a1dc990de96987e137faa5fe906f2a6b01fa7acf
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0xd044=['state','prompt','login','key','oauth2Claims','oauth2/','data1','set','decode','payload','issuer','aud','audience','nonce','isAfter','unix','resolve','data3','CloudProvider','findOne','refresh_token','data6','POST','then','update','data5','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','decryptString','intervals','bind','findAll','all','catch','inspect','error','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','lodash','crypto','jsonwebtoken','moment','ioredis','request-promise','util','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','openid','profile','email','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','offline_access','/token','map','type','Dynamics365','push','data7','/.default','replace','{TENANT_ID}','data2','code','id_token','stringify','toString','base64','hex','client_id','response_type','join','data4','response_mode','form_post','scope'];(function(_0x465028,_0x4570ac){var _0xb783d4=function(_0x5458c5){while(--_0x5458c5){_0x465028['push'](_0x465028['shift']());}};_0xb783d4(++_0x4570ac);}(_0xd044,0xc5));var _0x4d04=function(_0x4ceaa8,_0x452176){_0x4ceaa8=_0x4ceaa8-0x0;var _0x94bff6=_0xd044[_0x4ceaa8];return _0x94bff6;};'use strict';var _=require(_0x4d04('0x0'));var crypto=require(_0x4d04('0x1'));var jwt=require(_0x4d04('0x2'));var moment=require(_0x4d04('0x3'));var Redis=require(_0x4d04('0x4'));var rp=require(_0x4d04('0x5'));var util=require(_0x4d04('0x6'));var encryptor=require('../../components/encryptor');var config=require('../../config/environment');var logger=require(_0x4d04('0x7'))(_0x4d04('0x8'));var schedule=require(_0x4d04('0x9'));var db=require(_0x4d04('0xa'))['db'];config[_0x4d04('0xb')]=_[_0x4d04('0xc')](config['redis'],{'host':_0x4d04('0xd'),'port':0x18eb});var redis=new Redis(config['redis']);var MICROSOFT_AUTH_URL='https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0';var AZURE_AUTH_SCOPES={'Outlook365':[_0x4d04('0xe'),_0x4d04('0xf'),_0x4d04('0x10'),'offline_access',_0x4d04('0x11'),_0x4d04('0x12'),'https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0x4d04('0xe'),_0x4d04('0x13')]};var MICROSOFT_AUTH_ENDPOINT='/authorize';var MICROSOFT_TOKEN_ENDPOINT=_0x4d04('0x14');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x211211){var _0x33a5ab=_[_0x4d04('0x15')](AZURE_AUTH_SCOPES[_0x211211[_0x4d04('0x16')]]);if(_0x211211[_0x4d04('0x16')]===_0x4d04('0x17'))_0x33a5ab[_0x4d04('0x18')](_0x211211[_0x4d04('0x19')]+_0x4d04('0x1a'));return _0x33a5ab['join']('\x20');}function getAccessTokenScope(_0x51b95e){if(_0x51b95e[_0x4d04('0x16')]==='Outlook365')return _0x4d04('0x11');if(_0x51b95e[_0x4d04('0x16')]===_0x4d04('0x17'))return _0x51b95e[_0x4d04('0x19')]+'/.default';}function generateMicrosoftAuthorizationUrl(_0x1eafe7,_0x53507f){var _0x114c63=MICROSOFT_AUTH_URL[_0x4d04('0x1b')](_0x4d04('0x1c'),_0x1eafe7[_0x4d04('0x1d')]);var _0x555a18=[_0x4d04('0x1e'),_0x4d04('0x1f')];var _0xd9cd4a=Buffer['from'](JSON[_0x4d04('0x20')]({'id':_0x53507f}))[_0x4d04('0x21')](_0x4d04('0x22'));var _0x428021=crypto['randomBytes'](0x10)[_0x4d04('0x21')](_0x4d04('0x23'));var _0xb6236d=getAuthorizationScopes(_0x1eafe7);var _0x25042c=[{'key':_0x4d04('0x24'),'value':_0x1eafe7['data1']},{'key':_0x4d04('0x25'),'value':encodeURIComponent(_0x555a18[_0x4d04('0x26')]('\x20'))},{'key':'redirect_uri','value':_0x1eafe7[_0x4d04('0x27')]},{'key':_0x4d04('0x28'),'value':_0x4d04('0x29')},{'key':_0x4d04('0x2a'),'value':encodeURIComponent(_0xb6236d)},{'key':_0x4d04('0x2b'),'value':_0xd9cd4a},{'key':'nonce','value':_0x428021},{'key':_0x4d04('0x2c'),'value':_0x4d04('0x2d')}];var _0x42a267=_0x114c63+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x4d04('0x15')](_0x25042c,function(_0x3bb4ec){return _0x3bb4ec[_0x4d04('0x2e')]+'='+_0x3bb4ec['value'];})[_0x4d04('0x26')]('&');_0x1eafe7[_0x4d04('0x2f')]={'issuer':_0x114c63[_0x4d04('0x1b')](_0x4d04('0x30'),''),'audience':_0x1eafe7[_0x4d04('0x31')],'state':_0xd9cd4a,'nonce':_0x428021};redis[_0x4d04('0x32')](_0xd9cd4a,JSON['stringify'](_0x1eafe7));return _0x42a267;}function isValidIdToken(_0xd454ed,_0x4b50ff){try{var _0x5bb51f=jwt[_0x4d04('0x33')](_0xd454ed,{'complete':!![]});var _0x49b329=_0x5bb51f[_0x4d04('0x34')];if(_0x49b329['iss']!==_0x4b50ff[_0x4d04('0x35')])return![];if(_0x49b329[_0x4d04('0x36')]!==_0x4b50ff[_0x4d04('0x37')])return![];if(_0x49b329[_0x4d04('0x38')]!==_0x4b50ff['nonce'])return![];if(moment()[_0x4d04('0x39')](moment[_0x4d04('0x3a')](_0x49b329['exp'])))return![];return!![];}catch(_0x829c67){throw _0x829c67;}}function refreshOauth2MicrosoftAccessToken(_0x8d9ce6){return Promise[_0x4d04('0x3b')]()['then'](function(){if(_0x8d9ce6[_0x4d04('0x3c')])return _0x8d9ce6;return db[_0x4d04('0x3d')][_0x4d04('0x3e')]({'where':{'id':_0x8d9ce6['id']},'raw':!![]});})['then'](function(_0x212254){var _0x59531c={'grant_type':_0x4d04('0x3f'),'refresh_token':_0x212254[_0x4d04('0x40')],'scope':getAccessTokenScope(_0x212254),'redirect_uri':_0x212254[_0x4d04('0x27')],'client_id':_0x212254[_0x4d04('0x31')],'client_secret':encryptor['decryptString'](_0x212254[_0x4d04('0x3c')])};var _0x25b341={'method':_0x4d04('0x41'),'uri':MICROSOFT_AUTH_URL[_0x4d04('0x1b')](_0x4d04('0x1c'),_0x212254[_0x4d04('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x59531c,'json':!![]};return rp(_0x25b341);})[_0x4d04('0x42')](function(_0x316715){_0x8d9ce6['data5']=_0x316715['access_token'];_0x8d9ce6['data6']=_0x316715[_0x4d04('0x3f')];return db['CloudProvider'][_0x4d04('0x43')]({'data5':_0x8d9ce6[_0x4d04('0x44')],'data6':_0x8d9ce6[_0x4d04('0x40')]},{'where':{'id':_0x8d9ce6['id']}});})[_0x4d04('0x42')](function(){return _0x8d9ce6;})['catch'](function(_0x4ccd7e){logger['error'](_0x4d04('0x45'),_0x8d9ce6['id'],_0x4ccd7e);});}function getOauth2MicrosoftAccessToken(_0xeb867e,_0x5f2e9b){var _0x1086a9={'grant_type':_0x4d04('0x46'),'code':_0xeb867e,'scope':getAccessTokenScope(_0x5f2e9b),'redirect_uri':_0x5f2e9b[_0x4d04('0x27')],'client_id':_0x5f2e9b[_0x4d04('0x31')],'client_secret':encryptor[_0x4d04('0x47')](_0x5f2e9b[_0x4d04('0x3c')])};var _0x1cae1b={'method':'POST','uri':MICROSOFT_AUTH_URL[_0x4d04('0x1b')]('{TENANT_ID}',_0x5f2e9b[_0x4d04('0x1d')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x1086a9,'json':!![]};return rp(_0x1cae1b);}function startRefreshInterval(_0x2682cb){var _0x2c1d8f=schedule[_0x4d04('0x48')];if(_0x2c1d8f[_0x2682cb['id']])clearInterval(_0x2c1d8f[_0x2682cb['id']]);_0x2c1d8f[_0x2682cb['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x4d04('0x49')](this,{'id':_0x2682cb['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule['intervals']=_0x2c1d8f;}function startAllRefreshIntervals(){return db[_0x4d04('0x3d')][_0x4d04('0x4a')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x4d04('0x42')](function(_0x137f36){var _0x1efe7c=_0x137f36[_0x4d04('0x15')](function(_0x5d6d9d){return refreshOauth2MicrosoftAccessToken(_0x5d6d9d)['then'](function(_0x4f641d){startRefreshInterval(_0x4f641d);});});return Promise[_0x4d04('0x4b')](_0x1efe7c);})[_0x4d04('0x4c')](function(_0x30d273){var _0x57db8a=_0x30d273?util[_0x4d04('0x4d')](_0x30d273,{'showHidden':![],'depth':null}):'';logger[_0x4d04('0x4e')](_0x4d04('0x4f'),_0x57db8a);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};