6239dd7fd244776751e3121952125febd4448777
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xaa76=['error','authorization_code','decryptString','intervals','bind','findAll','all','catch','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','crypto','jsonwebtoken','moment','request-promise','../../config/environment','../../config/logger','api','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','openid','/authorize','/token','map','push','/.default','join','type','Outlook365','data7','replace','{TENANT_ID}','data2','code','from','stringify','toString','base64','hex','client_id','data1','redirect_uri','data4','response_mode','form_post','state','login','key','oauth2Claims','oauth2/','decode','payload','iss','issuer','aud','audience','nonce','isAfter','unix','exp','then','CloudProvider','findOne','refresh_token','data6','data3','POST','data5','access_token','update'];(function(_0x50863f,_0x2e48fb){var _0x1e6423=function(_0x388740){while(--_0x388740){_0x50863f['push'](_0x50863f['shift']());}};_0x1e6423(++_0x2e48fb);}(_0xaa76,0x191));var _0x6aa7=function(_0x4011b1,_0x4b88b5){_0x4011b1=_0x4011b1-0x0;var _0x61abca=_0xaa76[_0x4011b1];return _0x61abca;};'use strict';var _=require('lodash');var crypto=require(_0x6aa7('0x0'));var jwt=require(_0x6aa7('0x1'));var moment=require(_0x6aa7('0x2'));var Redis=require('ioredis');var rp=require(_0x6aa7('0x3'));var util=require('util');var encryptor=require('../../components/encryptor');var config=require(_0x6aa7('0x4'));var logger=require(_0x6aa7('0x5'))(_0x6aa7('0x6'));var schedule=require('../../config/schedule/cloud-provider');var db=require(_0x6aa7('0x7'))['db'];config[_0x6aa7('0x8')]=_[_0x6aa7('0x9')](config[_0x6aa7('0x8')],{'host':_0x6aa7('0xa'),'port':0x18eb});var redis=new Redis(config[_0x6aa7('0x8')]);var MICROSOFT_AUTH_URL=_0x6aa7('0xb');var AZURE_AUTH_SCOPES={'Outlook365':['openid','profile',_0x6aa7('0xc'),_0x6aa7('0xd'),_0x6aa7('0xe'),_0x6aa7('0xf'),_0x6aa7('0x10')],'Dynamics365':[_0x6aa7('0x11'),_0x6aa7('0xd')]};var MICROSOFT_AUTH_ENDPOINT=_0x6aa7('0x12');var MICROSOFT_TOKEN_ENDPOINT=_0x6aa7('0x13');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x1d8328){var _0x547133=_[_0x6aa7('0x14')](AZURE_AUTH_SCOPES[_0x1d8328['type']]);if(_0x1d8328['type']==='Dynamics365')_0x547133[_0x6aa7('0x15')](_0x1d8328['data7']+_0x6aa7('0x16'));return _0x547133[_0x6aa7('0x17')]('\x20');}function getAccessTokenScope(_0x5beb19){if(_0x5beb19[_0x6aa7('0x18')]===_0x6aa7('0x19'))return _0x6aa7('0xe');if(_0x5beb19[_0x6aa7('0x18')]==='Dynamics365')return _0x5beb19[_0x6aa7('0x1a')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x257cce,_0x2de462){var _0x18fe67=MICROSOFT_AUTH_URL[_0x6aa7('0x1b')](_0x6aa7('0x1c'),_0x257cce[_0x6aa7('0x1d')]);var _0x596294=[_0x6aa7('0x1e'),'id_token'];var _0x15f683=Buffer[_0x6aa7('0x1f')](JSON[_0x6aa7('0x20')]({'id':_0x2de462}))[_0x6aa7('0x21')](_0x6aa7('0x22'));var _0x5ef0b1=crypto['randomBytes'](0x10)[_0x6aa7('0x21')](_0x6aa7('0x23'));var _0x57a373=getAuthorizationScopes(_0x257cce);var _0x23d684=[{'key':_0x6aa7('0x24'),'value':_0x257cce[_0x6aa7('0x25')]},{'key':'response_type','value':encodeURIComponent(_0x596294[_0x6aa7('0x17')]('\x20'))},{'key':_0x6aa7('0x26'),'value':_0x257cce[_0x6aa7('0x27')]},{'key':_0x6aa7('0x28'),'value':_0x6aa7('0x29')},{'key':'scope','value':encodeURIComponent(_0x57a373)},{'key':_0x6aa7('0x2a'),'value':_0x15f683},{'key':'nonce','value':_0x5ef0b1},{'key':'prompt','value':_0x6aa7('0x2b')}];var _0x186386=_0x18fe67+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x23d684,function(_0x3f5b2b){return _0x3f5b2b[_0x6aa7('0x2c')]+'='+_0x3f5b2b['value'];})[_0x6aa7('0x17')]('&');_0x257cce[_0x6aa7('0x2d')]={'issuer':_0x18fe67[_0x6aa7('0x1b')](_0x6aa7('0x2e'),''),'audience':_0x257cce[_0x6aa7('0x25')],'state':_0x15f683,'nonce':_0x5ef0b1};redis['set'](_0x15f683,JSON[_0x6aa7('0x20')](_0x257cce));return _0x186386;}function isValidIdToken(_0x4f26df,_0x25e698){try{var _0x4ab670=jwt[_0x6aa7('0x2f')](_0x4f26df,{'complete':!![]});var _0x42df0a=_0x4ab670[_0x6aa7('0x30')];if(_0x42df0a[_0x6aa7('0x31')]!==_0x25e698[_0x6aa7('0x32')])return![];if(_0x42df0a[_0x6aa7('0x33')]!==_0x25e698[_0x6aa7('0x34')])return![];if(_0x42df0a['nonce']!==_0x25e698[_0x6aa7('0x35')])return![];if(moment()[_0x6aa7('0x36')](moment[_0x6aa7('0x37')](_0x42df0a[_0x6aa7('0x38')])))return![];return!![];}catch(_0x913e93){throw _0x913e93;}}function refreshOauth2MicrosoftAccessToken(_0x383666){return Promise['resolve']()[_0x6aa7('0x39')](function(){if(_0x383666['data3'])return _0x383666;return db[_0x6aa7('0x3a')][_0x6aa7('0x3b')]({'where':{'id':_0x383666['id']},'raw':!![]});})[_0x6aa7('0x39')](function(_0x22b03e){var _0xd74884={'grant_type':_0x6aa7('0x3c'),'refresh_token':_0x22b03e[_0x6aa7('0x3d')],'scope':getAccessTokenScope(_0x22b03e),'redirect_uri':_0x22b03e[_0x6aa7('0x27')],'client_id':_0x22b03e[_0x6aa7('0x25')],'client_secret':encryptor['decryptString'](_0x22b03e[_0x6aa7('0x3e')])};var _0x5586fc={'method':_0x6aa7('0x3f'),'uri':MICROSOFT_AUTH_URL[_0x6aa7('0x1b')](_0x6aa7('0x1c'),_0x22b03e[_0x6aa7('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0xd74884,'json':!![]};return rp(_0x5586fc);})[_0x6aa7('0x39')](function(_0x2aa4f6){_0x383666[_0x6aa7('0x40')]=_0x2aa4f6[_0x6aa7('0x41')];_0x383666[_0x6aa7('0x3d')]=_0x2aa4f6['refresh_token'];return db['CloudProvider'][_0x6aa7('0x42')]({'data5':_0x383666[_0x6aa7('0x40')],'data6':_0x383666[_0x6aa7('0x3d')]},{'where':{'id':_0x383666['id']}});})[_0x6aa7('0x39')](function(){return _0x383666;})['catch'](function(_0x222eb0){logger[_0x6aa7('0x43')]('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x383666['id'],_0x222eb0);});}function getOauth2MicrosoftAccessToken(_0x3bf565,_0x463744){var _0x7cb72f={'grant_type':_0x6aa7('0x44'),'code':_0x3bf565,'scope':getAccessTokenScope(_0x463744),'redirect_uri':_0x463744[_0x6aa7('0x27')],'client_id':_0x463744['data1'],'client_secret':encryptor[_0x6aa7('0x45')](_0x463744[_0x6aa7('0x3e')])};var _0x39abbc={'method':_0x6aa7('0x3f'),'uri':MICROSOFT_AUTH_URL[_0x6aa7('0x1b')](_0x6aa7('0x1c'),_0x463744[_0x6aa7('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x7cb72f,'json':!![]};return rp(_0x39abbc);}function startRefreshInterval(_0x582fb4){var _0x9312d2=schedule[_0x6aa7('0x46')];if(_0x9312d2[_0x582fb4['id']])clearInterval(_0x9312d2[_0x582fb4['id']]);_0x9312d2[_0x582fb4['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x6aa7('0x47')](this,{'id':_0x582fb4['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule['intervals']=_0x9312d2;}function startAllRefreshIntervals(){return db[_0x6aa7('0x3a')][_0x6aa7('0x48')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x6aa7('0x39')](function(_0x50bdd7){var _0x399891=_0x50bdd7[_0x6aa7('0x14')](function(_0x5a8f74){return refreshOauth2MicrosoftAccessToken(_0x5a8f74)[_0x6aa7('0x39')](function(_0x416685){startRefreshInterval(_0x416685);});});return Promise[_0x6aa7('0x49')](_0x399891);})[_0x6aa7('0x4a')](function(_0x1ebb82){var _0x53250c=_0x1ebb82?util[_0x6aa7('0x4b')](_0x1ebb82,{'showHidden':![],'depth':null}):'';logger[_0x6aa7('0x43')](_0x6aa7('0x4c'),_0x53250c);});}module[_0x6aa7('0x4d')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};