Built motion from commit e6806ed6.|2.6.0
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x1a24=['jsonwebtoken','moment','util','../../components/encryptor','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','defaults','redis','openid','profile','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/authorize','/token','map','push','data7','join','Outlook365','/.default','{TENANT_ID}','data2','code','stringify','randomBytes','hex','client_id','data1','redirect_uri','data4','response_mode','form_post','state','nonce','prompt','login','key','value','replace','oauth2/','set','payload','iss','issuer','aud','audience','unix','then','data3','CloudProvider','findOne','refresh_token','decryptString','POST','data5','access_token','data6','catch','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','intervals','bind','findAll','all','error','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','crypto'];(function(_0xd1d19a,_0x1933f0){var _0x52a79d=function(_0x5199e2){while(--_0x5199e2){_0xd1d19a['push'](_0xd1d19a['shift']());}};_0x52a79d(++_0x1933f0);}(_0x1a24,0x8e));var _0x41a2=function(_0x2c96f3,_0x315c7f){_0x2c96f3=_0x2c96f3-0x0;var _0xd99232=_0x1a24[_0x2c96f3];return _0xd99232;};'use strict';var _=require(_0x41a2('0x0'));var crypto=require(_0x41a2('0x1'));var jwt=require(_0x41a2('0x2'));var moment=require(_0x41a2('0x3'));var Redis=require('ioredis');var rp=require('request-promise');var util=require(_0x41a2('0x4'));var encryptor=require(_0x41a2('0x5'));var config=require('../../config/environment');var logger=require(_0x41a2('0x6'))('api');var schedule=require(_0x41a2('0x7'));var db=require(_0x41a2('0x8'))['db'];config['redis']=_[_0x41a2('0x9')](config[_0x41a2('0xa')],{'host':'localhost','port':0x18eb});var redis=new Redis(config[_0x41a2('0xa')]);var MICROSOFT_AUTH_URL='https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0';var AZURE_AUTH_SCOPES={'Outlook365':[_0x41a2('0xb'),_0x41a2('0xc'),'email',_0x41a2('0xd'),_0x41a2('0xe'),_0x41a2('0xf'),_0x41a2('0x10')],'Dynamics365':[_0x41a2('0xb'),_0x41a2('0xd')]};var MICROSOFT_AUTH_ENDPOINT=_0x41a2('0x11');var MICROSOFT_TOKEN_ENDPOINT=_0x41a2('0x12');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x3f6ce2){var _0x482e22=_[_0x41a2('0x13')](AZURE_AUTH_SCOPES[_0x3f6ce2['type']]);if(_0x3f6ce2['type']==='Dynamics365')_0x482e22[_0x41a2('0x14')](_0x3f6ce2[_0x41a2('0x15')]+'/.default');return _0x482e22[_0x41a2('0x16')]('\x20');}function getAccessTokenScope(_0x3b9fe0){if(_0x3b9fe0['type']===_0x41a2('0x17'))return _0x41a2('0xe');if(_0x3b9fe0['type']==='Dynamics365')return _0x3b9fe0[_0x41a2('0x15')]+_0x41a2('0x18');}function generateMicrosoftAuthorizationUrl(_0x23cb36,_0x116001){var _0x22bd53=MICROSOFT_AUTH_URL['replace'](_0x41a2('0x19'),_0x23cb36[_0x41a2('0x1a')]);var _0x3e2bbf=[_0x41a2('0x1b'),'id_token'];var _0x4dc58d=Buffer['from'](JSON[_0x41a2('0x1c')]({'id':_0x116001}))['toString']('base64');var _0xa14f5d=crypto[_0x41a2('0x1d')](0x10)['toString'](_0x41a2('0x1e'));var _0x12edae=getAuthorizationScopes(_0x23cb36);var _0x511d1d=[{'key':_0x41a2('0x1f'),'value':_0x23cb36[_0x41a2('0x20')]},{'key':'response_type','value':encodeURIComponent(_0x3e2bbf[_0x41a2('0x16')]('\x20'))},{'key':_0x41a2('0x21'),'value':_0x23cb36[_0x41a2('0x22')]},{'key':_0x41a2('0x23'),'value':_0x41a2('0x24')},{'key':'scope','value':encodeURIComponent(_0x12edae)},{'key':_0x41a2('0x25'),'value':_0x4dc58d},{'key':_0x41a2('0x26'),'value':_0xa14f5d},{'key':_0x41a2('0x27'),'value':_0x41a2('0x28')}];var _0x58c7e4=_0x22bd53+MICROSOFT_AUTH_ENDPOINT+'?'+_['map'](_0x511d1d,function(_0xc07052){return _0xc07052[_0x41a2('0x29')]+'='+_0xc07052[_0x41a2('0x2a')];})['join']('&');_0x23cb36['oauth2Claims']={'issuer':_0x22bd53[_0x41a2('0x2b')](_0x41a2('0x2c'),''),'audience':_0x23cb36[_0x41a2('0x20')],'state':_0x4dc58d,'nonce':_0xa14f5d};redis[_0x41a2('0x2d')](_0x4dc58d,JSON['stringify'](_0x23cb36));return _0x58c7e4;}function isValidIdToken(_0x4279bc,_0x26dfaf){try{var _0x5687c3=jwt['decode'](_0x4279bc,{'complete':!![]});var _0x41d0f3=_0x5687c3[_0x41a2('0x2e')];if(_0x41d0f3[_0x41a2('0x2f')]!==_0x26dfaf[_0x41a2('0x30')])return![];if(_0x41d0f3[_0x41a2('0x31')]!==_0x26dfaf[_0x41a2('0x32')])return![];if(_0x41d0f3[_0x41a2('0x26')]!==_0x26dfaf['nonce'])return![];if(moment()['isAfter'](moment[_0x41a2('0x33')](_0x41d0f3['exp'])))return![];return!![];}catch(_0x139d7d){throw _0x139d7d;}}function refreshOauth2MicrosoftAccessToken(_0x2f6327){return Promise['resolve']()[_0x41a2('0x34')](function(){if(_0x2f6327[_0x41a2('0x35')])return _0x2f6327;return db[_0x41a2('0x36')][_0x41a2('0x37')]({'where':{'id':_0x2f6327['id']},'raw':!![]});})['then'](function(_0x201e96){var _0x7ee4bf={'grant_type':_0x41a2('0x38'),'refresh_token':_0x201e96['data6'],'scope':getAccessTokenScope(_0x201e96),'redirect_uri':_0x201e96[_0x41a2('0x22')],'client_id':_0x201e96[_0x41a2('0x20')],'client_secret':encryptor[_0x41a2('0x39')](_0x201e96[_0x41a2('0x35')])};var _0x5c75c3={'method':_0x41a2('0x3a'),'uri':MICROSOFT_AUTH_URL[_0x41a2('0x2b')](_0x41a2('0x19'),_0x201e96['data2'])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x7ee4bf,'json':!![]};return rp(_0x5c75c3);})[_0x41a2('0x34')](function(_0x50ea8a){_0x2f6327[_0x41a2('0x3b')]=_0x50ea8a[_0x41a2('0x3c')];_0x2f6327['data6']=_0x50ea8a[_0x41a2('0x38')];return db[_0x41a2('0x36')]['update']({'data5':_0x2f6327['data5'],'data6':_0x2f6327[_0x41a2('0x3d')]},{'where':{'id':_0x2f6327['id']}});})[_0x41a2('0x34')](function(){return _0x2f6327;})[_0x41a2('0x3e')](function(_0x20daa8){logger['error'](_0x41a2('0x3f'),_0x2f6327['id'],_0x20daa8);});}function getOauth2MicrosoftAccessToken(_0x3b9ae3,_0x4514cc){var _0x5ea03d={'grant_type':_0x41a2('0x40'),'code':_0x3b9ae3,'scope':getAccessTokenScope(_0x4514cc),'redirect_uri':_0x4514cc[_0x41a2('0x22')],'client_id':_0x4514cc['data1'],'client_secret':encryptor['decryptString'](_0x4514cc['data3'])};var _0x484fcc={'method':_0x41a2('0x3a'),'uri':MICROSOFT_AUTH_URL[_0x41a2('0x2b')](_0x41a2('0x19'),_0x4514cc[_0x41a2('0x1a')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x5ea03d,'json':!![]};return rp(_0x484fcc);}function startRefreshInterval(_0x362c52){var _0x35face=schedule[_0x41a2('0x41')];if(_0x35face[_0x362c52['id']])clearInterval(_0x35face[_0x362c52['id']]);_0x35face[_0x362c52['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x41a2('0x42')](this,{'id':_0x362c52['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x41a2('0x41')]=_0x35face;}function startAllRefreshIntervals(){return db[_0x41a2('0x36')][_0x41a2('0x43')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x41a2('0x34')](function(_0x42c68a){var _0x5d6ae8=_0x42c68a[_0x41a2('0x13')](function(_0x4cdd57){return refreshOauth2MicrosoftAccessToken(_0x4cdd57)[_0x41a2('0x34')](function(_0x376867){startRefreshInterval(_0x376867);});});return Promise[_0x41a2('0x44')](_0x5d6ae8);})['catch'](function(_0x78ccb3){var _0x2d4772=_0x78ccb3?util['inspect'](_0x78ccb3,{'showHidden':![],'depth':null}):'';logger[_0x41a2('0x45')](_0x41a2('0x46'),_0x2d4772);});}module[_0x41a2('0x47')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};