4b56ccb4a64046446c436f916ffa6d9d9942a625
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x4079=['decryptString','data2','data5','access_token','data6','update','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','intervals','bind','findAll','all','exports','lodash','crypto','jsonwebtoken','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','/authorize','/token','map','type','Dynamics365','push','data7','/.default','join','Outlook365','https://outlook.office365.com/IMAP.AccessAsUser.All','replace','{TENANT_ID}','stringify','base64','randomBytes','toString','hex','client_id','data4','form_post','state','nonce','prompt','login','value','oauth2/','set','payload','aud','audience','unix','exp','resolve','then','data3','CloudProvider','findOne','refresh_token','data1'];(function(_0x4472ea,_0x1c5c44){var _0x37d760=function(_0x39526b){while(--_0x39526b){_0x4472ea['push'](_0x4472ea['shift']());}};_0x37d760(++_0x1c5c44);}(_0x4079,0xe6));var _0x9407=function(_0x3b8a6a,_0x56c2df){_0x3b8a6a=_0x3b8a6a-0x0;var _0x4b2128=_0x4079[_0x3b8a6a];return _0x4b2128;};'use strict';var _=require(_0x9407('0x0'));var crypto=require(_0x9407('0x1'));var jwt=require(_0x9407('0x2'));var moment=require('moment');var Redis=require('ioredis');var rp=require('request-promise');var util=require(_0x9407('0x3'));var encryptor=require(_0x9407('0x4'));var config=require(_0x9407('0x5'));var logger=require(_0x9407('0x6'))(_0x9407('0x7'));var schedule=require(_0x9407('0x8'));var db=require(_0x9407('0x9'))['db'];config[_0x9407('0xa')]=_[_0x9407('0xb')](config[_0x9407('0xa')],{'host':_0x9407('0xc'),'port':0x18eb});var redis=new Redis(config[_0x9407('0xa')]);var MICROSOFT_AUTH_URL=_0x9407('0xd');var AZURE_AUTH_SCOPES={'Outlook365':[_0x9407('0xe'),_0x9407('0xf'),_0x9407('0x10'),_0x9407('0x11'),'https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0x9407('0xe'),_0x9407('0x11')]};var MICROSOFT_AUTH_ENDPOINT=_0x9407('0x12');var MICROSOFT_TOKEN_ENDPOINT=_0x9407('0x13');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0xe79757){var _0xcdd15f=_[_0x9407('0x14')](AZURE_AUTH_SCOPES[_0xe79757[_0x9407('0x15')]]);if(_0xe79757[_0x9407('0x15')]===_0x9407('0x16'))_0xcdd15f[_0x9407('0x17')](_0xe79757[_0x9407('0x18')]+_0x9407('0x19'));return _0xcdd15f[_0x9407('0x1a')]('\x20');}function getAccessTokenScope(_0x37dc6a){if(_0x37dc6a[_0x9407('0x15')]===_0x9407('0x1b'))return _0x9407('0x1c');if(_0x37dc6a[_0x9407('0x15')]===_0x9407('0x16'))return _0x37dc6a[_0x9407('0x18')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x4c5713,_0x132243){var _0x5efb46=MICROSOFT_AUTH_URL[_0x9407('0x1d')](_0x9407('0x1e'),_0x4c5713['data2']);var _0x323189=['code','id_token'];var _0x2f999c=Buffer['from'](JSON[_0x9407('0x1f')]({'id':_0x132243}))['toString'](_0x9407('0x20'));var _0x19d694=crypto[_0x9407('0x21')](0x10)[_0x9407('0x22')](_0x9407('0x23'));var _0x5b30ae=getAuthorizationScopes(_0x4c5713);var _0x1bda52=[{'key':_0x9407('0x24'),'value':_0x4c5713['data1']},{'key':'response_type','value':encodeURIComponent(_0x323189[_0x9407('0x1a')]('\x20'))},{'key':'redirect_uri','value':_0x4c5713[_0x9407('0x25')]},{'key':'response_mode','value':_0x9407('0x26')},{'key':'scope','value':encodeURIComponent(_0x5b30ae)},{'key':_0x9407('0x27'),'value':_0x2f999c},{'key':_0x9407('0x28'),'value':_0x19d694},{'key':_0x9407('0x29'),'value':_0x9407('0x2a')}];var _0x230396=_0x5efb46+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x9407('0x14')](_0x1bda52,function(_0x235084){return _0x235084['key']+'='+_0x235084[_0x9407('0x2b')];})[_0x9407('0x1a')]('&');_0x4c5713['oauth2Claims']={'issuer':_0x5efb46[_0x9407('0x1d')](_0x9407('0x2c'),''),'audience':_0x4c5713['data1'],'state':_0x2f999c,'nonce':_0x19d694};redis[_0x9407('0x2d')](_0x2f999c,JSON[_0x9407('0x1f')](_0x4c5713));return _0x230396;}function isValidIdToken(_0x7bb4b7,_0x3744d3){try{var _0x30c49f=jwt['decode'](_0x7bb4b7,{'complete':!![]});var _0x475614=_0x30c49f[_0x9407('0x2e')];if(_0x475614['iss']!==_0x3744d3['issuer'])return![];if(_0x475614[_0x9407('0x2f')]!==_0x3744d3[_0x9407('0x30')])return![];if(_0x475614['nonce']!==_0x3744d3[_0x9407('0x28')])return![];if(moment()['isAfter'](moment[_0x9407('0x31')](_0x475614[_0x9407('0x32')])))return![];return!![];}catch(_0x17810e){throw _0x17810e;}}function refreshOauth2MicrosoftAccessToken(_0xeeac74){return Promise[_0x9407('0x33')]()[_0x9407('0x34')](function(){if(_0xeeac74[_0x9407('0x35')])return _0xeeac74;return db[_0x9407('0x36')][_0x9407('0x37')]({'where':{'id':_0xeeac74['id']},'raw':!![]});})[_0x9407('0x34')](function(_0x44a0bf){var _0x1ea0cc={'grant_type':_0x9407('0x38'),'refresh_token':_0x44a0bf['data6'],'scope':getAccessTokenScope(_0x44a0bf),'redirect_uri':_0x44a0bf[_0x9407('0x25')],'client_id':_0x44a0bf[_0x9407('0x39')],'client_secret':encryptor[_0x9407('0x3a')](_0x44a0bf[_0x9407('0x35')])};var _0x234985={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x9407('0x1d')](_0x9407('0x1e'),_0x44a0bf[_0x9407('0x3b')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x1ea0cc,'json':!![]};return rp(_0x234985);})[_0x9407('0x34')](function(_0x57e02a){_0xeeac74[_0x9407('0x3c')]=_0x57e02a[_0x9407('0x3d')];_0xeeac74[_0x9407('0x3e')]=_0x57e02a[_0x9407('0x38')];return db[_0x9407('0x36')][_0x9407('0x3f')]({'data5':_0xeeac74[_0x9407('0x3c')],'data6':_0xeeac74[_0x9407('0x3e')]},{'where':{'id':_0xeeac74['id']}});})[_0x9407('0x34')](function(){return _0xeeac74;})[_0x9407('0x40')](function(_0x1fad7c){logger[_0x9407('0x41')](_0x9407('0x42'),_0xeeac74['id'],_0x1fad7c);});}function getOauth2MicrosoftAccessToken(_0xb1c69d,_0x3fde07){var _0x1b281c={'grant_type':'authorization_code','code':_0xb1c69d,'scope':getAccessTokenScope(_0x3fde07),'redirect_uri':_0x3fde07[_0x9407('0x25')],'client_id':_0x3fde07[_0x9407('0x39')],'client_secret':encryptor['decryptString'](_0x3fde07[_0x9407('0x35')])};var _0x4af167={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x9407('0x1d')](_0x9407('0x1e'),_0x3fde07[_0x9407('0x3b')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x1b281c,'json':!![]};return rp(_0x4af167);}function startRefreshInterval(_0x16c0a3){var _0x1dd025=schedule[_0x9407('0x43')];if(_0x1dd025[_0x16c0a3['id']])clearInterval(_0x1dd025[_0x16c0a3['id']]);_0x1dd025[_0x16c0a3['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x9407('0x44')](this,{'id':_0x16c0a3['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x9407('0x43')]=_0x1dd025;}function startAllRefreshIntervals(){return db['CloudProvider'][_0x9407('0x45')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x9407('0x34')](function(_0x20eca7){var _0x26eac9=_0x20eca7[_0x9407('0x14')](function(_0x378075){return refreshOauth2MicrosoftAccessToken(_0x378075)[_0x9407('0x34')](function(_0x35dd5a){startRefreshInterval(_0x35dd5a);});});return Promise[_0x9407('0x46')](_0x26eac9);})['catch'](function(_0x58f8bf){var _0x558582=_0x58f8bf?util['inspect'](_0x58f8bf,{'showHidden':![],'depth':null}):'';logger[_0x9407('0x41')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x558582);});}module[_0x9407('0x47')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};