Built motion from commit fe909640.|2.6.8
[motion2.git] / server / api / cloudProvider / cloudProvider.oauth.js
1 // *************************************************************************
2 // *                                                                       *
3 // * xCALLY Motion -  The Omnichannel Contact Center                       *
4 // * Copyright (c) Xenialab s.r.l. All Rights Reserved                     *
5 // *                                                                       *
6 // *************************************************************************
7 // *                                                                       *
8 // * Email: info@xcally.com                                                *
9 // * Website: https://www.xcally.com                                       *
10 // *                                                                       *
11 // *************************************************************************
12 // *                                                                       *
13 // * The SOFTWARE PRODUCT is protected by copyright laws and international *
14 // * copyright treaties, as well as other intellectual property laws and   *
15 // * treaties. The SOFTWARE PRODUCT is licensed, not sold.                         *
16 // *                                                                       *
17 // *************************************************************************
18 var _0x5c36=['https://login.microsoftonline.com/{TENANT_ID}/oauth2/v2.0','openid','https://outlook.office.com/POP.AccessAsUser.All','https://outlook.office.com/SMTP.Send','offline_access','/authorize','map','type','Dynamics365','/.default','join','Outlook365','{TENANT_ID}','data2','code','id_token','from','toString','hex','client_id','response_type','redirect_uri','response_mode','form_post','scope','state','nonce','key','value','oauth2Claims','oauth2/','data1','set','payload','iss','issuer','aud','audience','exp','then','data3','CloudProvider','findOne','refresh_token','data4','decryptString','data5','data6','error','Failed\x20to\x20refresh\x20access\x20token\x20for\x20cloud\x20provider\x20#%s,\x20-\x20err:%s','authorization_code','POST','replace','intervals','bind','findAll','inspect','[CLOUD_PROVIDER]\x20Error\x20while\x20refreshing\x20the\x20tokens\x20after\x20service\x20restart\x20error:%s','exports','lodash','moment','request-promise','util','../../config/environment','../../config/logger','../../config/schedule/cloud-provider','../../mysqldb','redis','localhost'];(function(_0x263a74,_0xc31414){var _0x2aa86c=function(_0x382896){while(--_0x382896){_0x263a74['push'](_0x263a74['shift']());}};_0x2aa86c(++_0xc31414);}(_0x5c36,0x10a));var _0x65c3=function(_0x3dd15e,_0x1f0015){_0x3dd15e=_0x3dd15e-0x0;var _0x231fd0=_0x5c36[_0x3dd15e];return _0x231fd0;};'use strict';var _=require(_0x65c3('0x0'));var crypto=require('crypto');var jwt=require('jsonwebtoken');var moment=require(_0x65c3('0x1'));var Redis=require('ioredis');var rp=require(_0x65c3('0x2'));var util=require(_0x65c3('0x3'));var encryptor=require('../../components/encryptor');var config=require(_0x65c3('0x4'));var logger=require(_0x65c3('0x5'))('api');var schedule=require(_0x65c3('0x6'));var db=require(_0x65c3('0x7'))['db'];config[_0x65c3('0x8')]=_['defaults'](config[_0x65c3('0x8')],{'host':_0x65c3('0x9'),'port':0x18eb});var redis=new Redis(config[_0x65c3('0x8')]);var MICROSOFT_AUTH_URL=_0x65c3('0xa');var AZURE_AUTH_SCOPES={'Outlook365':[_0x65c3('0xb'),'profile','email','offline_access','https://outlook.office365.com/IMAP.AccessAsUser.All',_0x65c3('0xc'),_0x65c3('0xd')],'Dynamics365':[_0x65c3('0xb'),_0x65c3('0xe')]};var MICROSOFT_AUTH_ENDPOINT=_0x65c3('0xf');var MICROSOFT_TOKEN_ENDPOINT='/token';var OAUTH_REFRESH_INTERVAL=0xfa;function getAuthorizationScopes(_0x34dcfe){var _0x3ce12f=_[_0x65c3('0x10')](AZURE_AUTH_SCOPES[_0x34dcfe['type']]);if(_0x34dcfe[_0x65c3('0x11')]===_0x65c3('0x12'))_0x3ce12f['push'](_0x34dcfe['data7']+_0x65c3('0x13'));return _0x3ce12f[_0x65c3('0x14')]('\x20');}function getAccessTokenScope(_0x538961){if(_0x538961[_0x65c3('0x11')]===_0x65c3('0x15'))return'https://outlook.office365.com/IMAP.AccessAsUser.All';if(_0x538961[_0x65c3('0x11')]===_0x65c3('0x12'))return _0x538961['data7']+_0x65c3('0x13');}function generateMicrosoftAuthorizationUrl(_0x51f633,_0x3c5d03){var _0x69e31c=MICROSOFT_AUTH_URL['replace'](_0x65c3('0x16'),_0x51f633[_0x65c3('0x17')]);var _0x11fda7=[_0x65c3('0x18'),_0x65c3('0x19')];var _0x2fa7d3=Buffer[_0x65c3('0x1a')](JSON['stringify']({'id':_0x3c5d03}))['toString']('base64');var _0x315b6c=crypto['randomBytes'](0x10)[_0x65c3('0x1b')](_0x65c3('0x1c'));var _0x1f0041=getAuthorizationScopes(_0x51f633);var _0xfa8937=[{'key':_0x65c3('0x1d'),'value':_0x51f633['data1']},{'key':_0x65c3('0x1e'),'value':encodeURIComponent(_0x11fda7['join']('\x20'))},{'key':_0x65c3('0x1f'),'value':_0x51f633['data4']},{'key':_0x65c3('0x20'),'value':_0x65c3('0x21')},{'key':_0x65c3('0x22'),'value':encodeURIComponent(_0x1f0041)},{'key':_0x65c3('0x23'),'value':_0x2fa7d3},{'key':_0x65c3('0x24'),'value':_0x315b6c},{'key':'prompt','value':'login'}];var _0x6ba10a=_0x69e31c+MICROSOFT_AUTH_ENDPOINT+'?'+_[_0x65c3('0x10')](_0xfa8937,function(_0x50a1e6){return _0x50a1e6[_0x65c3('0x25')]+'='+_0x50a1e6[_0x65c3('0x26')];})[_0x65c3('0x14')]('&');_0x51f633[_0x65c3('0x27')]={'issuer':_0x69e31c['replace'](_0x65c3('0x28'),''),'audience':_0x51f633[_0x65c3('0x29')],'state':_0x2fa7d3,'nonce':_0x315b6c};redis[_0x65c3('0x2a')](_0x2fa7d3,JSON['stringify'](_0x51f633));return _0x6ba10a;}function isValidIdToken(_0x56de91,_0x5b57cd){try{var _0xa97d8f=jwt['decode'](_0x56de91,{'complete':!![]});var _0x32c699=_0xa97d8f[_0x65c3('0x2b')];if(_0x32c699[_0x65c3('0x2c')]!==_0x5b57cd[_0x65c3('0x2d')])return![];if(_0x32c699[_0x65c3('0x2e')]!==_0x5b57cd[_0x65c3('0x2f')])return![];if(_0x32c699[_0x65c3('0x24')]!==_0x5b57cd[_0x65c3('0x24')])return![];if(moment()['isAfter'](moment['unix'](_0x32c699[_0x65c3('0x30')])))return![];return!![];}catch(_0x180237){throw _0x180237;}}function refreshOauth2MicrosoftAccessToken(_0x451b8f){return Promise['resolve']()[_0x65c3('0x31')](function(){if(_0x451b8f[_0x65c3('0x32')])return _0x451b8f;return db[_0x65c3('0x33')][_0x65c3('0x34')]({'where':{'id':_0x451b8f['id']},'raw':!![]});})['then'](function(_0x38c036){var _0x2d3858={'grant_type':_0x65c3('0x35'),'refresh_token':_0x38c036['data6'],'scope':getAccessTokenScope(_0x38c036),'redirect_uri':_0x38c036[_0x65c3('0x36')],'client_id':_0x38c036[_0x65c3('0x29')],'client_secret':encryptor[_0x65c3('0x37')](_0x38c036[_0x65c3('0x32')])};var _0x245ab8={'method':'POST','uri':MICROSOFT_AUTH_URL['replace'](_0x65c3('0x16'),_0x38c036[_0x65c3('0x17')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2d3858,'json':!![]};return rp(_0x245ab8);})[_0x65c3('0x31')](function(_0x21aee4){_0x451b8f[_0x65c3('0x38')]=_0x21aee4['access_token'];_0x451b8f['data6']=_0x21aee4[_0x65c3('0x35')];return db[_0x65c3('0x33')]['update']({'data5':_0x451b8f[_0x65c3('0x38')],'data6':_0x451b8f[_0x65c3('0x39')]},{'where':{'id':_0x451b8f['id']}});})[_0x65c3('0x31')](function(){return _0x451b8f;})['catch'](function(_0x2a9e2e){logger[_0x65c3('0x3a')](_0x65c3('0x3b'),_0x451b8f['id'],_0x2a9e2e);});}function getOauth2MicrosoftAccessToken(_0x57c46c,_0x43bf20){var _0x2a3473={'grant_type':_0x65c3('0x3c'),'code':_0x57c46c,'scope':getAccessTokenScope(_0x43bf20),'redirect_uri':_0x43bf20[_0x65c3('0x36')],'client_id':_0x43bf20[_0x65c3('0x29')],'client_secret':encryptor[_0x65c3('0x37')](_0x43bf20['data3'])};var _0x5576d6={'method':_0x65c3('0x3d'),'uri':MICROSOFT_AUTH_URL[_0x65c3('0x3e')](_0x65c3('0x16'),_0x43bf20[_0x65c3('0x17')])+MICROSOFT_TOKEN_ENDPOINT,'form':_0x2a3473,'json':!![]};return rp(_0x5576d6);}function startRefreshInterval(_0x542116){var _0x327742=schedule[_0x65c3('0x3f')];if(_0x327742[_0x542116['id']])clearInterval(_0x327742[_0x542116['id']]);_0x327742[_0x542116['id']]=setInterval(refreshOauth2MicrosoftAccessToken[_0x65c3('0x40')](this,{'id':_0x542116['id']}),OAUTH_REFRESH_INTERVAL*0x3e8);schedule[_0x65c3('0x3f')]=_0x327742;}function startAllRefreshIntervals(){return db[_0x65c3('0x33')][_0x65c3('0x41')]({'where':{'data6':{'$ne':null}},'raw':!![]})[_0x65c3('0x31')](function(_0x269033){var _0x14209f=_0x269033['map'](function(_0x21981c){return refreshOauth2MicrosoftAccessToken(_0x21981c)[_0x65c3('0x31')](function(_0x351a6e){startRefreshInterval(_0x351a6e);});});return Promise['all'](_0x14209f);})['catch'](function(_0x36c302){var _0x2064ab=_0x36c302?util[_0x65c3('0x42')](_0x36c302,{'showHidden':![],'depth':null}):'';logger[_0x65c3('0x3a')](_0x65c3('0x43'),_0x2064ab);});}module[_0x65c3('0x44')]={'generateMicrosoftAuthorizationUrl':generateMicrosoftAuthorizationUrl,'getOauth2MicrosoftAccessToken':getOauth2MicrosoftAccessToken,'isValidIdToken':isValidIdToken,'startAllRefreshIntervals':startAllRefreshIntervals,'refreshOauth2MicrosoftAccessToken':refreshOauth2MicrosoftAccessToken,'startRefreshInterval':startRefreshInterval};