Built motion from commit 2b9af5da.|2.6.26
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xda1a=['profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','/authorize','/token','map','type','Dynamics365','push','data7','join','Outlook365','{TENANT_ID}','data2','id_token','stringify','toString','base64','randomBytes','hex','data1','data4','response_mode','scope','state','nonce','prompt','login','key','value','oauth2Claims','replace','oauth2/','decode','iss','issuer','aud','audience','unix','exp','resolve','then','data3','CloudProvider','findOne','data6','data5','access_token','refresh_token','update','catch','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','decryptString','intervals','findAll','inspect','exports','lodash','jsonwebtoken','moment','ioredis','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid'];(function(_0x1604b0,_0x48d196){var _0xf7ee7e=function(_0x368052){while(--_0x368052){_0x1604b0['push'](_0x1604b0['shift']());}};_0xf7ee7e(++_0x48d196);}(_0xda1a,0x8a));var _0xada1=function(_0x27a019,_0x4a6930){_0x27a019=_0x27a019-0x0;var _0x3dc099=_0xda1a[_0x27a019];return _0x3dc099;};'use strict';var _=require(_0xada1('0x0'));var crypto=require('crypto');var jwt=require(_0xada1('0x1'));var moment=require(_0xada1('0x2'));var Redis=require(_0xada1('0x3'));var rp=require(_0xada1('0x4'));var util=require(_0xada1('0x5'));var encryptor=require(_0xada1('0x6'));var config=require(_0xada1('0x7'));var logger=require(_0xada1('0x8'))(_0xada1('0x9'));var schedule=require(_0xada1('0xa'));var db=require(_0xada1('0xb'))['db'];config['redis']=_[_0xada1('0xc')](config['redis'],{'host':_0xada1('0xd'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL=_0xada1('0xe');var AZURE_AUTH_SCOPES={'Outlook365':[_0xada1('0xf'),_0xada1('0x10'),_0xada1('0x11'),_0xada1('0x12'),_0xada1('0x13'),_0xada1('0x14'),'https://outlook.office.com/SMTP.Send'],'Dynamics365':['openid','offline_access']};var MICROSOFT_AUTH_ENDPOINT=_0xada1('0x15');var MICROSOFT_TOKEN_ENDPOINT=_0xada1('0x16');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0xc88740){var _0x549449=_[_0xada1('0x17')](AZURE_AUTH_SCOPES[_0xc88740[_0xada1('0x18')]]);if(_0xc88740['type']===_0xada1('0x19'))_0x549449[_0xada1('0x1a')](_0xc88740[_0xada1('0x1b')]+'/.default');return _0x549449[_0xada1('0x1c')]('\x20');}function getAccessTokenScope(_0x14edb8){if(_0x14edb8[_0xada1('0x18')]===_0xada1('0x1d'))return _0xada1('0x13');if(_0x14edb8[_0xada1('0x18')]===_0xada1('0x19'))return _0x14edb8[_0xada1('0x1b')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x367df9,_0x50f6c0){var _0x13cd74=MICROSOFT_AUTH_URL['replace'](_0xada1('0x1e'),_0x367df9[_0xada1('0x1f')]);var _0x15539d=['code',_0xada1('0x20')];var _0x47b53c=Buffer['from'](JSON[_0xada1('0x21')]({'id':_0x50f6c0}))[_0xada1('0x22')](_0xada1('0x23'));var _0x2f9a93=crypto[_0xada1('0x24')](0x10)[_0xada1('0x22')](_0xada1('0x25'));var _0x3d40f4=getAuthorizationScopes(_0x367df9);var _0x2dc6f9=[{'key':'client_id','value':_0x367df9[_0xada1('0x26')]},{'key':'response_type','value':encodeURIComponent(_0x15539d[_0xada1('0x1c')]('\x20'))},{'key':'redirect_uri','value':_0x367df9[_0xada1('0x27')]},{'key':_0xada1('0x28'),'value':'form_post'},{'key':_0xada1('0x29'),'value':encodeURIComponent(_0x3d40f4)},{'key':_0xada1('0x2a'),'value':_0x47b53c},{'key':_0xada1('0x2b'),'value':_0x2f9a93},{'key':_0xada1('0x2c'),'value':_0xada1('0x2d')}];var _0x27e700=_0x13cd74+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x2dc6f9,function(_0x35d64e){return _0x35d64e[_0xada1('0x2e')]+'='+_0x35d64e[_0xada1('0x2f')];})['join']('&');_0x367df9[_0xada1('0x30')]={'issuer':_0x13cd74[_0xada1('0x31')](_0xada1('0x32'),''),'audience':_0x367df9[_0xada1('0x26')],'state':_0x47b53c,'nonce':_0x2f9a93};redis['set'](_0x47b53c,JSON[_0xada1('0x21')](_0x367df9));return _0x27e700;}function isValidIdToken(_0x1a5148,_0x1145d9){try{var _0x30734a=jwt[_0xada1('0x33')](_0x1a5148,{'complete':!![]});var _0x2c81fe=_0x30734a['payload'];if(_0x2c81fe[_0xada1('0x34')]!==_0x1145d9[_0xada1('0x35')])return![];if(_0x2c81fe[_0xada1('0x36')]!==_0x1145d9[_0xada1('0x37')])return![];if(_0x2c81fe[_0xada1('0x2b')]!==_0x1145d9['nonce'])return![];if(moment()['isAfter'](moment[_0xada1('0x38')](_0x2c81fe[_0xada1('0x39')])))return![];return!![];}catch(_0x2f548d){throw _0x2f548d;}}function refreshOauth2MicrosoftAccessToken(_0xb20fa3){return Promise[_0xada1('0x3a')]()[_0xada1('0x3b')](function(){if(_0xb20fa3[_0xada1('0x3c')])return _0xb20fa3;return db[_0xada1('0x3d')][_0xada1('0x3e')]({'where':{'id':_0xb20fa3['id']},'raw':!![]});})[_0xada1('0x3b')](function(_0xf8a373){var _0x572567={'grant_type':'refresh_token','refresh_token':_0xf8a373[_0xada1('0x3f')],'scope':getAccessTokenScope(_0xf8a373),'redirect_uri':_0xf8a373[_0xada1('0x27')],'client_id':_0xf8a373[_0xada1('0x26')],'client_secret':encryptor['decryptString'](_0xf8a373[_0xada1('0x3c')])};var _0x27480f={'method':'POST','uri':MICROSOFT_AUTH_URL[_0xada1('0x31')]('{TENANT_ID}',_0xf8a373['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x572567,'json':!![]};return rp(_0x27480f);})[_0xada1('0x3b')](function(_0x2944ed){_0xb20fa3[_0xada1('0x40')]=_0x2944ed[_0xada1('0x41')];_0xb20fa3[_0xada1('0x3f')]=_0x2944ed[_0xada1('0x42')];return db[_0xada1('0x3d')][_0xada1('0x43')]({'data5':_0xb20fa3[_0xada1('0x40')],'data6':_0xb20fa3[_0xada1('0x3f')]},{'where':{'id':_0xb20fa3['id']}});})[_0xada1('0x3b')](function(){return _0xb20fa3;})[_0xada1('0x44')](function(_0x27eafd){logger[_0xada1('0x45')](_0xada1('0x46'),_0xb20fa3['id'],_0x27eafd);});}function getOauth2MicrosoftAccessToken(_0x954963,_0xc6e736){var _0xbc1dd8={'grant_type':_0xada1('0x47'),'code':_0x954963,'scope':getAccessTokenScope(_0xc6e736),'redirect_uri':_0xc6e736[_0xada1('0x27')],'client_id':_0xc6e736[_0xada1('0x26')],'client_secret':encryptor[_0xada1('0x48')](_0xc6e736[_0xada1('0x3c')])};var _0x6cb595={'method':'POST','uri':MICROSOFT_AUTH_URL[_0xada1('0x31')]('{TENANT_ID}',_0xc6e736['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0xbc1dd8,'json':!![]};return rp(_0x6cb595);}function startRefreshInterval(_0x2f020c){var _0x322f73=schedule[_0xada1('0x49')];if(_0x322f73[_0x2f020c['id']])clearInterval(_0x322f73[_0x2f020c['id']]);_0x322f73[_0x2f020c['id']]=setInterval(refreshOauth2MicrosoftAccessToken['bind'](this,{'id':_0x2f020c['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xada1('0x49')]=_0x322f73;}function startAllRefreshIntervals(){return db[_0xada1('0x3d')][_0xada1('0x4a')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0xada1('0x3b')](function(_0x55ffc8){var _0x3f81a1=_0x55ffc8[_0xada1('0x17')](function(_0xbf035d){return refreshOauth2MicrosoftAccessToken(_0xbf035d)[_0xada1('0x3b')](function(_0x522640){startRefreshInterval(_0x522640);});});return Promise['all'](_0x3f81a1);})[_0xada1('0x44')](function(_0x46155f){var _0x1c3ecd=_0x46155f?util[_0xada1('0x4b')](_0x46155f,{'showHidden':![],'depth':null}):'';logger[_0xada1('0x45')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x1c3ecd);});}module[_0xada1('0x4c')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};