Built motion from commit 3c2ce842.|2.6.31
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x259e=['issuer','aud','isAfter','unix','resolve','then','CloudProvider','findOne','refresh_token','data6','decryptString','data3','data5','access_token','update','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','POST','findAll','all','catch','inspect','lodash','moment','ioredis','request-promise','../../components/encryptor','../../config/environment','../../config/logger','api','../../config/schedule/cloud-provider','../../mysqldb','redis','defaults','localhost','https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All','https://outlook.office.com/POP.AccessAsUser.All','openid','/authorize','/token','map','type','push','data7','join','Outlook365','Dynamics365','/.default','replace','{TENANT_ID}','data2','code','id_token','from','stringify','toString','base64','randomBytes','hex','client_id','data1','response_type','data4','response_mode','form_post','scope','state','nonce','prompt','key','value','set','iss'];(function(_0x343731,_0x266f23){var _0x560561=function(_0x4bbb27){while(--_0x4bbb27){_0x343731['push'](_0x343731['shift']());}};_0x560561(++_0x266f23);}(_0x259e,0x1eb));var _0xe259=function(_0x2dc0d3,_0x3d52a6){_0x2dc0d3=_0x2dc0d3-0x0;var _0x4a8217=_0x259e[_0x2dc0d3];return _0x4a8217;};'use strict';var _=require(_0xe259('0x0'));var crypto=require('crypto');var jwt=require('jsonwebtoken');var moment=require(_0xe259('0x1'));var Redis=require(_0xe259('0x2'));var rp=require(_0xe259('0x3'));var util=require('util');var encryptor=require(_0xe259('0x4'));var config=require(_0xe259('0x5'));var logger=require(_0xe259('0x6'))(_0xe259('0x7'));var schedule=require(_0xe259('0x8'));var db=require(_0xe259('0x9'))['db'];config[_0xe259('0xa')]=_[_0xe259('0xb')](config[_0xe259('0xa')],{'host':_0xe259('0xc'),'port':0x18eb});var redis=new Redis(config[_0xe259('0xa')]);var MICROSOFT_AUTH_URL=_0xe259('0xd');var AZURE_AUTH_SCOPES={'Outlook365':['openid',_0xe259('0xe'),_0xe259('0xf'),_0xe259('0x10'),_0xe259('0x11'),_0xe259('0x12'),'https://outlook.office.com/SMTP.Send'],'Dynamics365':[_0xe259('0x13'),_0xe259('0x10')]};var MICROSOFT_AUTH_ENDPOINT=_0xe259('0x14');var MICROSOFT_TOKEN_ENDPOINT=_0xe259('0x15');var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x5727d4){var _0x58d13e=_[_0xe259('0x16')](AZURE_AUTH_SCOPES[_0x5727d4[_0xe259('0x17')]]);if(_0x5727d4[_0xe259('0x17')]==='Dynamics365')_0x58d13e[_0xe259('0x18')](_0x5727d4[_0xe259('0x19')]+'/.default');return _0x58d13e[_0xe259('0x1a')]('\x20');}function getAccessTokenScope(_0x1f3860){if(_0x1f3860[_0xe259('0x17')]===_0xe259('0x1b'))return _0xe259('0x11');if(_0x1f3860[_0xe259('0x17')]===_0xe259('0x1c'))return _0x1f3860[_0xe259('0x19')]+_0xe259('0x1d');}function generateMicrosoftAuthorizationUrl(_0x13d2b8,_0x5383b5){var _0x374873=MICROSOFT_AUTH_URL[_0xe259('0x1e')](_0xe259('0x1f'),_0x13d2b8[_0xe259('0x20')]);var _0x1e792c=[_0xe259('0x21'),_0xe259('0x22')];var _0x16c003=Buffer[_0xe259('0x23')](JSON[_0xe259('0x24')]({'id':_0x5383b5}))[_0xe259('0x25')](_0xe259('0x26'));var _0x1e6fa4=crypto[_0xe259('0x27')](0x10)[_0xe259('0x25')](_0xe259('0x28'));var _0x264e24=getAuthorizationScopes(_0x13d2b8);var _0x307b08=[{'key':_0xe259('0x29'),'value':_0x13d2b8[_0xe259('0x2a')]},{'key':_0xe259('0x2b'),'value':encodeURIComponent(_0x1e792c[_0xe259('0x1a')]('\x20'))},{'key':'redirect_uri','value':_0x13d2b8[_0xe259('0x2c')]},{'key':_0xe259('0x2d'),'value':_0xe259('0x2e')},{'key':_0xe259('0x2f'),'value':encodeURIComponent(_0x264e24)},{'key':_0xe259('0x30'),'value':_0x16c003},{'key':_0xe259('0x31'),'value':_0x1e6fa4},{'key':_0xe259('0x32'),'value':'login'}];var _0x4f8db3=_0x374873+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0xe259('0x16')](_0x307b08,function(_0x4d56de){return _0x4d56de[_0xe259('0x33')]+'='+_0x4d56de[_0xe259('0x34')];})['join']('&');_0x13d2b8['oauth2Claims']={'issuer':_0x374873['replace']('oauth2/',''),'audience':_0x13d2b8[_0xe259('0x2a')],'state':_0x16c003,'nonce':_0x1e6fa4};redis[_0xe259('0x35')](_0x16c003,JSON[_0xe259('0x24')](_0x13d2b8));return _0x4f8db3;}function isValidIdToken(_0x59b7f0,_0x3a95b2){try{var _0x3b04f8=jwt['decode'](_0x59b7f0,{'complete':!![]});var _0x1b41f7=_0x3b04f8['payload'];if(_0x1b41f7[_0xe259('0x36')]!==_0x3a95b2[_0xe259('0x37')])return![];if(_0x1b41f7[_0xe259('0x38')]!==_0x3a95b2['audience'])return![];if(_0x1b41f7['nonce']!==_0x3a95b2[_0xe259('0x31')])return![];if(moment()[_0xe259('0x39')](moment[_0xe259('0x3a')](_0x1b41f7['exp'])))return![];return!![];}catch(_0x10d5b6){throw _0x10d5b6;}}function refreshOauth2MicrosoftAccessToken(_0x31bcb5){return Promise[_0xe259('0x3b')]()[_0xe259('0x3c')](function(){if(_0x31bcb5['data3'])return _0x31bcb5;return db[_0xe259('0x3d')][_0xe259('0x3e')]({'where':{'id':_0x31bcb5['id']},'raw':!![]});})[_0xe259('0x3c')](function(_0x3a8804){var _0x4ad900={'grant_type':_0xe259('0x3f'),'refresh_token':_0x3a8804[_0xe259('0x40')],'scope':getAccessTokenScope(_0x3a8804),'redirect_uri':_0x3a8804[_0xe259('0x2c')],'client_id':_0x3a8804[_0xe259('0x2a')],'client_secret':encryptor[_0xe259('0x41')](_0x3a8804[_0xe259('0x42')])};var _0x26f57b={'method':'POST','uri':MICROSOFT_AUTH_URL[_0xe259('0x1e')](_0xe259('0x1f'),_0x3a8804[_0xe259('0x20')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x4ad900,'json':!![]};return rp(_0x26f57b);})['then'](function(_0x5c64a5){_0x31bcb5[_0xe259('0x43')]=_0x5c64a5[_0xe259('0x44')];_0x31bcb5[_0xe259('0x40')]=_0x5c64a5['refresh_token'];return db['CloudProvider'][_0xe259('0x45')]({'data5':_0x31bcb5[_0xe259('0x43')],'data6':_0x31bcb5[_0xe259('0x40')]},{'where':{'id':_0x31bcb5['id']}});})[_0xe259('0x3c')](function(){return _0x31bcb5;})['catch'](function(_0x31b395){logger[_0xe259('0x46')](_0xe259('0x47'),_0x31bcb5['id'],_0x31b395);});}function getOauth2MicrosoftAccessToken(_0x46f0da,_0x46bd92){var _0x507360={'grant_type':_0xe259('0x48'),'code':_0x46f0da,'scope':getAccessTokenScope(_0x46bd92),'redirect_uri':_0x46bd92['data4'],'client_id':_0x46bd92[_0xe259('0x2a')],'client_secret':encryptor['decryptString'](_0x46bd92[_0xe259('0x42')])};var _0x360c43={'method':_0xe259('0x49'),'uri':MICROSOFT_AUTH_URL[_0xe259('0x1e')]('{TENANT_ID}',_0x46bd92[_0xe259('0x20')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x507360,'json':!![]};return rp(_0x360c43);}function startRefreshInterval(_0x486422){var _0x208ede=schedule['intervals'];if(_0x208ede[_0x486422['id']])clearInterval(_0x208ede[_0x486422['id']]);_0x208ede[_0x486422['id']]=setInterval(refreshOauth2MicrosoftAccessToken['bind'](this,{'id':_0x486422['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule['intervals']=_0x208ede;}function startAllRefreshIntervals(){return db[_0xe259('0x3d')][_0xe259('0x4a')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0xe259('0x3c')](function(_0x552463){var _0x1abc46=_0x552463[_0xe259('0x16')](function(_0x37e006){return refreshOauth2MicrosoftAccessToken(_0x37e006)[_0xe259('0x3c')](function(_0x587579){startRefreshInterval(_0x587579);});});return Promise[_0xe259('0x4b')](_0x1abc46);})[_0xe259('0x4c')](function(_0x411207){var _0x560e3c=_0x411207?util[_0xe259('0x4d')](_0x411207,{'showHidden':![],'depth':null}):'';logger[_0xe259('0x46')]('[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s',_0x560e3c);});}module['exports']={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};