|
`http://localhost:8688/kccb/cbs/montlyacctstmt/details`,
|
||||||
|
{
|
||||||
|
params: { stacctno: accountNumber, fromdate: fromDate, todate: toDate },
|
||||||
|
}
|
||||||
|
);
|
||||||
|
const transactions = response.data;
|
||||||
|
const processedTransactions = transactions.map((tx) => ({
|
||||||
|
id: tx.stTransactionNumber,
|
||||||
|
name: tx.stTransactionDesc,
|
||||||
|
date: tx.stTransactionDate,
|
||||||
|
amount: tx.stTransactionAmount.slice(0, -3),
|
||||||
|
type: tx.stTransactionAmount.slice(-2),
|
||||||
|
balance: tx.stAccountBalance.slice(0, -3),
|
||||||
|
balanceType: tx.stAccountBalance.slice(-2),
|
||||||
|
}));
|
||||||
|
return processedTransactions;
|
||||||
|
} catch (error) {
|
||||||
|
throw new Error(
|
||||||
|
'API call failde: ' + (error.response?.data?.message || error.message)
|
||||||
|
);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
module.exports = { getLastTen, getFiltered };
|
||||||
|
|||||||
@@ -1,12 +1,15 @@
|
|||||||
const axios = require('axios');
|
const axios = require('axios');
|
||||||
|
const {
|
||||||
|
recordIntraBankTransaction,
|
||||||
|
} = require('../services/recordkeeping.service');
|
||||||
|
|
||||||
async function transfer(
|
async function transfer(
|
||||||
fromAccountNo,
|
fromAccountNo,
|
||||||
toAccountNo,
|
toAccountNo,
|
||||||
toAccountType,
|
toAccountType,
|
||||||
amount,
|
amount,
|
||||||
// narration = 'transfer from mobile'
|
customerNo,
|
||||||
narration
|
narration = ''
|
||||||
) {
|
) {
|
||||||
try {
|
try {
|
||||||
const response = await axios.post(
|
const response = await axios.post(
|
||||||
@@ -19,6 +22,14 @@ async function transfer(
|
|||||||
narration,
|
narration,
|
||||||
}
|
}
|
||||||
);
|
);
|
||||||
|
await recordIntraBankTransaction(
|
||||||
|
customerNo,
|
||||||
|
fromAccountNo,
|
||||||
|
toAccountNo,
|
||||||
|
toAccountType,
|
||||||
|
amount,
|
||||||
|
response.data.status
|
||||||
|
);
|
||||||
return response.data;
|
return response.data;
|
||||||
} catch (error) {
|
} catch (error) {
|
||||||
throw new Error(
|
throw new Error(
|
||||||
|
|||||||
28
src/middlewares/admin.middleware.js
Normal file
28
src/middlewares/admin.middleware.js
Normal file
@@ -0,0 +1,28 @@
|
|||||||
|
const { verifyToken } = require('../util/jwt');
|
||||||
|
const { logger } = require('../util/logger');
|
||||||
|
|
||||||
|
function checkAdmin (req,res,next){
|
||||||
|
const authHeader = req.headers.authorization;
|
||||||
|
|
||||||
|
if (!authHeader || !authHeader.startsWith('Bearer ')) {
|
||||||
|
return res
|
||||||
|
.status(401)
|
||||||
|
.json({ error: 'missing or malformed authorization header' });
|
||||||
|
}
|
||||||
|
|
||||||
|
const token = authHeader.split(' ')[1];
|
||||||
|
try {
|
||||||
|
const payload = verifyToken(token);
|
||||||
|
// console.log("hi",payload);
|
||||||
|
if(payload.customerNo && payload.role === 'admin'){
|
||||||
|
req.admin = payload.customerNo;
|
||||||
|
next();
|
||||||
|
}
|
||||||
|
else
|
||||||
|
return res.status(403).json({error :'Only admin can access'})
|
||||||
|
} catch (err) {
|
||||||
|
logger.error(err, 'error verifying token');
|
||||||
|
return res.status(401).json({ error: 'invalid or expired token' });
|
||||||
|
}
|
||||||
|
}
|
||||||
|
module.exports = checkAdmin;
|
||||||
@@ -21,5 +21,4 @@ function auth(req, res, next) {
|
|||||||
return res.status(401).json({ error: 'invalid or expired token' });
|
return res.status(401).json({ error: 'invalid or expired token' });
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
module.exports = auth;
|
module.exports = auth;
|
||||||
|
|||||||
12
src/otpgenerator.js
Normal file
12
src/otpgenerator.js
Normal file
@@ -0,0 +1,12 @@
|
|||||||
|
|
||||||
|
function generateOTP(length) {
|
||||||
|
const digits = '0123456789';
|
||||||
|
let otp = '';
|
||||||
|
otp += digits[Math.floor(Math.random() * 9) + 1]; // first digit cannot be zero
|
||||||
|
for (let i = 1; i < length; i++) {
|
||||||
|
otp += digits[Math.floor(Math.random() * digits.length)];
|
||||||
|
}
|
||||||
|
return otp;
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = { generateOTP };
|
||||||
12
src/routes/admin_auth.route.js
Normal file
12
src/routes/admin_auth.route.js
Normal file
@@ -0,0 +1,12 @@
|
|||||||
|
const adminAuthController = require('../controllers/admin_auth.controller');
|
||||||
|
const adminAuthenticate = require('../middlewares/admin.middleware');
|
||||||
|
const express = require('express');
|
||||||
|
|
||||||
|
const router = express.Router();
|
||||||
|
|
||||||
|
router.post('/login', adminAuthController.login);
|
||||||
|
router.get('/admin_details', adminAuthenticate, adminAuthController.fetchAdminDetails);
|
||||||
|
router.get('/fetch/customer_details',adminAuthenticate,adminAuthController.getUserDetails);
|
||||||
|
router.post('/user/rights',adminAuthenticate,adminAuthController.UserRights);
|
||||||
|
router.get('/user/rights',adminAuthenticate,adminAuthController.getUserRights);
|
||||||
|
module.exports = router;
|
||||||
@@ -9,6 +9,9 @@ router.get('/user_details', authenticate, authController.fetchUserDetails);
|
|||||||
router.get('/tpin', authenticate, authController.tpin);
|
router.get('/tpin', authenticate, authController.tpin);
|
||||||
router.post('/tpin', authenticate, authController.setTpin);
|
router.post('/tpin', authenticate, authController.setTpin);
|
||||||
router.post('/login_password', authenticate, authController.setLoginPassword);
|
router.post('/login_password', authenticate, authController.setLoginPassword);
|
||||||
router.post('/transaction_password', authenticate, authController.setTransactionPassword);
|
router.post('/transaction_password',authenticate,authController.setTransactionPassword);
|
||||||
|
router.post('/change/login_password',authenticate,authController.changeLoginPassword);
|
||||||
|
router.post('/change/transaction_password',authenticate,authController.changeTransPassword);
|
||||||
|
|
||||||
|
|
||||||
module.exports = router;
|
module.exports = router;
|
||||||
|
|||||||
@@ -9,5 +9,9 @@ router.get('/validate/outside-bank', beneficiaryController.validateOutsideBank);
|
|||||||
router.get('/ifsc-details', beneficiaryController.getIfscDetails);
|
router.get('/ifsc-details', beneficiaryController.getIfscDetails);
|
||||||
router.get('/', beneficiaryController.getBeneficiary);
|
router.get('/', beneficiaryController.getBeneficiary);
|
||||||
router.post('/', newBeneficiaryValidator, beneficiaryController.addBeneficiary);
|
router.post('/', newBeneficiaryValidator, beneficiaryController.addBeneficiary);
|
||||||
|
router.delete(
|
||||||
|
'/:beneficiaryAccountNo',
|
||||||
|
beneficiaryController.deleteBeneficiary
|
||||||
|
);
|
||||||
|
|
||||||
module.exports = router;
|
module.exports = router;
|
||||||
|
|||||||
38
src/routes/imps.route.js
Normal file
38
src/routes/imps.route.js
Normal file
@@ -0,0 +1,38 @@
|
|||||||
|
const express = require('express');
|
||||||
|
const impsController = require('../controllers/imps.controller');
|
||||||
|
const { logger } = require('../util/logger');
|
||||||
|
const impsValidator = require('../validators/imps.validator');
|
||||||
|
const paymentSecretValidator = require('../validators/payment.secret.validator');
|
||||||
|
|
||||||
|
const router = express.Router();
|
||||||
|
router.use(impsValidator, paymentSecretValidator);
|
||||||
|
|
||||||
|
const impsRoute = async (req, res) => {
|
||||||
|
const { fromAccount, toAccount, ifscCode, amount, beneficiaryName, remarks } =
|
||||||
|
req.body;
|
||||||
|
|
||||||
|
try {
|
||||||
|
const result = await impsController.send(
|
||||||
|
req.user,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
amount,
|
||||||
|
ifscCode,
|
||||||
|
beneficiaryName,
|
||||||
|
'SAVINGS',
|
||||||
|
remarks
|
||||||
|
);
|
||||||
|
|
||||||
|
if (result.startsWith('Message produced successfully')) {
|
||||||
|
return res.json({ message: 'SUCCESS' });
|
||||||
|
} else {
|
||||||
|
return res.json({ error: 'INVALID_REQUEST' });
|
||||||
|
}
|
||||||
|
} catch (error) {
|
||||||
|
logger.error(error, 'error occured while doing IMPS');
|
||||||
|
return res.json({ error: 'INTERVAL_SERVER_ERROR' });
|
||||||
|
}
|
||||||
|
};
|
||||||
|
router.post('/', impsRoute);
|
||||||
|
|
||||||
|
module.exports = router;
|
||||||
@@ -1,19 +1,30 @@
|
|||||||
const express = require('express');
|
const express = require('express');
|
||||||
const authRoute = require('./auth.route');
|
const authRoute = require('./auth.route');
|
||||||
|
const adminAuthRoute =require('./admin_auth.route');
|
||||||
const detailsRoute = require('./customer_details.route');
|
const detailsRoute = require('./customer_details.route');
|
||||||
const transactionRoute = require('./transactions.route');
|
const transactionRoute = require('./transactions.route');
|
||||||
const authenticate = require('../middlewares/auth.middleware');
|
const authenticate = require('../middlewares/auth.middleware');
|
||||||
const transferRoute = require('./transfer.route');
|
const transferRoute = require('./transfer.route');
|
||||||
const beneficiaryRoute = require('./beneficiary.route');
|
const beneficiaryRoute = require('./beneficiary.route');
|
||||||
|
const neftRoute = require('./neft.route');
|
||||||
|
const rtgsRoute = require('./rtgs.route');
|
||||||
|
const impsRoute = require('./imps.route');
|
||||||
const { npciResponse } = require('../controllers/npci.controller');
|
const { npciResponse } = require('../controllers/npci.controller');
|
||||||
|
const otp = require('./otp.route');
|
||||||
|
|
||||||
const router = express.Router();
|
const router = express.Router();
|
||||||
|
|
||||||
router.use('/auth', authRoute);
|
router.use('/auth', authRoute);
|
||||||
|
router.use('/auth/admin',adminAuthRoute);
|
||||||
router.use('/customer', authenticate, detailsRoute);
|
router.use('/customer', authenticate, detailsRoute);
|
||||||
router.use('/transactions/account/:accountNo', authenticate, transactionRoute);
|
router.use('/transactions/account/:accountNo', authenticate, transactionRoute);
|
||||||
router.use('/payment/transfer', authenticate, transferRoute);
|
router.use('/payment/transfer', authenticate, transferRoute);
|
||||||
|
router.use('/payment/neft', authenticate, neftRoute);
|
||||||
|
router.use('/payment/rtgs', authenticate, rtgsRoute);
|
||||||
|
router.use('/payment/imps', authenticate, impsRoute);
|
||||||
router.use('/beneficiary', authenticate, beneficiaryRoute);
|
router.use('/beneficiary', authenticate, beneficiaryRoute);
|
||||||
router.use('/npci/beneficiary-response', npciResponse);
|
router.use('/npci/beneficiary-response', npciResponse);
|
||||||
|
router.use('/otp', otp);
|
||||||
|
|
||||||
|
|
||||||
module.exports = router;
|
module.exports = router;
|
||||||
|
|||||||
52
src/routes/neft.route.js
Normal file
52
src/routes/neft.route.js
Normal file
@@ -0,0 +1,52 @@
|
|||||||
|
const express = require('express');
|
||||||
|
const neftController = require('../controllers/neft.controller');
|
||||||
|
const { logger } = require('../util/logger');
|
||||||
|
const neftValidator = require('../validators/neft.validator.js');
|
||||||
|
const paymentSecretValidator = require('../validators/payment.secret.validator');
|
||||||
|
|
||||||
|
const router = express.Router();
|
||||||
|
router.use(neftValidator, paymentSecretValidator);
|
||||||
|
|
||||||
|
const neftRoute = async (req, res) => {
|
||||||
|
const {
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
ifscCode,
|
||||||
|
amount,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
remarks
|
||||||
|
} = req.body;
|
||||||
|
|
||||||
|
try {
|
||||||
|
const result = await neftController.send(
|
||||||
|
req.user,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
amount,
|
||||||
|
ifscCode,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
remarks
|
||||||
|
);
|
||||||
|
logger.info(result);
|
||||||
|
|
||||||
|
if (result.status.startsWith('O.K.')) {
|
||||||
|
const utr = result.status.slice(9, 25);
|
||||||
|
return res.json({ message: 'SUCCESS', utr });
|
||||||
|
} else if (result.status.includes('INSUFFICIENT FUNDS')) {
|
||||||
|
return res.status(422).json({ error: 'INSUFFICIENT_FUNDS' });
|
||||||
|
} else if (result.status.includes('INVALID CHECK DIGIT')) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_ACCOUNT_NUMBER' });
|
||||||
|
} else {
|
||||||
|
return res.status(400).json({ error: 'PROBLEM_TRANSFERRING_FUNDS' });
|
||||||
|
}
|
||||||
|
} catch (error) {
|
||||||
|
logger.error(error, 'error occured while doing NEFT transaction');
|
||||||
|
return res.status(500).json({ error: 'INTERNAL_SERVER_ERROR' });
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
router.post('/', neftRoute);
|
||||||
|
|
||||||
|
module.exports = router;
|
||||||
18
src/routes/otp.route.js
Normal file
18
src/routes/otp.route.js
Normal file
@@ -0,0 +1,18 @@
|
|||||||
|
const express = require('express');
|
||||||
|
const otpController = require('../controllers/otp.controller');
|
||||||
|
|
||||||
|
const router = express.Router();
|
||||||
|
|
||||||
|
// Send OTP (POST request with body)
|
||||||
|
router.post('/send', otpController.SendOtp);
|
||||||
|
|
||||||
|
// Verify OTP (GET request with query params ?mobileNumber=xxx&otp=123456)
|
||||||
|
router.post('/verify', otpController.VerifyOtp);
|
||||||
|
|
||||||
|
//send otp for setting password
|
||||||
|
router.get('/send/set-password', otpController.sendForSetPassword);
|
||||||
|
|
||||||
|
//verify otp for setting password
|
||||||
|
router.get('/verify/set-password', otpController.verifyForSetPassword);
|
||||||
|
|
||||||
|
module.exports = router;
|
||||||
51
src/routes/rtgs.route.js
Normal file
51
src/routes/rtgs.route.js
Normal file
@@ -0,0 +1,51 @@
|
|||||||
|
const express = require('express');
|
||||||
|
const rtgsController = require('../controllers/rtgs.controller');
|
||||||
|
const { logger } = require('../util/logger');
|
||||||
|
const rtgsValidator = require('../validators/rtgs.validator.js');
|
||||||
|
const paymentSecretValidator = require('../validators/payment.secret.validator');
|
||||||
|
|
||||||
|
const router = express.Router();
|
||||||
|
router.use(rtgsValidator, paymentSecretValidator);
|
||||||
|
|
||||||
|
const rtgsRoute = async (req, res) => {
|
||||||
|
const {
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
ifscCode,
|
||||||
|
amount,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
remarks
|
||||||
|
} = req.body;
|
||||||
|
|
||||||
|
try {
|
||||||
|
const result = await rtgsController.send(
|
||||||
|
req.user,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
amount,
|
||||||
|
ifscCode,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
remarks
|
||||||
|
);
|
||||||
|
|
||||||
|
if (result.status.startsWith('O.K.')) {
|
||||||
|
const utr = result.status.slice(9, 25);
|
||||||
|
return res.json({ message: 'SUCCESS', utr });
|
||||||
|
} else if (result.status.includes('INSUFFICIENT FUNDS')) {
|
||||||
|
return res.status(422).json({ error: 'INSUFFICIENT_FUNDS' });
|
||||||
|
} else if (result.status.includes('INVALID CHECK DIGIT')) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_ACCOUNT_NUMBER' });
|
||||||
|
} else {
|
||||||
|
return res.status(400).json({ error: 'PROBLEM_TRANSFERRING_FUNDS' });
|
||||||
|
}
|
||||||
|
} catch (error) {
|
||||||
|
logger.error(error, 'error occured while doing NEFT transaction');
|
||||||
|
return res.status(500).json({ error: 'INTERNAL_SERVER_ERROR' });
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
router.post('/', rtgsRoute);
|
||||||
|
|
||||||
|
module.exports = router;
|
||||||
@@ -3,15 +3,44 @@ const { logger } = require('../util/logger');
|
|||||||
|
|
||||||
const transactionsRoute = async (req, res) => {
|
const transactionsRoute = async (req, res) => {
|
||||||
const accountNo = req.params.accountNo;
|
const accountNo = req.params.accountNo;
|
||||||
|
const { fromDate, toDate } = req.query;
|
||||||
|
let data;
|
||||||
try {
|
try {
|
||||||
const data = await transactionsController.getLastTen(accountNo);
|
if (fromDate && toDate) {
|
||||||
|
if (!isValidDDMMYYYY(fromDate) || !isValidDDMMYYYY(toDate)) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_DATE_FORMAT' });
|
||||||
|
}
|
||||||
|
data = await transactionsController.getFiltered(
|
||||||
|
accountNo,
|
||||||
|
fromDate,
|
||||||
|
toDate
|
||||||
|
);
|
||||||
|
} else {
|
||||||
|
data = await transactionsController.getLastTen(accountNo);
|
||||||
|
}
|
||||||
return res.json(data);
|
return res.json(data);
|
||||||
} catch (error) {
|
} catch (error) {
|
||||||
logger.error('error retriving last 10 txns', error);
|
logger.error('error retriving transaction history', error);
|
||||||
return res
|
return res
|
||||||
.status(500)
|
.status(500)
|
||||||
.json({ message: 'error occured while fetching transactions' });
|
.json({ message: 'error occured while fetching transactions' });
|
||||||
}
|
}
|
||||||
};
|
};
|
||||||
|
|
||||||
|
function isValidDDMMYYYY(dateStr) {
|
||||||
|
if (!/^\d{8}$/.test(dateStr)) return false;
|
||||||
|
|
||||||
|
const day = parseInt(dateStr.slice(0, 2), 10);
|
||||||
|
const month = parseInt(dateStr.slice(2, 4), 10);
|
||||||
|
const year = parseInt(dateStr.slice(4), 10);
|
||||||
|
|
||||||
|
const date = new Date(year, month - 1, day);
|
||||||
|
|
||||||
|
return (
|
||||||
|
date.getFullYear() === year &&
|
||||||
|
date.getMonth() === month - 1 &&
|
||||||
|
date.getDate() === day
|
||||||
|
);
|
||||||
|
}
|
||||||
|
|
||||||
module.exports = transactionsRoute;
|
module.exports = transactionsRoute;
|
||||||
|
|||||||
@@ -1,34 +1,22 @@
|
|||||||
const transferController = require('../controllers/transfer.controller');
|
const transferController = require('../controllers/transfer.controller');
|
||||||
const { logger } = require('../util/logger');
|
const { logger } = require('../util/logger');
|
||||||
const express = require('express');
|
const express = require('express');
|
||||||
const tpinValidator = require('../validators/tpin.validator');
|
|
||||||
const tpasswordValidator = require('../validators/tpassword.validator');
|
|
||||||
const transferValidator = require('../validators/transfer.validator');
|
const transferValidator = require('../validators/transfer.validator');
|
||||||
|
const passwordValidator = require('../validators/payment.secret.validator.js');
|
||||||
|
|
||||||
const router = express.Router();
|
const router = express.Router();
|
||||||
// Added for tpassword
|
|
||||||
const passwordValidator=async(req,res,next)=>{
|
|
||||||
const{tpin,tpassword} =req.body;
|
|
||||||
if(tpin){
|
|
||||||
return tpinValidator(req,res,next);
|
|
||||||
}
|
|
||||||
else if(tpassword){
|
|
||||||
return tpasswordValidator(req,res,next);
|
|
||||||
}
|
|
||||||
else{
|
|
||||||
return res.status(400).json({error:"tpin or tpassword is required"})
|
|
||||||
}
|
|
||||||
}
|
|
||||||
router.use(passwordValidator, transferValidator);
|
router.use(passwordValidator, transferValidator);
|
||||||
|
|
||||||
const transferRoute = async (req, res) => {
|
const transferRoute = async (req, res) => {
|
||||||
const { fromAccount, toAccount, toAccountType, amount } = req.body;
|
const { fromAccount, toAccount, toAccountType, amount, remarks } = req.body;
|
||||||
try {
|
try {
|
||||||
const result = await transferController.transfer(
|
const result = await transferController.transfer(
|
||||||
fromAccount,
|
fromAccount,
|
||||||
toAccount,
|
toAccount,
|
||||||
toAccountType,
|
toAccountType,
|
||||||
amount
|
amount,
|
||||||
|
req.user,
|
||||||
|
remarks
|
||||||
);
|
);
|
||||||
|
|
||||||
if (result.status === 'O.K.') {
|
if (result.status === 'O.K.') {
|
||||||
|
|||||||
47
src/services/admin.auth.service.js
Normal file
47
src/services/admin.auth.service.js
Normal file
@@ -0,0 +1,47 @@
|
|||||||
|
const db = require('../config/db');
|
||||||
|
const { comparePassword, hashPassword } = require('../util/hash');
|
||||||
|
const axios = require('axios');
|
||||||
|
|
||||||
|
async function findAdminByUserName(customerNo) {
|
||||||
|
const result = await db.query('SELECT * FROM admin WHERE username = $1', [
|
||||||
|
customerNo,
|
||||||
|
]);
|
||||||
|
return result.rows[0];
|
||||||
|
}
|
||||||
|
|
||||||
|
async function validateAdmin(customerNo, password) {
|
||||||
|
const user = await findAdminByUserName(customerNo);
|
||||||
|
if (!user) return null;
|
||||||
|
const isMatch = await comparePassword(password, user.password);
|
||||||
|
return isMatch ? user : null;
|
||||||
|
}
|
||||||
|
|
||||||
|
async function getCustomerDetails(customerNo) {
|
||||||
|
try {
|
||||||
|
const response = await axios.get(
|
||||||
|
'http://localhost:8686/kccb/cbs/custInfo/details',
|
||||||
|
{ params: { stcustno: customerNo } }
|
||||||
|
);
|
||||||
|
const details = response.data;
|
||||||
|
const processedDetails = details.map((acc) => ({
|
||||||
|
...acc,
|
||||||
|
activeAccounts: details.length,
|
||||||
|
cifNumber: customerNo,
|
||||||
|
}));
|
||||||
|
return processedDetails;
|
||||||
|
} catch (error) {
|
||||||
|
logger.error('while fetching customer details', error);
|
||||||
|
throw new Error(
|
||||||
|
'API call failed: ' + (error.response?.data?.message || error.message)
|
||||||
|
);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
async function getCustomerDetailsFromDB(customerNo) {
|
||||||
|
const result = await db.query('SELECT customer_no,created_at,last_login,is_first_login,ib_access_level,mb_access_level FROM users WHERE customer_no = $1', [
|
||||||
|
customerNo,
|
||||||
|
]);
|
||||||
|
return result.rows[0];
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = { validateAdmin, findAdminByUserName, getCustomerDetails,getCustomerDetailsFromDB };
|
||||||
@@ -1,5 +1,6 @@
|
|||||||
const db = require('../config/db');
|
const db = require('../config/db');
|
||||||
const { comparePassword, hashPassword } = require('../util/hash');
|
const { comparePassword, hashPassword } = require('../util/hash');
|
||||||
|
const dayjs = require('dayjs');
|
||||||
|
|
||||||
async function findUserByCustomerNo(customerNo) {
|
async function findUserByCustomerNo(customerNo) {
|
||||||
const result = await db.query('SELECT * FROM users WHERE customer_no = $1', [
|
const result = await db.query('SELECT * FROM users WHERE customer_no = $1', [
|
||||||
@@ -23,6 +24,12 @@ async function CheckFirstTimeLogin(customerNo) {
|
|||||||
return is_first_time_login;
|
return is_first_time_login;
|
||||||
}
|
}
|
||||||
|
|
||||||
|
async function isMigratedUser(customerNo) {
|
||||||
|
const user = await findUserByCustomerNo(customerNo);
|
||||||
|
if (user?.password_hash === 'o') return true;
|
||||||
|
return false;
|
||||||
|
}
|
||||||
|
|
||||||
async function validateTpin(customerNo, tpin) {
|
async function validateTpin(customerNo, tpin) {
|
||||||
const user = await findUserByCustomerNo(customerNo);
|
const user = await findUserByCustomerNo(customerNo);
|
||||||
if (!user?.tpin) return null;
|
if (!user?.tpin) return null;
|
||||||
@@ -47,14 +54,16 @@ async function setTpin(customerNo, tpin) {
|
|||||||
// Set login password
|
// Set login password
|
||||||
async function setLoginPassword(customerNo, login_psw) {
|
async function setLoginPassword(customerNo, login_psw) {
|
||||||
const hashedLoginPassword = await hashPassword(login_psw);
|
const hashedLoginPassword = await hashPassword(login_psw);
|
||||||
|
const currentTime = dayjs().toISOString();
|
||||||
|
const password_expiry = dayjs().add(90, 'day').toISOString();
|
||||||
try {
|
try {
|
||||||
await db.query('UPDATE users SET password_hash = $1 ,is_first_login = false WHERE customer_no = $2', [
|
await db.query(
|
||||||
hashedLoginPassword,
|
'UPDATE users SET password_hash = $1 ,is_first_login = false,updated_at = $3,password_hash_expiry =$4 WHERE customer_no = $2',
|
||||||
customerNo,
|
[hashedLoginPassword, customerNo, currentTime, password_expiry]
|
||||||
]);
|
);
|
||||||
} catch (error) {
|
} catch (error) {
|
||||||
throw new Error(
|
throw new Error(
|
||||||
`error occured while while setting new Login Password ${error.message}`
|
`error occurred while while setting new Login Password ${error.message}`
|
||||||
);
|
);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
@@ -62,24 +71,69 @@ async function setLoginPassword(customerNo, login_psw) {
|
|||||||
async function validateTransactionPassword(customerNo, tpassword) {
|
async function validateTransactionPassword(customerNo, tpassword) {
|
||||||
const user = await findUserByCustomerNo(customerNo);
|
const user = await findUserByCustomerNo(customerNo);
|
||||||
if (!user?.transaction_password) return null;
|
if (!user?.transaction_password) return null;
|
||||||
const isMatch = await comparePassword(tpassword, user.transaction_password );
|
const isMatch = await comparePassword(tpassword, user.transaction_password);
|
||||||
return isMatch;
|
return isMatch;
|
||||||
}
|
}
|
||||||
|
|
||||||
// Set transaction password
|
// Set transaction password
|
||||||
async function setTransactionPassword(customerNo, trans_psw) {
|
async function setTransactionPassword(customerNo, trans_psw) {
|
||||||
const hashedTransPassword = await hashPassword(trans_psw);
|
const hashedTransPassword = await hashPassword(trans_psw);
|
||||||
|
const currentTime = dayjs().toISOString();
|
||||||
|
const password_expiry = dayjs().add(90, 'day').toISOString();
|
||||||
try {
|
try {
|
||||||
await db.query('UPDATE users SET transaction_password = $1 WHERE customer_no = $2', [
|
await db.query(
|
||||||
hashedTransPassword,
|
'UPDATE users SET transaction_password = $1 ,updated_at = $3,transaction_password_expiry =$4 WHERE customer_no = $2',
|
||||||
customerNo,
|
[hashedTransPassword, customerNo, currentTime, password_expiry]
|
||||||
]);
|
);
|
||||||
} catch (error) {
|
} catch (error) {
|
||||||
throw new Error(
|
throw new Error(
|
||||||
`error occured while while setting new Transaction Password ${error.message}`
|
`error occurred while while setting new Transaction Password ${error.message}`
|
||||||
);
|
);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
module.exports = { validateUser, findUserByCustomerNo, setTpin, validateTpin,
|
async function changeLoginPassword(customerNo, login_psw) {
|
||||||
CheckFirstTimeLogin, setLoginPassword, validateTransactionPassword,setTransactionPassword };
|
const hashedLoginPassword = await hashPassword(login_psw);
|
||||||
|
const currentTime = dayjs().toISOString();
|
||||||
|
const password_expiry = dayjs().add(90, 'day').toISOString();
|
||||||
|
try {
|
||||||
|
await db.query(
|
||||||
|
'UPDATE users SET password_hash = $1 ,updated_at = $3,password_hash_expiry =$4 WHERE customer_no = $2',
|
||||||
|
[hashedLoginPassword, customerNo, currentTime, password_expiry]
|
||||||
|
);
|
||||||
|
} catch (error) {
|
||||||
|
throw new Error(
|
||||||
|
`error occured while while setting new Login Password ${error.message}`
|
||||||
|
);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
async function changeTransPassword(customerNo, trans_psw) {
|
||||||
|
const hashedTransPassword = await hashPassword(trans_psw);
|
||||||
|
const currentTime = dayjs().toISOString();
|
||||||
|
const password_expiry = dayjs().add(90, 'day').toISOString();
|
||||||
|
try {
|
||||||
|
await db.query(
|
||||||
|
'UPDATE users SET transaction_password = $1 ,updated_at = $3,transaction_password_expiry =$4 WHERE customer_no = $2',
|
||||||
|
[hashedTransPassword, customerNo, currentTime, password_expiry]
|
||||||
|
);
|
||||||
|
} catch (error) {
|
||||||
|
throw new Error(
|
||||||
|
`error occurred while while setting new Login Password ${error.message}`
|
||||||
|
);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = {
|
||||||
|
validateUser,
|
||||||
|
findUserByCustomerNo,
|
||||||
|
setTpin,
|
||||||
|
validateTpin,
|
||||||
|
CheckFirstTimeLogin,
|
||||||
|
setLoginPassword,
|
||||||
|
validateTransactionPassword,
|
||||||
|
setTransactionPassword,
|
||||||
|
changeLoginPassword,
|
||||||
|
changeTransPassword,
|
||||||
|
isMigratedUser,
|
||||||
|
};
|
||||||
|
|||||||
@@ -6,9 +6,7 @@ const db = require('../config/db');
|
|||||||
async function validateWithinBank(accountNo) {
|
async function validateWithinBank(accountNo) {
|
||||||
const url = 'http://localhost:8687/kccb/cbs/acctInfo/details';
|
const url = 'http://localhost:8687/kccb/cbs/acctInfo/details';
|
||||||
try {
|
try {
|
||||||
const response = await axios.get(url, {
|
const response = await axios.get(url, { params: { stacctno: accountNo } });
|
||||||
params: { stacctno: accountNo },
|
|
||||||
});
|
|
||||||
const data = response.data;
|
const data = response.data;
|
||||||
const customerName = data.customername;
|
const customerName = data.customername;
|
||||||
return customerName;
|
return customerName;
|
||||||
@@ -20,7 +18,7 @@ async function validateWithinBank(accountNo) {
|
|||||||
|
|
||||||
async function validateOutsideBank(accountNo, ifscCode, name) {
|
async function validateOutsideBank(accountNo, ifscCode, name) {
|
||||||
const uuid = `KCC${uuidv4().replace(/-/g, '')}`;
|
const uuid = `KCC${uuidv4().replace(/-/g, '')}`;
|
||||||
const url = `http://localhost:9091/kccb/benenamelookup/ReqBeneDetails/${uuid}`;
|
const url = `http://192.168.1.39:9091/kccb/benenamelookup/ReqBeneDetails/${uuid}`;
|
||||||
try {
|
try {
|
||||||
const response = await axios.post(url, {
|
const response = await axios.post(url, {
|
||||||
acctNo: accountNo,
|
acctNo: accountNo,
|
||||||
@@ -28,7 +26,6 @@ async function validateOutsideBank(accountNo, ifscCode, name) {
|
|||||||
remittername: name,
|
remittername: name,
|
||||||
});
|
});
|
||||||
if (response.data) {
|
if (response.data) {
|
||||||
console.log(response.data);
|
|
||||||
return uuid;
|
return uuid;
|
||||||
}
|
}
|
||||||
} catch (error) {
|
} catch (error) {
|
||||||
@@ -44,19 +41,34 @@ async function getSingleBeneficiary(customerNo, accountNo) {
|
|||||||
return result.rows[0];
|
return result.rows[0];
|
||||||
}
|
}
|
||||||
|
|
||||||
|
async function deleteBeneficiary(customerNo, beneficiaryAccountNo) {
|
||||||
|
const queryStr =
|
||||||
|
'DELETE FROM beneficiaries WHERE customer_no = $1 AND account_no = $2';
|
||||||
|
const result = await db.query(queryStr, [customerNo, beneficiaryAccountNo]);
|
||||||
|
if (result.rowCount == 0) {
|
||||||
|
throw new Error('ACCOUNT_NOT_FOUND');
|
||||||
|
}
|
||||||
|
return;
|
||||||
|
}
|
||||||
|
|
||||||
async function getAllBeneficiaries(customerNo) {
|
async function getAllBeneficiaries(customerNo) {
|
||||||
const queryStr =
|
const queryStr =
|
||||||
'SELECT b.account_no, b.name, b.account_type, b.ifsc_code, i.bank_name, i.branch_name FROM beneficiaries b JOIN ifsc_details i ON b.ifsc_code = i.ifsc_code WHERE customer_no = $1';
|
'SELECT b.account_no, b.name, b.account_type, b.ifsc_code, i.bank_name, i.branch_name FROM beneficiaries b JOIN LATERAL( SELECT * FROM ifsc_details i WHERE i.ifsc_code = b.ifsc_code LIMIT 1 ) i ON true WHERE customer_no = $1';
|
||||||
const result = await db.query(queryStr, [customerNo]);
|
const result = await db.query(queryStr, [customerNo]);
|
||||||
const list = result.rows.map((row) => {
|
const list = result.rows.map((row) => {
|
||||||
return {
|
const details = {
|
||||||
accountNo: row['account_no'],
|
accountNo: row['account_no'],
|
||||||
name: row['name'],
|
name: row['name'],
|
||||||
accountType: row['account_type'],
|
accountType: row['account_type'],
|
||||||
ifscCdoe: row['ifsc_code'],
|
};
|
||||||
bankName: row['bank_name'],
|
if (row['ifsc_code'] === '_') {
|
||||||
branchName: row['branch_name'],
|
details['bankName'] = 'THE KANGRA CENTRAL COOPERATIVE BANK LIMITED';
|
||||||
|
} else {
|
||||||
|
details['ifscCode'] = row['ifsc_code'];
|
||||||
|
details['bankName'] = row['bank_name'];
|
||||||
|
details['branchName'] = row['branch_name'];
|
||||||
}
|
}
|
||||||
|
return details;
|
||||||
});
|
});
|
||||||
|
|
||||||
return list;
|
return list;
|
||||||
@@ -66,4 +78,5 @@ module.exports = {
|
|||||||
validateOutsideBank,
|
validateOutsideBank,
|
||||||
getAllBeneficiaries,
|
getAllBeneficiaries,
|
||||||
getSingleBeneficiary,
|
getSingleBeneficiary,
|
||||||
|
deleteBeneficiary,
|
||||||
};
|
};
|
||||||
|
|||||||
52
src/services/recordkeeping.service.js
Normal file
52
src/services/recordkeeping.service.js
Normal file
@@ -0,0 +1,52 @@
|
|||||||
|
const db = require('../config/db');
|
||||||
|
|
||||||
|
const recordIntraBankTransaction = async (
|
||||||
|
customerNo,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
accountType,
|
||||||
|
amount,
|
||||||
|
status
|
||||||
|
) => {
|
||||||
|
const trxType = 'TRF';
|
||||||
|
const query =
|
||||||
|
'INSERT INTO transactions (customer_no, trx_type, from_account, to_account, to_account_type, amount, status) VALUES ($1, $2, $3, $4, $5, $6, $7)';
|
||||||
|
await db.query(query, [
|
||||||
|
customerNo,
|
||||||
|
trxType,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
accountType,
|
||||||
|
amount,
|
||||||
|
status,
|
||||||
|
]);
|
||||||
|
};
|
||||||
|
const recordInterBankTransaction = async (
|
||||||
|
customerNo,
|
||||||
|
trxType,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
ifscCode,
|
||||||
|
amount,
|
||||||
|
commission,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
status
|
||||||
|
) => {
|
||||||
|
const query =
|
||||||
|
'INSERT INTO transactions (customer_no, trx_type, from_account, to_account, ifsc_code, amount, commission, beneficiary_name, remitter_name, status) VALUES ($1, $2, $3, $4, $5, $6, $7, $8, $9, $10)';
|
||||||
|
await db.query(query, [
|
||||||
|
customerNo,
|
||||||
|
trxType,
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
ifscCode,
|
||||||
|
amount,
|
||||||
|
commission,
|
||||||
|
beneficiaryName,
|
||||||
|
remitterName,
|
||||||
|
status,
|
||||||
|
]);
|
||||||
|
};
|
||||||
|
|
||||||
|
module.exports = { recordIntraBankTransaction, recordInterBankTransaction };
|
||||||
@@ -2,9 +2,9 @@ const jwt = require('jsonwebtoken');
|
|||||||
const { jwtSecret } = require('../config/config');
|
const { jwtSecret } = require('../config/config');
|
||||||
const { logger } = require('./logger');
|
const { logger } = require('./logger');
|
||||||
|
|
||||||
function generateToken(customerNo, expiresIn = '10d') {
|
function generateToken(customerNo, role = 'user', expiresIn = '10d') {
|
||||||
logger.info({ customerNo }, 'payload to encode');
|
logger.info({ customerNo, role }, 'payload to encode');
|
||||||
return jwt.sign({ customerNo }, jwtSecret, { expiresIn });
|
return jwt.sign({ customerNo, role }, jwtSecret, { expiresIn });
|
||||||
}
|
}
|
||||||
|
|
||||||
function verifyToken(token) {
|
function verifyToken(token) {
|
||||||
|
|||||||
@@ -1,6 +1,19 @@
|
|||||||
const pino = require('pino');
|
const pino = require('pino');
|
||||||
|
const fs = require('fs');
|
||||||
|
const path = require('path');
|
||||||
|
|
||||||
const isDev = process.env.NODE_ENV !== 'production';
|
const isDev = process.env.NODE_ENV !== 'production';
|
||||||
|
|
||||||
|
const logDir = path.join(__dirname, '../..', 'logs');
|
||||||
|
if (!fs.existsSync(logDir)) {
|
||||||
|
fs.mkdirSync(logDir);
|
||||||
|
}
|
||||||
|
|
||||||
|
const requestLoggerStream = pino.destination({
|
||||||
|
dest: path.join(logDir, 'requests.log'),
|
||||||
|
sync: false,
|
||||||
|
});
|
||||||
|
|
||||||
const logger = pino({
|
const logger = pino({
|
||||||
transport: isDev
|
transport: isDev
|
||||||
? {
|
? {
|
||||||
@@ -15,8 +28,12 @@ const logger = pino({
|
|||||||
level: isDev ? 'debug' : 'info',
|
level: isDev ? 'debug' : 'info',
|
||||||
});
|
});
|
||||||
|
|
||||||
const requestLogger = (req, _res, next) => {
|
const requestLogger = pino(
|
||||||
logger.info(`${req.method} ${req.url}`);
|
{
|
||||||
next();
|
level: 'info',
|
||||||
};
|
base: null,
|
||||||
|
},
|
||||||
|
requestLoggerStream
|
||||||
|
);
|
||||||
|
|
||||||
module.exports = { logger, requestLogger };
|
module.exports = { logger, requestLogger };
|
||||||
|
|||||||
36
src/util/name.generator.js
Normal file
36
src/util/name.generator.js
Normal file
@@ -0,0 +1,36 @@
|
|||||||
|
const indianFirstNames = [
|
||||||
|
'Aarav',
|
||||||
|
'Vivaan',
|
||||||
|
'Aditya',
|
||||||
|
'Vihaan',
|
||||||
|
'Krishna',
|
||||||
|
'Ishaan',
|
||||||
|
'Rohan',
|
||||||
|
'Ananya',
|
||||||
|
'Diya',
|
||||||
|
'Aisha',
|
||||||
|
'Priya',
|
||||||
|
'Sneha',
|
||||||
|
];
|
||||||
|
const indianLastNames = [
|
||||||
|
'Sharma',
|
||||||
|
'Verma',
|
||||||
|
'Iyer',
|
||||||
|
'Reddy',
|
||||||
|
'Patel',
|
||||||
|
'Mehta',
|
||||||
|
'Choudhary',
|
||||||
|
'Kumar',
|
||||||
|
'Das',
|
||||||
|
'Rao',
|
||||||
|
];
|
||||||
|
|
||||||
|
function getRandomIndianName() {
|
||||||
|
const firstName =
|
||||||
|
indianFirstNames[Math.floor(Math.random() * indianFirstNames.length)];
|
||||||
|
const lastName =
|
||||||
|
indianLastNames[Math.floor(Math.random() * indianLastNames.length)];
|
||||||
|
return `${firstName} ${lastName}`;
|
||||||
|
}
|
||||||
|
|
||||||
|
module.exports = getRandomIndianName;
|
||||||
44
src/util/sms_template.js
Normal file
44
src/util/sms_template.js
Normal file
@@ -0,0 +1,44 @@
|
|||||||
|
const templates = {
|
||||||
|
IMPS: (otp) => `Dear Customer, Please complete the fund transfer with OTP ${otp} -KCCB`,
|
||||||
|
|
||||||
|
NEFT: (otp, amount, beneficiary) =>
|
||||||
|
`Dear Customer, Please complete the NEFT of Rs.${amount} to ${beneficiary} with OTP:${otp} -KCCB`,
|
||||||
|
|
||||||
|
RTGS: (otp, amount, beneficiary) =>
|
||||||
|
`Dear Customer, Please complete the RTGS of Rs.${amount} to ${beneficiary} with OTP:${otp} -KCCB`,
|
||||||
|
|
||||||
|
BENEFICIARY_ADD: (otp, beneficiary, ifsc) =>
|
||||||
|
`Dear Customer, You have added beneficiary ${beneficiary} ${ifsc} for NEFT/RTGS. Please endorse the beneficiary with OTP ${otp} -KCCB`,
|
||||||
|
|
||||||
|
BENEFICIARY_SUCCESS: (beneficiary) =>
|
||||||
|
`Dear Customer, Your Beneficiary: ${beneficiary} for Net Banking is added successfully -KCCB`,
|
||||||
|
|
||||||
|
NOTIFICATION: (acctFrom, acctTo, amount, ref, date) =>
|
||||||
|
`Your A/c ${acctFrom} is debited for Rs. ${amount} to the credit of A/c ${acctTo} thru Net Banking - ref: ${ref} - ${date} - Kangra Central Co-Operative Bank -KCCB`,
|
||||||
|
|
||||||
|
FORGOT_PASSWORD: (otp) =>
|
||||||
|
`Dear Customer, Forgot Password OTP is ${otp} -KCCB`,
|
||||||
|
|
||||||
|
CHANGE_LPWORD: (otp) =>
|
||||||
|
`Dear Customer, Change Login Password OTP is ${otp} -KCCB`,
|
||||||
|
|
||||||
|
CHANGE_TPIN: (otp) =>
|
||||||
|
`Dear Customer, Change Transaction pin OTP is ${otp} -KCCB`,
|
||||||
|
|
||||||
|
CHANGE_TPWORD: (otp) =>
|
||||||
|
`Dear Customer, Change Transaction password OTP is ${otp} -KCCB`,
|
||||||
|
|
||||||
|
CHANGE_MPIN: (otp) =>
|
||||||
|
`Dear Customer, Change M-PIN OTP is ${otp} -KCCB`,
|
||||||
|
|
||||||
|
REGISTRATION: (otp) =>
|
||||||
|
`Dear Customer, Your CIF is enable.First time login password: ${otp} (valid for 7 days).Please login and change your password -KCCB`,
|
||||||
|
|
||||||
|
RIGHT_UPDATE:
|
||||||
|
`Dear Customer, Your CIF rights have been updated. Please log in again to access the features. -KCCB`,
|
||||||
|
|
||||||
|
EMandate: (otp) =>
|
||||||
|
`Dear Customer, Your OTP for e-Mandate is ${otp}.It is valid for 1 minute.Do not share this OTP with anyone. -KCCB`
|
||||||
|
};
|
||||||
|
|
||||||
|
module.exports = templates;
|
||||||
36
src/validators/imps.validator.js
Normal file
36
src/validators/imps.validator.js
Normal file
@@ -0,0 +1,36 @@
|
|||||||
|
const impsValidator = (req, res, next) => {
|
||||||
|
const {
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
amount,
|
||||||
|
remitterName,
|
||||||
|
beneficiaryName,
|
||||||
|
ifscCode,
|
||||||
|
} = req.body;
|
||||||
|
|
||||||
|
if (!isAccountNumbersValid(fromAccount, toAccount)) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_ACCOUNT_NUMBER_FORMAT' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (amount < 1) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_AMOUNT' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (!remitterName || !beneficiaryName) {
|
||||||
|
return res
|
||||||
|
.status(400)
|
||||||
|
.json({ error: 'REMITTER_NAME AND BENEFICIARY_NAME REQUIRED' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (!ifscCode || !/^[A-Z]{4}0[0-9]{6}$/.test(ifscCode)) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_IFSC_CODE' });
|
||||||
|
}
|
||||||
|
|
||||||
|
next();
|
||||||
|
};
|
||||||
|
|
||||||
|
const isAccountNumbersValid = (fromAcct, toAcct) => {
|
||||||
|
return !(!fromAcct || !toAcct || fromAcct.length != 11 || toAcct.length < 7);
|
||||||
|
};
|
||||||
|
|
||||||
|
module.exports = impsValidator;
|
||||||
36
src/validators/neft.validator.js
Normal file
36
src/validators/neft.validator.js
Normal file
@@ -0,0 +1,36 @@
|
|||||||
|
const neftValidator = (req, res, next) => {
|
||||||
|
const {
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
amount,
|
||||||
|
remitterName,
|
||||||
|
beneficiaryName,
|
||||||
|
ifscCode,
|
||||||
|
} = req.body;
|
||||||
|
|
||||||
|
if (!isAccountNumbersValid(fromAccount, toAccount)) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_ACCOUNT_NUMBER_FORMAT' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (amount < 1) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_AMOUNT' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (!remitterName || !beneficiaryName) {
|
||||||
|
return res
|
||||||
|
.status(400)
|
||||||
|
.json({ error: 'REMITTER_NAME AND BENEFICIARY_NAME REQUIRED' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (!ifscCode || !/^[A-Z]{4}0[0-9]{6}$/.test(ifscCode)) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_IFSC_CODE' });
|
||||||
|
}
|
||||||
|
|
||||||
|
next();
|
||||||
|
};
|
||||||
|
|
||||||
|
const isAccountNumbersValid = (fromAcct, toAcct) => {
|
||||||
|
return !(!fromAcct || !toAcct || fromAcct.length != 11 || toAcct.length < 7);
|
||||||
|
};
|
||||||
|
|
||||||
|
module.exports = neftValidator;
|
||||||
15
src/validators/payment.secret.validator.js
Normal file
15
src/validators/payment.secret.validator.js
Normal file
@@ -0,0 +1,15 @@
|
|||||||
|
const tpasswordValidator = require('./tpassword.validator.js');
|
||||||
|
const tpinValidator = require('./tpin.validator.js');
|
||||||
|
|
||||||
|
const paymentSecretValidator = async (req, res, next) => {
|
||||||
|
const { tpin, tpassword } = req.body;
|
||||||
|
if (tpin) {
|
||||||
|
return tpinValidator(req, res, next);
|
||||||
|
} else if (tpassword) {
|
||||||
|
return tpasswordValidator(req, res, next);
|
||||||
|
} else {
|
||||||
|
return res.status(400).json({ error: 'tpin or tpassword is required' });
|
||||||
|
}
|
||||||
|
};
|
||||||
|
|
||||||
|
module.exports = paymentSecretValidator;
|
||||||
36
src/validators/rtgs.validator.js
Normal file
36
src/validators/rtgs.validator.js
Normal file
@@ -0,0 +1,36 @@
|
|||||||
|
const rtgsValidator = (req, res, next) => {
|
||||||
|
const {
|
||||||
|
fromAccount,
|
||||||
|
toAccount,
|
||||||
|
amount,
|
||||||
|
remitterName,
|
||||||
|
beneficiaryName,
|
||||||
|
ifscCode,
|
||||||
|
} = req.body;
|
||||||
|
|
||||||
|
if (!isAccountNumbersValid(fromAccount, toAccount)) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_ACCOUNT_NUMBER_FORMAT' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (amount < 200000) {
|
||||||
|
return res.status(400).json({ error: 'AMOUNT_SHOULD_BE_MORE_THAN_200000' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (!remitterName || !beneficiaryName) {
|
||||||
|
return res
|
||||||
|
.status(400)
|
||||||
|
.json({ error: 'REMITTER_NAME AND BENEFICIARY_NAME REQUIRED' });
|
||||||
|
}
|
||||||
|
|
||||||
|
if (!ifscCode || !/^[A-Z]{4}0[0-9]{6}$/.test(ifscCode)) {
|
||||||
|
return res.status(400).json({ error: 'INVALID_IFSC_CODE' });
|
||||||
|
}
|
||||||
|
|
||||||
|
next();
|
||||||
|
};
|
||||||
|
|
||||||
|
const isAccountNumbersValid = (fromAcct, toAcct) => {
|
||||||
|
return !(!fromAcct || !toAcct || fromAcct.length != 11 || toAcct.length < 7);
|
||||||
|
};
|
||||||
|
|
||||||
|
module.exports = rtgsValidator;
|
||||||
@@ -1,7 +1,7 @@
|
|||||||
const transferValidator = async (req, res, next) => {
|
const transferValidator = (req, res, next) => {
|
||||||
const { fromAccount, toAccount, toAccountType, amount } = req.body;
|
const { fromAccount, toAccount, toAccountType, amount } = req.body;
|
||||||
|
|
||||||
const accountTypes = ['SB', 'LN','Savings','Current'];
|
const accountTypes = ['SB', 'LN', 'Savings', 'Current'];
|
||||||
if (!fromAccount || fromAccount.length != 11) {
|
if (!fromAccount || fromAccount.length != 11) {
|
||||||
return res.status(400).json({ error: 'INVALID_ACCOUNT_NUMBER_FORMAT' });
|
return res.status(400).json({ error: 'INVALID_ACCOUNT_NUMBER_FORMAT' });
|
||||||
}
|
}
|
||||||
|
|||||||
Reference in New Issue
Block a user