Built motion from commit 97153652.|2.6.26
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x617b=['https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','openid','map','type','Dynamics365','data7','/.default','join','Outlook365','replace','{TENANT_ID}','data2','code','id_token','from','stringify','randomBytes','hex','client_id','data1','response_type','redirect_uri','data4','response_mode','scope','state','nonce','login','key','oauth2Claims','oauth2/','set','payload','issuer','aud','audience','isAfter','unix','exp','resolve','CloudProvider','findOne','then','refresh_token','decryptString','data3','POST','data5','access_token','data6','update','catch','error','authorization_code','intervals','bind','findAll','all','exports','lodash','crypto','jsonwebtoken','moment','ioredis','request-promise','util','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','defaults','localhost','redis'];(function(_0x23ba0a,_0x56a52d){var _0xb6e43c=function(_0x219f92){while(--_0x219f92){_0x23ba0a['push'](_0x23ba0a['shift']());}};_0xb6e43c(++_0x56a52d);}(_0x617b,0xe3));var _0xb617=function(_0xeb027e,_0xf4aaf4){_0xeb027e=_0xeb027e-0x0;var _0x652cac=_0x617b[_0xeb027e];return _0x652cac;};'use strict';var _=require(_0xb617('0x0'));var crypto=require(_0xb617('0x1'));var jwt=require(_0xb617('0x2'));var moment=require(_0xb617('0x3'));var Redis=require(_0xb617('0x4'));var rp=require(_0xb617('0x5'));var util=require(_0xb617('0x6'));var encryptor=require(_0xb617('0x7'));var config=require(_0xb617('0x8'));var logger=require(_0xb617('0x9'))(_0xb617('0xa'));var schedule=require(_0xb617('0xb'));var db=require(_0xb617('0xc'))['db'];config['redis']=_[_0xb617('0xd')](config['redis'],{'host':_0xb617('0xe'),'port':0x18eb});var redis=new Redis(config[_0xb617('0xf')]);var MICROSOFT_AUTH_URL=_0xb617('0x10');var AZURE_AUTH_SCOPES={'Outlook365':['openid',_0xb617('0x11'),_0xb617('0x12'),_0xb617('0x13'),_0xb617('0x14'),_0xb617('0x15'),_0xb617('0x16')],'Dynamics365':[_0xb617('0x17'),_0xb617('0x13')]};var MICROSOFT_AUTH_ENDPOINT='/authorize';var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x34def2){var _0x5a9582=_[_0xb617('0x18')](AZURE_AUTH_SCOPES[_0x34def2[_0xb617('0x19')]]);if(_0x34def2['type']===_0xb617('0x1a'))_0x5a9582['push'](_0x34def2[_0xb617('0x1b')]+_0xb617('0x1c'));return _0x5a9582[_0xb617('0x1d')]('\x20');}function getAccessTokenScope(_0x540bce){if(_0x540bce[_0xb617('0x19')]===_0xb617('0x1e'))return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x540bce['type']===_0xb617('0x1a'))return _0x540bce[_0xb617('0x1b')]+_0xb617('0x1c');}function generateMicrosoftAuthorizationUrl(_0x25621b,_0x2263b1){var _0x2a8b9f=MICROSOFT_AUTH_URL[_0xb617('0x1f')](_0xb617('0x20'),_0x25621b[_0xb617('0x21')]);var _0x42f9cc=[_0xb617('0x22'),_0xb617('0x23')];var _0x3ac964=Buffer[_0xb617('0x24')](JSON[_0xb617('0x25')]({'id':_0x2263b1}))['toString']('base64');var _0x37f9ef=crypto[_0xb617('0x26')](0x10)['toString'](_0xb617('0x27'));var _0x46a4f0=getAuthorizationScopes(_0x25621b);var _0x402749=[{'key':_0xb617('0x28'),'value':_0x25621b[_0xb617('0x29')]},{'key':_0xb617('0x2a'),'value':encodeURIComponent(_0x42f9cc[_0xb617('0x1d')]('\x20'))},{'key':_0xb617('0x2b'),'value':_0x25621b[_0xb617('0x2c')]},{'key':_0xb617('0x2d'),'value':'form_post'},{'key':_0xb617('0x2e'),'value':encodeURIComponent(_0x46a4f0)},{'key':_0xb617('0x2f'),'value':_0x3ac964},{'key':_0xb617('0x30'),'value':_0x37f9ef},{'key':'prompt','value':_0xb617('0x31')}];var _0xd8637b=_0x2a8b9f+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0xb617('0x18')](_0x402749,function(_0x45ea7e){return _0x45ea7e[_0xb617('0x32')]+'='+_0x45ea7e['value'];})[_0xb617('0x1d')]('&');_0x25621b[_0xb617('0x33')]={'issuer':_0x2a8b9f[_0xb617('0x1f')](_0xb617('0x34'),''),'audience':_0x25621b[_0xb617('0x29')],'state':_0x3ac964,'nonce':_0x37f9ef};redis[_0xb617('0x35')](_0x3ac964,JSON[_0xb617('0x25')](_0x25621b));return _0xd8637b;}function isValidIdToken(_0x469361,_0x52a8fa){try{var _0x1241dd=jwt['decode'](_0x469361,{'complete':!![]});var _0x31db75=_0x1241dd[_0xb617('0x36')];if(_0x31db75['iss']!==_0x52a8fa[_0xb617('0x37')])return![];if(_0x31db75[_0xb617('0x38')]!==_0x52a8fa[_0xb617('0x39')])return![];if(_0x31db75[_0xb617('0x30')]!==_0x52a8fa[_0xb617('0x30')])return![];if(moment()[_0xb617('0x3a')](moment[_0xb617('0x3b')](_0x31db75[_0xb617('0x3c')])))return![];return!![];}catch(_0x59c6cc){throw _0x59c6cc;}}function refreshOauth2MicrosoftAccessToken(_0x27a8b2){return Promise[_0xb617('0x3d')]()['then'](function(){if(_0x27a8b2['data3'])return _0x27a8b2;return db[_0xb617('0x3e')][_0xb617('0x3f')]({'where':{'id':_0x27a8b2['id']},'raw':!![]});})[_0xb617('0x40')](function(_0x126166){var _0x4b9558={'grant_type':_0xb617('0x41'),'refresh_token':_0x126166['data6'],'scope':getAccessTokenScope(_0x126166),'redirect_uri':_0x126166[_0xb617('0x2c')],'client_id':_0x126166['data1'],'client_secret':encryptor[_0xb617('0x42')](_0x126166[_0xb617('0x43')])};var _0x49095e={'method':_0xb617('0x44'),'uri':MICROSOFT_AUTH_URL[_0xb617('0x1f')](_0xb617('0x20'),_0x126166[_0xb617('0x21')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4b9558,'json':!![]};return rp(_0x49095e);})[_0xb617('0x40')](function(_0x2f146f){_0x27a8b2[_0xb617('0x45')]=_0x2f146f[_0xb617('0x46')];_0x27a8b2[_0xb617('0x47')]=_0x2f146f[_0xb617('0x41')];return db['CloudProvider'][_0xb617('0x48')]({'data5':_0x27a8b2[_0xb617('0x45')],'data6':_0x27a8b2[_0xb617('0x47')]},{'where':{'id':_0x27a8b2['id']}});})['then'](function(){return _0x27a8b2;})[_0xb617('0x49')](function(_0x375aef){logger[_0xb617('0x4a')]('Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s',_0x27a8b2['id'],_0x375aef);});}function getOauth2MicrosoftAccessToken(_0x43904d,_0x2e28e7){var _0x135dba={'grant_type':_0xb617('0x4b'),'code':_0x43904d,'scope':getAccessTokenScope(_0x2e28e7),'redirect_uri':_0x2e28e7['data4'],'client_id':_0x2e28e7[_0xb617('0x29')],'client_secret':encryptor['decryptString'](_0x2e28e7[_0xb617('0x43')])};var _0x5653b5={'method':_0xb617('0x44'),'uri':MICROSOFT_AUTH_URL[_0xb617('0x1f')]('{TENANT_ID}',_0x2e28e7[_0xb617('0x21')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x135dba,'json':!![]};return rp(_0x5653b5);}function startRefreshInterval(_0x4b7b5e){var _0x3d967b=schedule[_0xb617('0x4c')];if(_0x3d967b[_0x4b7b5e['id']])clearInterval(_0x3d967b[_0x4b7b5e['id']]);_0x3d967b[_0x4b7b5e['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0xb617('0x4d')](this,{'id':_0x4b7b5e['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0xb617('0x4c')]=_0x3d967b;}function startAllRefreshIntervals(){return db[_0xb617('0x3e')][_0xb617('0x4e')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0xb617('0x40')](function(_0x5e1e8e){var _0x569946=_0x5e1e8e['map'](function(_0x56f5eb){return refreshOauth2MicrosoftAccessToken(_0x56f5eb)[_0xb617('0x40')](function(_0x21d049){startRefreshInterval(_0x21d049);});});return Promise[_0xb617('0x4f')](_0x569946);})[_0xb617('0x49')](function(_0x32ee04){var _0x148ef8=_0x32ee04?util['inspect'](_0x32ee04,{'showHidden':![],'depth':null}):'';logger[_0xb617('0x4a')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x148ef8);});}module[_0xb617('0x50')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};