e9aa967adfb1c26a3cbc81485762faae689febc0
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x9bcd=['isAfter','unix','exp','resolve','data3','CloudProvider','findOne','then','refresh_token','data6','decryptString','POST','data5','update','catch','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','intervals','findAll','all','inspect','error','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','lodash','jsonwebtoken','moment','ioredis','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','defaults','redis','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','/token','map','type','Dynamics365','data7','join','Outlook365','/.default','replace','{TENANT_ID}','data2','code','id_token','from','toString','randomBytes','client_id','response_type','data4','form_post','scope','state','nonce','prompt','login','key','value','oauth2Claims','oauth2/','data1','stringify','decode','payload','audience'];(function(_0x59ee6f,_0x450239){var _0x4c0979=function(_0x565e92){while(--_0x565e92){_0x59ee6f['push'](_0x59ee6f['shift']());}};_0x4c0979(++_0x450239);}(_0x9bcd,0xb4));var _0xd9bc=function(_0x1ee940,_0x5b30b9){_0x1ee940=_0x1ee940-0x0;var _0x38e12e=_0x9bcd[_0x1ee940];return _0x38e12e;};'use strict';var _=require(_0xd9bc('0x0'));var crypto=require('crypto');var jwt=require(_0xd9bc('0x1'));var moment=require(_0xd9bc('0x2'));var Redis=require(_0xd9bc('0x3'));var rp=require(_0xd9bc('0x4'));var util=require(_0xd9bc('0x5'));var encryptor=require(_0xd9bc('0x6'));var config=require(_0xd9bc('0x7'));var logger=require(_0xd9bc('0x8'))(_0xd9bc('0x9'));var schedule=require(_0xd9bc('0xa'));var db=require(_0xd9bc('0xb'))['db'];config['redis']=_[_0xd9bc('0xc')](config[_0xd9bc('0xd')],{'host':_0xd9bc('0xe'),'port':0x18eb});var redis=new Redis(config[_0xd9bc('0xd')]);var MICROSOFT_AUTH_URL=_0xd9bc('0xf');var AZURE_AUTH_SCOPES={'Outlook365':[_0xd9bc('0x10'),_0xd9bc('0x11'),_0xd9bc('0x12'),_0xd9bc('0x13'),_0xd9bc('0x14'),_0xd9bc('0x15'),_0xd9bc('0x16')],'Dynamics365':[_0xd9bc('0x10'),_0xd9bc('0x13')]};var MICROSOFT_AUTH_ENDPOINT='/authorize';var MICROSOFT_TOKEN_ENDPOINT=_0xd9bc('0x17');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x33e0fd){var _0x12c6a9=_[_0xd9bc('0x18')](AZURE_AUTH_SCOPES[_0x33e0fd[_0xd9bc('0x19')]]);if(_0x33e0fd[_0xd9bc('0x19')]===_0xd9bc('0x1a'))_0x12c6a9['push'](_0x33e0fd[_0xd9bc('0x1b')]+'/.default');return _0x12c6a9[_0xd9bc('0x1c')]('\x20');}function getAccessTokenScope(_0x331e97){if(_0x331e97[_0xd9bc('0x19')]===_0xd9bc('0x1d'))return _0xd9bc('0x14');if(_0x331e97[_0xd9bc('0x19')]===_0xd9bc('0x1a'))return _0x331e97['data7']+_0xd9bc('0x1e');}function generateMicrosoftAuthorizationUrl(_0x16b3aa,_0x578578){var _0x288b84=MICROSOFT_AUTH_URL[_0xd9bc('0x1f')](_0xd9bc('0x20'),_0x16b3aa[_0xd9bc('0x21')]);var _0x234754=[_0xd9bc('0x22'),_0xd9bc('0x23')];var _0x428f54=Buffer[_0xd9bc('0x24')](JSON['stringify']({'id':_0x578578}))[_0xd9bc('0x25')]('base64');var _0x45d824=crypto[_0xd9bc('0x26')](0x10)[_0xd9bc('0x25')]('hex');var _0x2d4e2c=getAuthorizationScopes(_0x16b3aa);var _0x4d1246=[{'key':_0xd9bc('0x27'),'value':_0x16b3aa['data1']},{'key':_0xd9bc('0x28'),'value':encodeURIComponent(_0x234754['join']('\x20'))},{'key':'redirect_uri','value':_0x16b3aa[_0xd9bc('0x29')]},{'key':'response_mode','value':_0xd9bc('0x2a')},{'key':_0xd9bc('0x2b'),'value':encodeURIComponent(_0x2d4e2c)},{'key':_0xd9bc('0x2c'),'value':_0x428f54},{'key':_0xd9bc('0x2d'),'value':_0x45d824},{'key':_0xd9bc('0x2e'),'value':_0xd9bc('0x2f')}];var _0x216c6d=_0x288b84+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0xd9bc('0x18')](_0x4d1246,function(_0x382c38){return _0x382c38[_0xd9bc('0x30')]+'='+_0x382c38[_0xd9bc('0x31')];})[_0xd9bc('0x1c')]('&');_0x16b3aa[_0xd9bc('0x32')]={'issuer':_0x288b84['replace'](_0xd9bc('0x33'),''),'audience':_0x16b3aa[_0xd9bc('0x34')],'state':_0x428f54,'nonce':_0x45d824};redis['set'](_0x428f54,JSON[_0xd9bc('0x35')](_0x16b3aa));return _0x216c6d;}function isValidIdToken(_0x72df5e,_0x398e83){try{var _0x44baf3=jwt[_0xd9bc('0x36')](_0x72df5e,{'complete':!![]});var _0x245ecd=_0x44baf3[_0xd9bc('0x37')];if(_0x245ecd['iss']!==_0x398e83['issuer'])return![];if(_0x245ecd['aud']!==_0x398e83[_0xd9bc('0x38')])return![];if(_0x245ecd[_0xd9bc('0x2d')]!==_0x398e83[_0xd9bc('0x2d')])return![];if(moment()[_0xd9bc('0x39')](moment[_0xd9bc('0x3a')](_0x245ecd[_0xd9bc('0x3b')])))return![];return!![];}catch(_0x4ff6e3){throw _0x4ff6e3;}}function refreshOauth2MicrosoftAccessToken(_0xe00c8){return Promise[_0xd9bc('0x3c')]()['then'](function(){if(_0xe00c8[_0xd9bc('0x3d')])return _0xe00c8;return db[_0xd9bc('0x3e')][_0xd9bc('0x3f')]({'where':{'id':_0xe00c8['id']},'raw':!![]});})[_0xd9bc('0x40')](function(_0x3af8bc){var _0x1d4d06={'grant_type':_0xd9bc('0x41'),'refresh_token':_0x3af8bc[_0xd9bc('0x42')],'scope':getAccessTokenScope(_0x3af8bc),'redirect_uri':_0x3af8bc[_0xd9bc('0x29')],'client_id':_0x3af8bc[_0xd9bc('0x34')],'client_secret':encryptor[_0xd9bc('0x43')](_0x3af8bc[_0xd9bc('0x3d')])};var _0x56f545={'method':_0xd9bc('0x44'),'uri':MICROSOFT_AUTH_URL[_0xd9bc('0x1f')](_0xd9bc('0x20'),_0x3af8bc[_0xd9bc('0x21')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x1d4d06,'json':!![]};return rp(_0x56f545);})[_0xd9bc('0x40')](function(_0x2f5b15){_0xe00c8[_0xd9bc('0x45')]=_0x2f5b15['access_token'];_0xe00c8[_0xd9bc('0x42')]=_0x2f5b15[_0xd9bc('0x41')];return db[_0xd9bc('0x3e')][_0xd9bc('0x46')]({'data5':_0xe00c8['data5'],'data6':_0xe00c8[_0xd9bc('0x42')]},{'where':{'id':_0xe00c8['id']}});})[_0xd9bc('0x40')](function(){return _0xe00c8;})[_0xd9bc('0x47')](function(_0x161cde){logger['error'](_0xd9bc('0x48'),_0xe00c8['id'],_0x161cde);});}function getOauth2MicrosoftAccessToken(_0x361bd9,_0x116bbe){var _0x21fb8c={'grant_type':'authorization_code','code':_0x361bd9,'scope':getAccessTokenScope(_0x116bbe),'redirect_uri':_0x116bbe[_0xd9bc('0x29')],'client_id':_0x116bbe[_0xd9bc('0x34')],'client_secret':encryptor['decryptString'](_0x116bbe['data3'])};var _0x245212={'method':_0xd9bc('0x44'),'uri':MICROSOFT_AUTH_URL['replace'](_0xd9bc('0x20'),_0x116bbe[_0xd9bc('0x21')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x21fb8c,'json':!![]};return rp(_0x245212);}function startRefreshInterval(_0x3bba20){var _0x587197=schedule[_0xd9bc('0x49')];if(_0x587197[_0x3bba20['id']])clearInterval(_0x587197[_0x3bba20['id']]);_0x587197[_0x3bba20['id']]=setInterval(refreshOauth2MicrosoftAccessToken['bind'](this,{'id':_0x3bba20['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule['intervals']=_0x587197;}function startAllRefreshIntervals(){return db[_0xd9bc('0x3e')][_0xd9bc('0x4a')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0xd9bc('0x40')](function(_0x2fa096){var _0x22b8fb=_0x2fa096[_0xd9bc('0x18')](function(_0xca70b0){return refreshOauth2MicrosoftAccessToken(_0xca70b0)[_0xd9bc('0x40')](function(_0x341385){startRefreshInterval(_0x341385);});});return Promise[_0xd9bc('0x4b')](_0x22b8fb);})[_0xd9bc('0x47')](function(_0x150379){var _0xd2657c=_0x150379?util[_0xd9bc('0x4c')](_0x150379,{'showHidden':![],'depth':null}):'';logger[_0xd9bc('0x4d')](_0xd9bc('0x4e'),_0xd2657c);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};