Built motion from commit bab6f49e.|2.6.17
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xf8f4=['key','oauth2Claims','replace','oauth2/','data1','set','decode','payload','iss','issuer','aud','audience','isAfter','unix','exp','then','CloudProvider','findOne','data6','decryptString','data3','POST','access_token','refresh_token','update','data5','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','intervals','bind','findAll','all','catch','inspect','lodash','crypto','jsonwebtoken','ioredis','util','../../components/encryptor','../../config/environment','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','/authorize','/token','map','type','push','data7','/.default','join','Outlook365','{TENANT_ID}','code','from','stringify','base64','randomBytes','toString','hex','client_id','response_type','redirect_uri','data4','form_post','scope','nonce'];(function(_0x2509fb,_0x2cd4eb){var _0x528b13=function(_0x1098bd){while(--_0x1098bd){_0x2509fb['push'](_0x2509fb['shift']());}};_0x528b13(++_0x2cd4eb);}(_0xf8f4,0x15b));var _0x4f8f=function(_0x547fcb,_0x8fda67){_0x547fcb=_0x547fcb-0x0;var _0x275d17=_0xf8f4[_0x547fcb];return _0x275d17;};'use strict';var _=require(_0x4f8f('0x0'));var crypto=require(_0x4f8f('0x1'));var jwt=require(_0x4f8f('0x2'));var moment=require('moment');var Redis=require(_0x4f8f('0x3'));var rp=require('request-promise');var util=require(_0x4f8f('0x4'));var encryptor=require(_0x4f8f('0x5'));var config=require(_0x4f8f('0x6'));var logger=require('../../config/logger')('api');var schedule=require(_0x4f8f('0x7'));var db=require(_0x4f8f('0x8'))['db'];config[_0x4f8f('0x9')]=_[_0x4f8f('0xa')](config[_0x4f8f('0x9')],{'host':_0x4f8f('0xb'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0x4f8f('0xc');var AZURE_AUTH_SCOPES={'Outlook365':[_0x4f8f('0xd'),_0x4f8f('0xe'),_0x4f8f('0xf'),_0x4f8f('0x10'),_0x4f8f('0x11'),_0x4f8f('0x12'),'https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0x4f8f('0xd'),_0x4f8f('0x10')]};var MICROSOFT_AUTH_ENDPOINT=_0x4f8f('0x13');var MICROSOFT_TOKEN_ENDPOINT=_0x4f8f('0x14');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0xf0a769){var _0x507be8=_[_0x4f8f('0x15')](AZURE_AUTH_SCOPES[_0xf0a769[_0x4f8f('0x16')]]);if(_0xf0a769['type']==='Dynamics365')_0x507be8[_0x4f8f('0x17')](_0xf0a769[_0x4f8f('0x18')]+_0x4f8f('0x19'));return _0x507be8[_0x4f8f('0x1a')]('\x20');}function getAccessTokenScope(_0x2b0aca){if(_0x2b0aca[_0x4f8f('0x16')]===_0x4f8f('0x1b'))return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x2b0aca[_0x4f8f('0x16')]==='Dynamics365')return _0x2b0aca[_0x4f8f('0x18')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x189189,_0x165c25){var _0x13282d=MICROSOFT_AUTH_URL['replace'](_0x4f8f('0x1c'),_0x189189['data2']);var _0x1780a2=[_0x4f8f('0x1d'),'id_token'];var _0x1d9035=Buffer[_0x4f8f('0x1e')](JSON[_0x4f8f('0x1f')]({'id':_0x165c25}))['toString'](_0x4f8f('0x20'));var _0x22c8da=crypto[_0x4f8f('0x21')](0x10)[_0x4f8f('0x22')](_0x4f8f('0x23'));var _0x5efc60=getAuthorizationScopes(_0x189189);var _0x24aaf2=[{'key':_0x4f8f('0x24'),'value':_0x189189['data1']},{'key':_0x4f8f('0x25'),'value':encodeURIComponent(_0x1780a2[_0x4f8f('0x1a')]('\x20'))},{'key':_0x4f8f('0x26'),'value':_0x189189[_0x4f8f('0x27')]},{'key':'response_mode','value':_0x4f8f('0x28')},{'key':_0x4f8f('0x29'),'value':encodeURIComponent(_0x5efc60)},{'key':'state','value':_0x1d9035},{'key':_0x4f8f('0x2a'),'value':_0x22c8da},{'key':'prompt','value':'login'}];var _0x1812f0=_0x13282d+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x4f8f('0x15')](_0x24aaf2,function(_0x5190a8){return _0x5190a8[_0x4f8f('0x2b')]+'='+_0x5190a8['value'];})[_0x4f8f('0x1a')]('&');_0x189189[_0x4f8f('0x2c')]={'issuer':_0x13282d[_0x4f8f('0x2d')](_0x4f8f('0x2e'),''),'audience':_0x189189[_0x4f8f('0x2f')],'state':_0x1d9035,'nonce':_0x22c8da};redis[_0x4f8f('0x30')](_0x1d9035,JSON[_0x4f8f('0x1f')](_0x189189));return _0x1812f0;}function isValidIdToken(_0x434d42,_0x1591d9){try{var _0x26d894=jwt[_0x4f8f('0x31')](_0x434d42,{'complete':!![]});var _0x3d0f68=_0x26d894[_0x4f8f('0x32')];if(_0x3d0f68[_0x4f8f('0x33')]!==_0x1591d9[_0x4f8f('0x34')])return![];if(_0x3d0f68[_0x4f8f('0x35')]!==_0x1591d9[_0x4f8f('0x36')])return![];if(_0x3d0f68[_0x4f8f('0x2a')]!==_0x1591d9['nonce'])return![];if(moment()[_0x4f8f('0x37')](moment[_0x4f8f('0x38')](_0x3d0f68[_0x4f8f('0x39')])))return![];return!![];}catch(_0x497371){throw _0x497371;}}function refreshOauth2MicrosoftAccessToken(_0x87f3ed){return Promise['resolve']()[_0x4f8f('0x3a')](function(){if(_0x87f3ed['data3'])return _0x87f3ed;return db[_0x4f8f('0x3b')][_0x4f8f('0x3c')]({'where':{'id':_0x87f3ed['id']},'raw':!![]});})[_0x4f8f('0x3a')](function(_0x44abea){var _0x292b76={'grant_type':'refresh_token','refresh_token':_0x44abea[_0x4f8f('0x3d')],'scope':getAccessTokenScope(_0x44abea),'redirect_uri':_0x44abea[_0x4f8f('0x27')],'client_id':_0x44abea[_0x4f8f('0x2f')],'client_secret':encryptor[_0x4f8f('0x3e')](_0x44abea[_0x4f8f('0x3f')])};var _0x5ecdb7={'method':_0x4f8f('0x40'),'uri':MICROSOFT_AUTH_URL[_0x4f8f('0x2d')](_0x4f8f('0x1c'),_0x44abea['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x292b76,'json':!![]};return rp(_0x5ecdb7);})[_0x4f8f('0x3a')](function(_0xd42f2c){_0x87f3ed['data5']=_0xd42f2c[_0x4f8f('0x41')];_0x87f3ed[_0x4f8f('0x3d')]=_0xd42f2c[_0x4f8f('0x42')];return db[_0x4f8f('0x3b')][_0x4f8f('0x43')]({'data5':_0x87f3ed[_0x4f8f('0x44')],'data6':_0x87f3ed[_0x4f8f('0x3d')]},{'where':{'id':_0x87f3ed['id']}});})[_0x4f8f('0x3a')](function(){return _0x87f3ed;})['catch'](function(_0x9bde02){logger[_0x4f8f('0x45')](_0x4f8f('0x46'),_0x87f3ed['id'],_0x9bde02);});}function getOauth2MicrosoftAccessToken(_0x3f10b4,_0x2adaae){var _0x4be11c={'grant_type':_0x4f8f('0x47'),'code':_0x3f10b4,'scope':getAccessTokenScope(_0x2adaae),'redirect_uri':_0x2adaae[_0x4f8f('0x27')],'client_id':_0x2adaae[_0x4f8f('0x2f')],'client_secret':encryptor[_0x4f8f('0x3e')](_0x2adaae[_0x4f8f('0x3f')])};var _0x9887e9={'method':_0x4f8f('0x40'),'uri':MICROSOFT_AUTH_URL[_0x4f8f('0x2d')](_0x4f8f('0x1c'),_0x2adaae['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4be11c,'json':!![]};return rp(_0x9887e9);}function startRefreshInterval(_0x2d76b7){var _0x9f1ac5=schedule[_0x4f8f('0x48')];if(_0x9f1ac5[_0x2d76b7['id']])clearInterval(_0x9f1ac5[_0x2d76b7['id']]);_0x9f1ac5[_0x2d76b7['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x4f8f('0x49')](this,{'id':_0x2d76b7['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x4f8f('0x48')]=_0x9f1ac5;}function startAllRefreshIntervals(){return db[_0x4f8f('0x3b')][_0x4f8f('0x4a')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x4f8f('0x3a')](function(_0x56a51d){var _0x482aac=_0x56a51d[_0x4f8f('0x15')](function(_0x4b0da9){return refreshOauth2MicrosoftAccessToken(_0x4b0da9)[_0x4f8f('0x3a')](function(_0x1b60b3){startRefreshInterval(_0x1b60b3);});});return Promise[_0x4f8f('0x4b')](_0x482aac);})[_0x4f8f('0x4c')](function(_0xd76def){var _0x4af3b9=_0xd76def?util[_0x4f8f('0x4d')](_0xd76def,{'showHidden':![],'depth':null}):'';logger[_0x4f8f('0x45')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x4af3b9);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};