Built motion from commit 25580385.|2.6.2
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xd759=['../../config/environment','../../config/logger','api','../../mysqldb','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','email','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/token','map','type','Dynamics365','push','data7','join','Outlook365','/.default','replace','data2','id_token','from','toString','base64','randomBytes','hex','data1','redirect_uri','response_mode','form_post','scope','state','nonce','prompt','key','oauth2Claims','oauth2/','set','stringify','iss','aud','audience','isAfter','unix','resolve','then','CloudProvider','findOne','data6','data4','decryptString','data5','refresh_token','update','catch','authorization_code','POST','intervals','bind','findAll','inspect','error','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','jsonwebtoken','moment','ioredis','request-promise','util','../../components/encryptor'];(function(_0x52f03e,_0x56b6e0){var _0x1d1f7a=function(_0x29fd73){while(--_0x29fd73){_0x52f03e['push'](_0x52f03e['shift']());}};_0x1d1f7a(++_0x56b6e0);}(_0xd759,0xd7));var _0x9d75=function(_0x2d489a,_0x25ce3c){_0x2d489a=_0x2d489a-0x0;var _0x11b301=_0xd759[_0x2d489a];return _0x11b301;};'use strict';var _=require(_0x9d75('0x0'));var crypto=require('crypto');var jwt=require(_0x9d75('0x1'));var moment=require(_0x9d75('0x2'));var Redis=require(_0x9d75('0x3'));var rp=require(_0x9d75('0x4'));var util=require(_0x9d75('0x5'));var encryptor=require(_0x9d75('0x6'));var config=require(_0x9d75('0x7'));var logger=require(_0x9d75('0x8'))(_0x9d75('0x9'));var schedule=require('../../config/schedule/cloud-provider');var db=require(_0x9d75('0xa'))['db'];config[_0x9d75('0xb')]=_['defaults'](config[_0x9d75('0xb')],{'host':_0x9d75('0xc'),'port':0x18eb});var redis=new Redis(config[_0x9d75('0xb')]);var MICROSOFT_AUTH_URL=_0x9d75('0xd');var AZURE_AUTH_SCOPES={'Outlook365':[_0x9d75('0xe'),'profile',_0x9d75('0xf'),'offline_access',_0x9d75('0x10'),_0x9d75('0x11'),_0x9d75('0x12')],'Dynamics365':[_0x9d75('0xe'),'offline_access']};var MICROSOFT_AUTH_ENDPOINT='/authorize';var MICROSOFT_TOKEN_ENDPOINT=_0x9d75('0x13');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x3a6ac1){var _0x4d5629=_[_0x9d75('0x14')](AZURE_AUTH_SCOPES[_0x3a6ac1[_0x9d75('0x15')]]);if(_0x3a6ac1['type']===_0x9d75('0x16'))_0x4d5629[_0x9d75('0x17')](_0x3a6ac1[_0x9d75('0x18')]+'/.default');return _0x4d5629[_0x9d75('0x19')]('\x20');}function getAccessTokenScope(_0x12fa82){if(_0x12fa82[_0x9d75('0x15')]===_0x9d75('0x1a'))return _0x9d75('0x10');if(_0x12fa82[_0x9d75('0x15')]===_0x9d75('0x16'))return _0x12fa82[_0x9d75('0x18')]+_0x9d75('0x1b');}function generateMicrosoftAuthorizationUrl(_0xa795c3,_0x15382b){var _0x54d970=MICROSOFT_AUTH_URL[_0x9d75('0x1c')]('{TENANT_ID}',_0xa795c3[_0x9d75('0x1d')]);var _0x268eea=['code',_0x9d75('0x1e')];var _0x46bf87=Buffer[_0x9d75('0x1f')](JSON['stringify']({'id':_0x15382b}))[_0x9d75('0x20')](_0x9d75('0x21'));var _0x3de82a=crypto[_0x9d75('0x22')](0x10)[_0x9d75('0x20')](_0x9d75('0x23'));var _0x3543b5=getAuthorizationScopes(_0xa795c3);var _0x3ed6cf=[{'key':'client_id','value':_0xa795c3[_0x9d75('0x24')]},{'key':'response_type','value':encodeURIComponent(_0x268eea['join']('\x20'))},{'key':_0x9d75('0x25'),'value':_0xa795c3['data4']},{'key':_0x9d75('0x26'),'value':_0x9d75('0x27')},{'key':_0x9d75('0x28'),'value':encodeURIComponent(_0x3543b5)},{'key':_0x9d75('0x29'),'value':_0x46bf87},{'key':_0x9d75('0x2a'),'value':_0x3de82a},{'key':_0x9d75('0x2b'),'value':'login'}];var _0x487dca=_0x54d970+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x9d75('0x14')](_0x3ed6cf,function(_0x143285){return _0x143285[_0x9d75('0x2c')]+'='+_0x143285['value'];})[_0x9d75('0x19')]('&');_0xa795c3[_0x9d75('0x2d')]={'issuer':_0x54d970[_0x9d75('0x1c')](_0x9d75('0x2e'),''),'audience':_0xa795c3[_0x9d75('0x24')],'state':_0x46bf87,'nonce':_0x3de82a};redis[_0x9d75('0x2f')](_0x46bf87,JSON[_0x9d75('0x30')](_0xa795c3));return _0x487dca;}function isValidIdToken(_0x4f1b35,_0x565fc3){try{var _0x83c893=jwt['decode'](_0x4f1b35,{'complete':!![]});var _0x51acf4=_0x83c893['payload'];if(_0x51acf4[_0x9d75('0x31')]!==_0x565fc3['issuer'])return![];if(_0x51acf4[_0x9d75('0x32')]!==_0x565fc3[_0x9d75('0x33')])return![];if(_0x51acf4[_0x9d75('0x2a')]!==_0x565fc3[_0x9d75('0x2a')])return![];if(moment()[_0x9d75('0x34')](moment[_0x9d75('0x35')](_0x51acf4['exp'])))return![];return!![];}catch(_0x47816f){throw _0x47816f;}}function refreshOauth2MicrosoftAccessToken(_0x8eeae2){return Promise[_0x9d75('0x36')]()[_0x9d75('0x37')](function(){if(_0x8eeae2['data3'])return _0x8eeae2;return db[_0x9d75('0x38')][_0x9d75('0x39')]({'where':{'id':_0x8eeae2['id']},'raw':!![]});})[_0x9d75('0x37')](function(_0xa09ce4){var _0x424273={'grant_type':'refresh_token','refresh_token':_0xa09ce4[_0x9d75('0x3a')],'scope':getAccessTokenScope(_0xa09ce4),'redirect_uri':_0xa09ce4[_0x9d75('0x3b')],'client_id':_0xa09ce4[_0x9d75('0x24')],'client_secret':encryptor[_0x9d75('0x3c')](_0xa09ce4['data3'])};var _0x58af84={'method':'POST','uri':MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0xa09ce4[_0x9d75('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x424273,'json':!![]};return rp(_0x58af84);})['then'](function(_0x16406e){_0x8eeae2[_0x9d75('0x3d')]=_0x16406e['access_token'];_0x8eeae2['data6']=_0x16406e[_0x9d75('0x3e')];return db['CloudProvider'][_0x9d75('0x3f')]({'data5':_0x8eeae2[_0x9d75('0x3d')],'data6':_0x8eeae2['data6']},{'where':{'id':_0x8eeae2['id']}});})[_0x9d75('0x37')](function(){return _0x8eeae2;})[_0x9d75('0x40')](function(_0x1e3c39){logger['error']('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x8eeae2['id'],_0x1e3c39);});}function getOauth2MicrosoftAccessToken(_0x138569,_0xbc0887){var _0x45fbdd={'grant_type':_0x9d75('0x41'),'code':_0x138569,'scope':getAccessTokenScope(_0xbc0887),'redirect_uri':_0xbc0887['data4'],'client_id':_0xbc0887[_0x9d75('0x24')],'client_secret':encryptor['decryptString'](_0xbc0887['data3'])};var _0x3f9fa2={'method':_0x9d75('0x42'),'uri':MICROSOFT_AUTH_URL['replace']('{TENANT_ID}',_0xbc0887[_0x9d75('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x45fbdd,'json':!![]};return rp(_0x3f9fa2);}function startRefreshInterval(_0x267f37){var _0x2a6876=schedule[_0x9d75('0x43')];if(_0x2a6876[_0x267f37['id']])clearInterval(_0x2a6876[_0x267f37['id']]);_0x2a6876[_0x267f37['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x9d75('0x44')](this,{'id':_0x267f37['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule['intervals']=_0x2a6876;}function startAllRefreshIntervals(){return db['CloudProvider'][_0x9d75('0x45')]({'where':{'data6':{'$ne':null}},'raw':!![]})['then'](function(_0x1f7c6e){var _0x50ff7c=_0x1f7c6e['map'](function(_0x4a43a4){return refreshOauth2MicrosoftAccessToken(_0x4a43a4)['then'](function(_0xc29d3d){startRefreshInterval(_0xc29d3d);});});return Promise['all'](_0x50ff7c);})[_0x9d75('0x40')](function(_0x5d2f03){var _0x950de9=_0x5d2f03?util[_0x9d75('0x46')](_0x5d2f03,{'showHidden':![],'depth':null}):'';logger[_0x9d75('0x47')](_0x9d75('0x48'),_0x950de9);});}module[_0x9d75('0x49')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};