4df251221d34cb63928ba076f96a8dc143a0a6b2
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xa205=['api','../../mysqldb','defaults','localhost','redis','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','email','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','/token','map','type','push','data7','/.default','join','Outlook365','replace','{TENANT_ID}','data2','code','id_token','from','toString','base64','randomBytes','client_id','response_type','redirect_uri','data4','response_mode','form_post','scope','state','nonce','prompt','login','key','value','oauth2/','data1','set','stringify','decode','audience','isAfter','unix','data3','CloudProvider','findOne','then','refresh_token','data6','decryptString','POST','data5','access_token','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','bind','intervals','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','jsonwebtoken','ioredis','util','../../components/encryptor','../../config/environment','../../config/logger'];(function(_0x47e9f3,_0x2169a5){var _0x5383ef=function(_0x3026c9){while(--_0x3026c9){_0x47e9f3['push'](_0x47e9f3['shift']());}};_0x5383ef(++_0x2169a5);}(_0xa205,0x8f));var _0x5a20=function(_0x367a3d,_0x452717){_0x367a3d=_0x367a3d-0x0;var _0x460539=_0xa205[_0x367a3d];return _0x460539;};'use strict';var _=require(_0x5a20('0x0'));var crypto=require('crypto');var jwt=require(_0x5a20('0x1'));var moment=require('moment');var Redis=require(_0x5a20('0x2'));var rp=require('request-promise');var util=require(_0x5a20('0x3'));var encryptor=require(_0x5a20('0x4'));var config=require(_0x5a20('0x5'));var logger=require(_0x5a20('0x6'))(_0x5a20('0x7'));var schedule=require('../../config/schedule/cloud-provider');var db=require(_0x5a20('0x8'))['db'];config['redis']=_[_0x5a20('0x9')](config['redis'],{'host':_0x5a20('0xa'),'port':0x18eb});var redis=new Redis(config[_0x5a20('0xb')]);var MICROSOFT_AUTH_URL=_0x5a20('0xc');var AZURE_AUTH_SCOPES={'Outlook365':[_0x5a20('0xd'),'profile',_0x5a20('0xe'),'offline_access',_0x5a20('0xf'),_0x5a20('0x10'),_0x5a20('0x11')],'Dynamics365':[_0x5a20('0xd'),'offline_access']};var MICROSOFT_AUTH_ENDPOINT=_0x5a20('0x12');var MICROSOFT_TOKEN_ENDPOINT=_0x5a20('0x13');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x15599d){var _0x5ccb03=_[_0x5a20('0x14')](AZURE_AUTH_SCOPES[_0x15599d[_0x5a20('0x15')]]);if(_0x15599d[_0x5a20('0x15')]==='Dynamics365')_0x5ccb03[_0x5a20('0x16')](_0x15599d[_0x5a20('0x17')]+_0x5a20('0x18'));return _0x5ccb03[_0x5a20('0x19')]('\x20');}function getAccessTokenScope(_0x508c80){if(_0x508c80['type']===_0x5a20('0x1a'))return _0x5a20('0xf');if(_0x508c80[_0x5a20('0x15')]==='Dynamics365')return _0x508c80[_0x5a20('0x17')]+_0x5a20('0x18');}function generateMicrosoftAuthorizationUrl(_0xa54b0f,_0xa53877){var _0x59abf4=MICROSOFT_AUTH_URL[_0x5a20('0x1b')](_0x5a20('0x1c'),_0xa54b0f[_0x5a20('0x1d')]);var _0x5990d4=[_0x5a20('0x1e'),_0x5a20('0x1f')];var _0x3282b6=Buffer[_0x5a20('0x20')](JSON['stringify']({'id':_0xa53877}))[_0x5a20('0x21')](_0x5a20('0x22'));var _0x512dc0=crypto[_0x5a20('0x23')](0x10)[_0x5a20('0x21')]('hex');var _0x1df41e=getAuthorizationScopes(_0xa54b0f);var _0x5eacd0=[{'key':_0x5a20('0x24'),'value':_0xa54b0f['data1']},{'key':_0x5a20('0x25'),'value':encodeURIComponent(_0x5990d4[_0x5a20('0x19')]('\x20'))},{'key':_0x5a20('0x26'),'value':_0xa54b0f[_0x5a20('0x27')]},{'key':_0x5a20('0x28'),'value':_0x5a20('0x29')},{'key':_0x5a20('0x2a'),'value':encodeURIComponent(_0x1df41e)},{'key':_0x5a20('0x2b'),'value':_0x3282b6},{'key':_0x5a20('0x2c'),'value':_0x512dc0},{'key':_0x5a20('0x2d'),'value':_0x5a20('0x2e')}];var _0x49d4b6=_0x59abf4+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x5a20('0x14')](_0x5eacd0,function(_0x1bec09){return _0x1bec09[_0x5a20('0x2f')]+'='+_0x1bec09[_0x5a20('0x30')];})['join']('&');_0xa54b0f['oauth2Claims']={'issuer':_0x59abf4[_0x5a20('0x1b')](_0x5a20('0x31'),''),'audience':_0xa54b0f[_0x5a20('0x32')],'state':_0x3282b6,'nonce':_0x512dc0};redis[_0x5a20('0x33')](_0x3282b6,JSON[_0x5a20('0x34')](_0xa54b0f));return _0x49d4b6;}function isValidIdToken(_0x4b7944,_0x568c76){try{var _0x37181a=jwt[_0x5a20('0x35')](_0x4b7944,{'complete':!![]});var _0x392ed8=_0x37181a['payload'];if(_0x392ed8['iss']!==_0x568c76['issuer'])return![];if(_0x392ed8['aud']!==_0x568c76[_0x5a20('0x36')])return![];if(_0x392ed8[_0x5a20('0x2c')]!==_0x568c76[_0x5a20('0x2c')])return![];if(moment()[_0x5a20('0x37')](moment[_0x5a20('0x38')](_0x392ed8['exp'])))return![];return!![];}catch(_0x175ebd){throw _0x175ebd;}}function refreshOauth2MicrosoftAccessToken(_0x4b881d){return Promise['resolve']()['then'](function(){if(_0x4b881d[_0x5a20('0x39')])return _0x4b881d;return db[_0x5a20('0x3a')][_0x5a20('0x3b')]({'where':{'id':_0x4b881d['id']},'raw':!![]});})[_0x5a20('0x3c')](function(_0x3711e9){var _0x3145b4={'grant_type':_0x5a20('0x3d'),'refresh_token':_0x3711e9[_0x5a20('0x3e')],'scope':getAccessTokenScope(_0x3711e9),'redirect_uri':_0x3711e9[_0x5a20('0x27')],'client_id':_0x3711e9[_0x5a20('0x32')],'client_secret':encryptor[_0x5a20('0x3f')](_0x3711e9[_0x5a20('0x39')])};var _0x254486={'method':_0x5a20('0x40'),'uri':MICROSOFT_AUTH_URL[_0x5a20('0x1b')]('{TENANT_ID}',_0x3711e9[_0x5a20('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x3145b4,'json':!![]};return rp(_0x254486);})[_0x5a20('0x3c')](function(_0x2709ea){_0x4b881d[_0x5a20('0x41')]=_0x2709ea[_0x5a20('0x42')];_0x4b881d[_0x5a20('0x3e')]=_0x2709ea['refresh_token'];return db[_0x5a20('0x3a')]['update']({'data5':_0x4b881d[_0x5a20('0x41')],'data6':_0x4b881d[_0x5a20('0x3e')]},{'where':{'id':_0x4b881d['id']}});})[_0x5a20('0x3c')](function(){return _0x4b881d;})[_0x5a20('0x43')](function(_0x312d75){logger[_0x5a20('0x44')](_0x5a20('0x45'),_0x4b881d['id'],_0x312d75);});}function getOauth2MicrosoftAccessToken(_0x16c8aa,_0x515efd){var _0x2a876e={'grant_type':_0x5a20('0x46'),'code':_0x16c8aa,'scope':getAccessTokenScope(_0x515efd),'redirect_uri':_0x515efd['data4'],'client_id':_0x515efd[_0x5a20('0x32')],'client_secret':encryptor[_0x5a20('0x3f')](_0x515efd[_0x5a20('0x39')])};var _0x6e32f={'method':_0x5a20('0x40'),'uri':MICROSOFT_AUTH_URL[_0x5a20('0x1b')](_0x5a20('0x1c'),_0x515efd[_0x5a20('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2a876e,'json':!![]};return rp(_0x6e32f);}function startRefreshInterval(_0x226dac){var _0x1a9fa5=schedule['intervals'];if(_0x1a9fa5[_0x226dac['id']])clearInterval(_0x1a9fa5[_0x226dac['id']]);_0x1a9fa5[_0x226dac['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x5a20('0x47')](this,{'id':_0x226dac['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x5a20('0x48')]=_0x1a9fa5;}function startAllRefreshIntervals(){return db[_0x5a20('0x3a')]['findAll']({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x5a20('0x3c')](function(_0x24f7b2){var _0x1a20e5=_0x24f7b2[_0x5a20('0x14')](function(_0x1eeb39){return refreshOauth2MicrosoftAccessToken(_0x1eeb39)[_0x5a20('0x3c')](function(_0x2beb88){startRefreshInterval(_0x2beb88);});});return Promise['all'](_0x1a20e5);})[_0x5a20('0x43')](function(_0x4d274a){var _0x28c2c2=_0x4d274a?util['inspect'](_0x4d274a,{'showHidden':![],'depth':null}):'';logger[_0x5a20('0x44')](_0x5a20('0x49'),_0x28c2c2);});}module[_0x5a20('0x4a')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};