Built motion from commit da617fac.|2.6.6
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xea42=['Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','data4','bind','intervals','findAll','all','inspect','exports','lodash','crypto','jsonwebtoken','ioredis','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','/token','map','type','Dynamics365','push','data7','/.default','Outlook365','replace','{TENANT_ID}','code','from','base64','randomBytes','client_id','data1','response_type','redirect_uri','form_post','scope','state','nonce','prompt','login','key','join','stringify','decode','iss','issuer','aud','isAfter','unix','resolve','then','data3','findOne','refresh_token','decryptString','POST','data2','data5','access_token','CloudProvider','data6','catch','error'];(function(_0x8907b9,_0x3484b9){var _0x60982d=function(_0x2a5a09){while(--_0x2a5a09){_0x8907b9['push'](_0x8907b9['shift']());}};_0x60982d(++_0x3484b9);}(_0xea42,0xf9));var _0x2ea4=function(_0x1e08e0,_0x1c7e1c){_0x1e08e0=_0x1e08e0-0x0;var _0x15ce0e=_0xea42[_0x1e08e0];return _0x15ce0e;};'use strict';var _=require(_0x2ea4('0x0'));var crypto=require(_0x2ea4('0x1'));var jwt=require(_0x2ea4('0x2'));var moment=require('moment');var Redis=require(_0x2ea4('0x3'));var rp=require(_0x2ea4('0x4'));var util=require(_0x2ea4('0x5'));var encryptor=require(_0x2ea4('0x6'));var config=require(_0x2ea4('0x7'));var logger=require(_0x2ea4('0x8'))(_0x2ea4('0x9'));var schedule=require(_0x2ea4('0xa'));var db=require(_0x2ea4('0xb'))['db'];config[_0x2ea4('0xc')]=_[_0x2ea4('0xd')](config[_0x2ea4('0xc')],{'host':_0x2ea4('0xe'),'port':0x18eb});var redis=new Redis(config[_0x2ea4('0xc')]);var MICROSOFT_AUTH_URL=_0x2ea4('0xf');var AZURE_AUTH_SCOPES={'Outlook365':[_0x2ea4('0x10'),_0x2ea4('0x11'),_0x2ea4('0x12'),_0x2ea4('0x13'),_0x2ea4('0x14'),_0x2ea4('0x15'),_0x2ea4('0x16')],'Dynamics365':[_0x2ea4('0x10'),_0x2ea4('0x13')]};var MICROSOFT_AUTH_ENDPOINT=_0x2ea4('0x17');var MICROSOFT_TOKEN_ENDPOINT=_0x2ea4('0x18');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x1758fc){var _0x4b44fc=_[_0x2ea4('0x19')](AZURE_AUTH_SCOPES[_0x1758fc['type']]);if(_0x1758fc[_0x2ea4('0x1a')]===_0x2ea4('0x1b'))_0x4b44fc[_0x2ea4('0x1c')](_0x1758fc[_0x2ea4('0x1d')]+_0x2ea4('0x1e'));return _0x4b44fc['join']('\x20');}function getAccessTokenScope(_0x228c99){if(_0x228c99[_0x2ea4('0x1a')]===_0x2ea4('0x1f'))return _0x2ea4('0x14');if(_0x228c99[_0x2ea4('0x1a')]===_0x2ea4('0x1b'))return _0x228c99[_0x2ea4('0x1d')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0xfcc38e,_0x4c708a){var _0x5350c9=MICROSOFT_AUTH_URL[_0x2ea4('0x20')](_0x2ea4('0x21'),_0xfcc38e['data2']);var _0x52ac3b=[_0x2ea4('0x22'),'id_token'];var _0x293ea2=Buffer[_0x2ea4('0x23')](JSON['stringify']({'id':_0x4c708a}))['toString'](_0x2ea4('0x24'));var _0x2c0b65=crypto[_0x2ea4('0x25')](0x10)['toString']('hex');var _0x521bcc=getAuthorizationScopes(_0xfcc38e);var _0x3c65e8=[{'key':_0x2ea4('0x26'),'value':_0xfcc38e[_0x2ea4('0x27')]},{'key':_0x2ea4('0x28'),'value':encodeURIComponent(_0x52ac3b['join']('\x20'))},{'key':_0x2ea4('0x29'),'value':_0xfcc38e['data4']},{'key':'response_mode','value':_0x2ea4('0x2a')},{'key':_0x2ea4('0x2b'),'value':encodeURIComponent(_0x521bcc)},{'key':_0x2ea4('0x2c'),'value':_0x293ea2},{'key':_0x2ea4('0x2d'),'value':_0x2c0b65},{'key':_0x2ea4('0x2e'),'value':_0x2ea4('0x2f')}];var _0x51f08b=_0x5350c9+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x2ea4('0x19')](_0x3c65e8,function(_0x38273b){return _0x38273b[_0x2ea4('0x30')]+'='+_0x38273b['value'];})[_0x2ea4('0x31')]('&');_0xfcc38e['oauth2Claims']={'issuer':_0x5350c9['replace']('oauth2/',''),'audience':_0xfcc38e['data1'],'state':_0x293ea2,'nonce':_0x2c0b65};redis['set'](_0x293ea2,JSON[_0x2ea4('0x32')](_0xfcc38e));return _0x51f08b;}function isValidIdToken(_0x44e67b,_0x4b10c2){try{var _0x33d62d=jwt[_0x2ea4('0x33')](_0x44e67b,{'complete':!![]});var _0x360eee=_0x33d62d['payload'];if(_0x360eee[_0x2ea4('0x34')]!==_0x4b10c2[_0x2ea4('0x35')])return![];if(_0x360eee[_0x2ea4('0x36')]!==_0x4b10c2['audience'])return![];if(_0x360eee['nonce']!==_0x4b10c2[_0x2ea4('0x2d')])return![];if(moment()[_0x2ea4('0x37')](moment[_0x2ea4('0x38')](_0x360eee['exp'])))return![];return!![];}catch(_0x4cf61a){throw _0x4cf61a;}}function refreshOauth2MicrosoftAccessToken(_0x1a8be7){return Promise[_0x2ea4('0x39')]()[_0x2ea4('0x3a')](function(){if(_0x1a8be7[_0x2ea4('0x3b')])return _0x1a8be7;return db['CloudProvider'][_0x2ea4('0x3c')]({'where':{'id':_0x1a8be7['id']},'raw':!![]});})[_0x2ea4('0x3a')](function(_0x1b7709){var _0x18ee80={'grant_type':_0x2ea4('0x3d'),'refresh_token':_0x1b7709['data6'],'scope':getAccessTokenScope(_0x1b7709),'redirect_uri':_0x1b7709['data4'],'client_id':_0x1b7709['data1'],'client_secret':encryptor[_0x2ea4('0x3e')](_0x1b7709[_0x2ea4('0x3b')])};var _0x5bb2c3={'method':_0x2ea4('0x3f'),'uri':MICROSOFT_AUTH_URL['replace'](_0x2ea4('0x21'),_0x1b7709[_0x2ea4('0x40')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x18ee80,'json':!![]};return rp(_0x5bb2c3);})[_0x2ea4('0x3a')](function(_0x21a3d2){_0x1a8be7[_0x2ea4('0x41')]=_0x21a3d2[_0x2ea4('0x42')];_0x1a8be7['data6']=_0x21a3d2[_0x2ea4('0x3d')];return db[_0x2ea4('0x43')]['update']({'data5':_0x1a8be7[_0x2ea4('0x41')],'data6':_0x1a8be7[_0x2ea4('0x44')]},{'where':{'id':_0x1a8be7['id']}});})[_0x2ea4('0x3a')](function(){return _0x1a8be7;})[_0x2ea4('0x45')](function(_0x485f78){logger[_0x2ea4('0x46')](_0x2ea4('0x47'),_0x1a8be7['id'],_0x485f78);});}function getOauth2MicrosoftAccessToken(_0x2141ae,_0x35824e){var _0x12a377={'grant_type':_0x2ea4('0x48'),'code':_0x2141ae,'scope':getAccessTokenScope(_0x35824e),'redirect_uri':_0x35824e[_0x2ea4('0x49')],'client_id':_0x35824e[_0x2ea4('0x27')],'client_secret':encryptor['decryptString'](_0x35824e[_0x2ea4('0x3b')])};var _0x347afb={'method':_0x2ea4('0x3f'),'uri':MICROSOFT_AUTH_URL[_0x2ea4('0x20')]('{TENANT_ID}',_0x35824e['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x12a377,'json':!![]};return rp(_0x347afb);}function startRefreshInterval(_0xab50b4){var _0x4b8be2=schedule['intervals'];if(_0x4b8be2[_0xab50b4['id']])clearInterval(_0x4b8be2[_0xab50b4['id']]);_0x4b8be2[_0xab50b4['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x2ea4('0x4a')](this,{'id':_0xab50b4['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x2ea4('0x4b')]=_0x4b8be2;}function startAllRefreshIntervals(){return db[_0x2ea4('0x43')][_0x2ea4('0x4c')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x2ea4('0x3a')](function(_0x37f71f){var _0x15565e=_0x37f71f[_0x2ea4('0x19')](function(_0x52c248){return refreshOauth2MicrosoftAccessToken(_0x52c248)[_0x2ea4('0x3a')](function(_0xf5d5ee){startRefreshInterval(_0xf5d5ee);});});return Promise[_0x2ea4('0x4d')](_0x15565e);})[_0x2ea4('0x45')](function(_0x1c5d56){var _0x302bbb=_0x1c5d56?util[_0x2ea4('0x4e')](_0x1c5d56,{'showHidden':![],'depth':null}):'';logger[_0x2ea4('0x46')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x302bbb);});}module[_0x2ea4('0x4f')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};